1. Scope and Introduction
At Cyberlux Consulting, we treat the confidentiality of our clients' organizational and security posture details with utmost priority. This Privacy Policy documents how we handle, process, and retain telemetry scoped during GRC readiness inquiries and custom assessment questionnaires.
2. Telemetry We Collect
To build customized framework compliance blueprints and scoping reports, we collect specific parameters submitted through our scoping channels:
- Work Email Domain: Used to confirm corporate identity and filter public webmail providers.
- Target Frameworks: The standard you seek audit readiness in (SOC 2, ISO 27001, CMMC, HIPAA, or TPRM).
- Organizational Headcount: Scoped to estimate audit evidence binder scaling needs.
- Project Timeline: Collected to gauge scheduling capacity and consulting priority.
3. Data Usage & Consent
Scoping details are strictly used to compute compliance roadmaps, estimate program budgets, and prepare dedicated resources. Submission of your business contact information constitutes consent for Cyberlux Consulting to follow up regarding risk and compliance targets. We never sell, trade, or distribute your email or assessment metrics to external marketers.
4. Security Telemetry Controls
All forms on this site are transmitted securely using HTTPS TLS encryption. Submitted information is collected through SSL-protected Netlify endpoints and kept under strict internal user access controls. Any documents, evidence collection binders, or gap reports produced during active partnerships are maintained on isolated, encrypted GRC secure storage.
5. Contact and Inquiries
For any questions concerning compliance metrics processing or to request data removal, please contact the Cyberlux Security Desk directly at: info@cyberluxconsulting.com