Privacy Policy

Your Privacy is Our Priority

At Data Security Group, we are committed to protecting your personal information and maintaining transparency about how we collect, use, and safeguard your data in accordance with global privacy regulations.

GDPR CompliantCCPA CompliantPIPEDA Compliant

Last Updated: September 21, 2025 |Effective Date: September 21, 2025

Our Commitment to Privacy

Data Security Group ("DSG," "we," "us," or "our") is a leading provider of secure data destruction, IT asset recovery, and compliance management services. This Privacy Policy explains how we collect, use, disclose, and protect information when you use our services or interact with our website.

As a company specializing in data security, we understand the critical importance of privacy and data protection. We are committed to maintaining the highest standards of privacy protection and transparency in all our operations.

Information We Collect

Personal Information

We collect personal information that you voluntarily provide when using our services, including name, email address, phone number, company information, and job title when you contact us, request services, or subscribe to our communications.

Business Information

For our data destruction and IT asset recovery services, we may collect business contact information, asset inventories, compliance requirements, and service preferences to provide customized solutions.

Technical Information

We automatically collect certain technical information when you visit our website, including IP address, browser type, device information, pages visited, and interaction data through cookies and similar technologies.

Service Data

When providing our services, we collect information about the devices and data being processed, including asset tags, serial numbers, and destruction requirements, while maintaining strict confidentiality of your proprietary information.

How We Use Your Information

Service Delivery

We use your information to provide, maintain, and improve our data destruction, IT asset recovery, and compliance services, including scheduling, logistics coordination, and certificate generation.

Communication

We may use your contact information to respond to inquiries, provide service updates, send compliance notifications, and share relevant industry insights and security alerts.

Compliance and Legal

We process information as necessary to comply with legal obligations, including regulatory reporting, audit requirements, and law enforcement requests in accordance with applicable laws.

Business Operations

We use aggregated and anonymized data to improve our services, conduct research, develop new solutions, and enhance our security protocols and operational efficiency.

Information Sharing and Disclosure

Service Providers

We may share information with trusted third-party service providers who assist in delivering our services, including logistics partners, certified recycling facilities, and technology vendors, all bound by strict confidentiality agreements.

Legal Requirements

We may disclose information when required by law, court order, or government regulation, or when necessary to protect our rights, property, or safety, or that of our clients or the public.

Business Transfers

In the event of a merger, acquisition, or sale of assets, personal information may be transferred as part of the transaction, with appropriate notice and protection measures maintained.

Consent-Based Sharing

We may share information with your explicit consent for specific purposes, such as case studies, testimonials, or joint marketing initiatives, always with appropriate anonymization when possible.

Data Security and Protection

Security Measures

We implement industry-leading security measures including encryption, access controls, secure facilities, background-checked personnel, and regular security audits to protect your information from unauthorized access, use, or disclosure.

Data Retention

We retain personal information only as long as necessary for the purposes outlined in this policy, legal requirements, or legitimate business needs. Data destruction services records are maintained according to regulatory requirements.

International Transfers

When transferring data internationally, we ensure appropriate safeguards are in place, including standard contractual clauses, adequacy decisions, or other approved transfer mechanisms under applicable data protection laws.

Incident Response

In the unlikely event of a data breach, we have established incident response procedures to promptly assess, contain, and notify affected parties and relevant authorities as required by applicable laws.

Your Privacy Rights

Access and Portability

You have the right to access your personal information and, where applicable, receive a copy in a portable format. We will provide this information within the timeframes required by applicable law.

Correction and Updates

You may request correction of inaccurate personal information or updates to your contact preferences. We will promptly address such requests and update our records accordingly.

Deletion and Erasure

Subject to legal and regulatory requirements, you may request deletion of your personal information. We will evaluate such requests and comply where legally permissible and operationally feasible.

Opt-Out Rights

You may opt out of marketing communications at any time by using unsubscribe links, contacting us directly, or updating your preferences. Essential service communications may continue as necessary for our business relationship.

Cookies and Tracking Technologies

Cookie Usage

We use cookies and similar technologies to enhance website functionality, analyze usage patterns, and provide personalized experiences. You can control cookie settings through your browser preferences.

Analytics

We use web analytics services to understand how visitors interact with our website, helping us improve user experience and content relevance while maintaining privacy through data anonymization.

Third-Party Services

Our website may include third-party services such as social media plugins or embedded content. These services may collect information according to their own privacy policies.

Regional Privacy Compliance

European Union (GDPR)

For EU residents, we comply with the General Data Protection Regulation (GDPR). You have additional rights including data portability, the right to be forgotten, and the right to object to processing.

California (CCPA)

California residents have rights under the California Consumer Privacy Act (CCPA) including the right to know, delete, and opt-out of the sale of personal information.

Canada (PIPEDA)

We comply with Canada's Personal Information Protection and Electronic Documents Act (PIPEDA) for the collection, use, and disclosure of personal information.

Asia-Pacific

We adhere to local privacy laws in Singapore (PDPA), Malaysia (PDPA), and other jurisdictions where we operate.

Privacy Contact Information

If you have questions about this Privacy Policy or wish to exercise your privacy rights, please contact us using the information below:

Email

info@datasecuritygrp.com

For privacy-related inquiries and requests

Phone

24/7 privacy and security hotline

Data Protection Officer

info@datasecuritygrp.com

Direct contact for data protection matters

Policy Updates and Changes

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will notify you by email (if you have provided an email address) or by posting a notice on our website.

We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information. Your continued use of our services after any changes indicates your acceptance of the updated policy.

Questions About Our Privacy Practices?

Our privacy team is here to help you understand how we protect your information and assist with any privacy-related requests or concerns.