Privacy Policy

Your privacy and data security are our priority

At Cybknow Technologies Pvt. Ltd., we are committed to protecting your personal information with the same rigour we apply to enterprise cybersecurity.

Secure Transparent Compliant
01

Introduction

Welcome to Cybknow Technologies Pvt. Ltd. ("we," "us," or "our"). We are a cybersecurity and technology company dedicated to providing enterprise-grade security solutions, threat intelligence, vulnerability assessments, and managed security services.

This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website (https://cybknow.com/), use our services, or interact with us in any capacity. By using our services, you agree to the terms of this Privacy Policy.

We comply with applicable data protection laws including the Information Technology Act, 2000, the Digital Personal Data Protection Act, 2023 (DPDPA), and international frameworks such as GDPR where applicable.

02

Information We Collect

We collect information you provide directly, information collected automatically, and information from third parties.

Information You Provide

  • Full name, email address, phone number
  • Company name, job title, and industry
  • Billing and payment information
  • Communications you send us
  • Account credentials (hashed & salted)

Automatically Collected

  • IP address and geolocation data
  • Browser type, OS, device identifiers
  • Pages visited, time spent, click paths
  • Referral URLs and search queries
  • Log files and error reports

From Third Parties

  • Social login data (LinkedIn, Google)
  • Marketing partner data
  • Business partners and resellers
  • Publicly available professional data

Security Telemetry

  • Threat intelligence feeds
  • Network traffic metadata (enterprise)
  • Incident response artefacts
  • Vulnerability scan outputs
03

How We Use Your Information

We use your information solely for legitimate purposes aligned with delivering world-class cybersecurity services:

Service Delivery Provisioning, operating, and improving our cybersecurity products and managed services.
Communications Sending service notifications, security alerts, invoices, and support responses.
Analytics Understanding usage patterns to enhance UX and service quality.
Threat Research Aggregated, anonymised data to advance threat intelligence and security research.
Marketing Sending relevant updates, newsletters, and promotional material (opt-out available).
Legal Compliance Meeting regulatory obligations, responding to lawful requests, and enforcing agreements.
04

Cookies and Tracking Technologies

We use cookies and similar technologies to enhance functionality, analyse performance, and personalise your experience.

You can manage or disable cookies via your browser settings or our Cookie Preference Centre. Disabling essential cookies may affect service functionality.

05

Third-Party Services

We partner with carefully vetted third parties bound by contractual data-processing agreements (DPAs):

Cloud Infrastructure
AWS, Azure hosting and compute
Email Services
Transactional and marketing comms
Analytics
Anonymised behavioural analytics
Payment Processing
PCI-DSS compliant processors
CRM
Salesforce for account management
Identity & SSO
OAuth 2.0 providers

We do not sell your personal data to third parties. Data is shared only as necessary for service operations or as required by law.

06

Data Security

As a cybersecurity company, data protection is embedded in our DNA. We implement multi-layered, defence-in-depth security controls:

Encryption

AES-256 at rest, TLS 1.3 in transit for all data flows

SOC Monitoring

24×7 Security Operations Centre with real-time threat detection

Access Control

Zero-trust architecture, MFA, and least-privilege IAM policies

Pen Testing

Regular third-party penetration testing and red team exercises

ISO 27001

Certified information security management system (ISMS)

Incident Response

Documented IR playbooks; breach notification within 72 hours

07

Data Retention

We retain personal data only as long as necessary for the purposes outlined in this policy or as required by law:

Account DataDuration of account + 2 years
Financial Records7 years (statutory requirement)
Marketing DataUntil opt-out + 1 year
Support Tickets3 years post-closure
Anonymous Analytics26 months (rolling)

After retention periods expire, data is securely deleted or anonymised using NIST-approved data sanitisation methods.

08

Your Rights

Depending on your jurisdiction, you have the following rights over your personal data:

Access

Request a copy of the personal data we hold about you

Rectification

Correct inaccurate or incomplete personal data

Erasure

Request deletion of your data ("right to be forgotten")

Restriction

Restrict processing of your data in certain circumstances

Portability

Receive your data in a structured, machine-readable format

Objection

Object to processing based on legitimate interests or marketing

To exercise any of these rights, please contact us. We will respond within 24 hours of receiving a verifiable request.

09

Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements. When we make material changes, we will:

1

Update the "Last Updated" date at the top of this page

2

Display a prominent notice on our website and dashboard

3

Send an email notification to registered account holders

4

For significant changes, request renewed consent where required by law

Continued use of our services following the effective date constitutes acceptance of the revised policy.

10

Contact Information

For any questions, concerns, or requests relating to this Privacy Policy or your personal data, please reach out to our dedicated Data Protection Officer:

Our Location
Bhubaneswar, Odisha, India
751006
Direct Contact
info@cybknow.com
+91 81178 42014
Response Time
Within 24 hours
>