Privacy Policy
Last Updated: May 24, 2024
At FieldCISO, accessible from fieldciso.com, one of our main priorities is the privacy of our visitors. This Privacy Policy document contains types of information that is collected and recorded by FieldCISO and how we use it.
1. Information We Collect
We collect information in several ways when you interact with our website:
- Contact Forms: When you fill out a contact form, we collect your name, email address, subject, and message.
- Booking Requests: When you book a 1:1 session, we collect your name, email, company, topic of discussion, and expectations.
- Service Enquiries: For Managed IT and Security enquiries, we collect business-specific details including phone numbers and infrastructure requirements.
- Blog Interactions: If you leave a comment or like a post, we store your name and the interaction data.
- Gated Content: When you unlock a demo, report, or episode registration, we collect your name and business email address, and the record of what you unlocked.
2. How We Use Your Information
We use the information we collect to:
- Provide, operate, and maintain our website.
- Improve, personalize, and expand our website.
- Understand and analyze how you use our website.
- Develop new products, services, features, and functionality.
- Communicate with you, either directly or through one of our partners, including for customer service, to provide you with updates and other information relating to the website.
- Send you emails related to your specific requests (e.g., booking confirmations).
- Find and prevent fraud.
3. Log Files and Analytics
FieldCISO follows a standard procedure of using log files. These files log visitors when they visit websites. The information collected by log files includes internet protocol (IP) addresses, browser type, Internet Service Provider (ISP), date and time stamp, referring/exit pages, and possibly the number of clicks. These are not linked to any information that is personally identifiable.
We use Google Analytics and Firebase Analytics to understand website traffic and user behavior. This helps us improve our content and user experience.
4. Cookies and Web Beacons
Like any other website, FieldCISO uses 'cookies'. These cookies are used to store information including visitors' preferences, and the pages on the website that the visitor accessed or visited. The information is used to optimize the users' experience by customizing our web page content based on visitors' browser type and/or other information.
We set two first-party cookies of our own. fc_vid identifies your browser for up to 13 months, and fc_sid groups your visit into a session for 30 minutes. Neither is shared with any third party, and neither can be read by scripts running on the page.
5. Activity Tracking and Consent
If you tick the consent box when unlocking gated content, we link the activity recorded against your browser to your email address, and use it to decide what is relevant to send you and to inform how our team follows up. This includes the pages you view, the demos you watch, and how far through them you get.
This linking is retrospective. Activity recorded against your browser before you gave us your details - potentially going back as far as the lifetime of the cookie - becomes associated with you at the point you consent. The consent box says so, and ticking it is what permits it. If you do not tick it, we do not make that link.
We keep this information for a limited time: detailed activity for 24 months once you are identified, and 90 days for visitors who never identify themselves, after which only an aggregate summary carrying no identifying detail is retained for up to 13 months.
You can withdraw consent at any time in one click. Every email we send carries a link that immediately stops the tracking and deletes the history we hold, with no need to contact us or log in. The same footer carries a link to download everything we hold about you.
This activity history is held in our own systems and is used by our team to manage follow-up. We do not pass it to a third-party sales or marketing platform.
6. Who We Share Your Information With
We do not sell your personal information, and we do not share it for advertising. We share it in the following situations only.
With the vendor whose content you unlock. Some demos and reports on this site are provided by third-party security vendors and are made available in exchange for your details. When you register to watch a vendor’s demo, or register for an episode that a vendor takes part in, we pass that vendor your name, your business email address and your lead type, so that they can follow up with you about their product.
What we do not pass on is as important: not the pages you viewed, not the activity history described in section 5, not which other vendors you looked at, and not the internal interest score we calculate. The vendor receives who you are and that you engaged with their material, and nothing further.
Once a vendor holds those details it decides for itself how they are used, as an independent controller, under its own privacy policy rather than ours. Withdrawing your consent with us stops any further sharing, but it cannot reach into a vendor’s own records - to have those deleted, contact the vendor directly.
With providers who act on our instructions. Our hosting, database, email delivery and analytics providers process data on our behalf, for the purposes we set, and for nothing else.
Where the law requires it, or where it is necessary to establish, exercise or defend a legal claim.
7. Data Storage and Security
We use Google Firebase (Firestore) to store the data you provide through our forms. Firebase is a secure, enterprise-grade cloud database. While we strive to use commercially acceptable means to protect your personal information, we cannot guarantee its absolute security.
8. Third-Party Privacy Policies
This policy covers only what FieldCISO does with your information. It does not cover what a vendor does with details we pass on under section 6, nor what any site we link to does with information you give it directly. For those, consult the privacy policy of the vendor or site concerned, which will also set out how to ask them to delete what they hold.
We do not run advertising on this site and we do not use third-party ad networks or ad servers.
9. Your Data Protection Rights
We would like to make sure you are fully aware of all of your data protection rights. Every user is entitled to the following:
- The right to access – You have the right to request copies of your personal data.
- The right to rectification – You have the right to request that we correct any information you believe is inaccurate.
- The right to erasure – You have the right to request that we erase your personal data, under certain conditions.
- The right to restrict processing – You have the right to request that we restrict the processing of your personal data, under certain conditions.
- The right to withdraw consent – Where we rely on your consent, you may withdraw it at any time, and doing so is as easy as giving it was.
You do not need to write to us to exercise the first or third of these: the footer of any email we have sent you carries one-click links to download your data and to withdraw consent and delete your activity history. For anything else, write to us at the address below and we will respond.
10. Contact Us
If you have additional questions or require more information about our Privacy Policy, do not hesitate to contact us at pinki@fieldciso.com.
