Who We Are
VELES provides cybersecurity advisory, assessment and executive visibility services. For personal information collected through this website, VELES is generally the organisation that determines why and how that information is used.
Privacy enquiries may be sent to info@velesgroup.co.
Information We Collect
Depending on how you interact with us, we may collect:
- Contact information, such as your name and work email address.
- Professional information, such as company, role, organisation size and business context you choose to provide.
- Assessment information, including answers submitted through the Executive Visibility Assessment and scores or findings generated from those answers.
- Enquiry information submitted through the Exposure Gap Review or other contact forms.
- Technical and usage information, which may include IP address, browser or device information, page URL, referrer, timestamps, page interactions and advertising or cookie identifiers where permitted.
Please do not submit passwords, authentication credentials, payment-card information, health data, government identifiers or other unnecessary sensitive personal information through our forms.
Executive Visibility Assessment
When you complete our Executive Visibility Assessment, we process your responses to calculate an overall score, capability-area scores and related findings. If you choose to reveal your results, we also collect the name, work email address and company information that you submit.
We use this information to provide the requested assessment experience, deliver or discuss relevant findings, respond to your request, maintain appropriate business records and improve our services.
Exposure Gap Review
If you request an Exposure Gap Review, we may collect your contact details together with information such as your role, organisation size, reason for contacting us, areas of potential exposure, the clarity you are seeking and your current timeframe or need.
We use that information to review your request and determine an appropriate response or next step.
How We Use Personal Information
We may use personal information to:
- provide assessments, reports and requested services;
- respond to enquiries and communicate with you;
- review and qualify business requests;
- operate, secure and improve our website and services;
- measure website and advertising performance;
- detect misuse, fraud or security threats;
- maintain business and compliance records; and
- meet legal or regulatory obligations.
Where the GDPR or similar law applies, our legal basis depends on the activity and may include taking steps at your request before entering a contract, performing a contract, legitimate interests, compliance with legal obligations, or consent where consent is required.
Cookies, Analytics & Advertising
Our website may use cookies and similar technologies for site functionality, measurement, advertising and conversion tracking.
We currently use the Meta Pixel and LinkedIn Insight Tag for purposes such as measuring advertising performance and conversions and, where enabled and legally permitted, audience or retargeting functions. These technologies may process information about visits to our website, including technical and interaction information.
Where applicable law requires consent before non-essential advertising or analytics technologies are used, we will seek that consent through the website's consent controls. You may also be able to control advertising technologies through your browser and the privacy or advertising settings offered by the relevant platform.
How We Disclose Information
We may disclose information where reasonably necessary to organisations that help us operate the website and business, subject to appropriate safeguards where required.
- website and hosting technology providers, including Framer;
- workflow and automation providers, including Make;
- email and communications providers used to receive or respond to enquiries;
- advertising and measurement providers, including Meta and LinkedIn, where their technologies are enabled;
- professional advisers or authorities when required by law or reasonably necessary to protect legal rights or security; and
- parties involved in a legitimate corporate transaction, subject to applicable safeguards.
Some privacy laws use defined terms such as "sale" or "sharing" that can include certain advertising technology disclosures even where no money changes hands. Where those laws apply, we will provide any notices and choices required by law.
Data Retention
We retain personal information only for as long as reasonably necessary for the purposes described in this policy, including providing requested services, managing business relationships, maintaining records, resolving disputes and meeting legal obligations.
Retention periods may vary by category of information, the nature of the relationship and applicable legal requirements. We delete or anonymise information when it is no longer reasonably required.
International Data Transfers
Some of our technology and service providers may process personal information in countries other than the country where you are located, including the United States. Where applicable law requires safeguards for international transfers, we rely on appropriate transfer mechanisms and contractual protections as applicable.
Your Privacy Rights
Depending on where you live and the law that applies, you may have rights to request access, correction, deletion, restriction or portability, and to object to certain processing.
You may submit a privacy request by contacting info@velesgroup.co. We may need to verify your identity before completing a request. Some rights are subject to legal exceptions.
EEA & UK Privacy Rights
If European data-protection law applies, you may have rights including access, rectification, erasure, restriction, portability and objection. Where processing is based on consent, you may withdraw that consent without affecting processing that occurred before withdrawal.
You may also have the right to lodge a complaint with the data-protection authority responsible for your location or the relevant processing.
United States Privacy Rights
Residents of certain U.S. states may have additional rights under state privacy laws if those laws apply to VELES. Depending on the jurisdiction, these may include access, correction, deletion, portability, and opting out of certain forms of targeted advertising, sale or sharing.
We will not discriminate against you for exercising a privacy right protected by applicable law.
Marketing Communications
Providing your details to obtain an assessment or request a review does not by itself mean that you have agreed to receive every type of marketing communication. Where consent is required for promotional email, we will request it separately or otherwise rely on a lawful basis permitted by applicable law.
You can opt out of promotional email using the unsubscribe mechanism provided in the message or by contacting us. We may still send non-promotional communications such as responses to a request you made.
Security
We use reasonable administrative, technical and organisational measures designed to protect personal information against unauthorised access, alteration, disclosure, loss or misuse. No website, transmission method or storage system can be guaranteed to be completely secure.
Children's Privacy
Our website and services are directed to business and professional audiences and are not intended for children. We do not knowingly seek to collect personal information from children through our assessment or business enquiry forms.
Changes to This Policy
We may update this Privacy Policy when our practices, services, technologies or legal obligations change. The "Last updated" date at the top of this page indicates when the policy was most recently revised.
Contact VELES
For questions about this Privacy Policy, our handling of personal information or a privacy-rights request, contact:
VELES
Email: info@velesgroup.co
Website: velesgroup.co