Skip to content
Legal

Privacy Policy

How North Shield collects, uses, and protects information submitted through this website and provided during service delivery.

This policy explains what information North Shield collects through this website and in the course of providing managed IT and cybersecurity services, why it is collected, how it is handled, and the choices available to you.

North Shield is the trading name used on this website. The registered legal entity details are confirmed in the written agreement for each engagement. A registered postal address is provided on request and in engagement documentation.

This document describes current practice. It is reviewed periodically and updated when practices change. It is provided for transparency and is not legal advice.

Information we collect

We aim to collect the minimum information required to respond to enquiries and deliver services.

  • Contact details you provide voluntarily, such as name, business email, company name, phone number, and role
  • Enquiry content, including the description of your requirements or issue
  • Newsletter subscription details where you choose to submit them
  • Basic technical information generated by visiting a website, such as browser type, device type, approximate region, and pages viewed
  • Service delivery information encountered while supporting a client environment, such as device names, user account names, configuration data, and ticket history

How we use information

We do not sell personal information, and we do not use client environment data for advertising purposes.

  • Responding to enquiries and providing requested information
  • Delivering, supporting, and improving contracted services
  • Maintaining the security, availability, and integrity of systems we manage
  • Sending requested communications such as newsletters, where you have opted in
  • Meeting legal, contractual, and record-keeping obligations

Where data protection law requires a legal basis, we rely on one or more of the following: your consent (for example, newsletter subscription), the performance of a contract (delivering services you have engaged us for), our legitimate interests in operating and securing our business, and compliance with legal obligations.

Cookies and analytics

This website uses only the cookies and storage required for the site to function correctly. If analytics or marketing technologies are introduced in future, this policy and the cookie policy will be updated before they are enabled, and any consent required by law will be requested at that time.

Sharing and third parties

We share information only where it is necessary to operate the business or deliver services, and only with parties bound by appropriate confidentiality and security obligations.

  • Technology vendors that provide the platforms used to deliver services, such as monitoring, security, backup, and email systems
  • Professional advisers where required for legal, accounting, or insurance purposes
  • Authorities where disclosure is legally required

How information is protected

No provider can guarantee absolute security. These measures are intended to reduce risk and support timely detection and response.

  • Access limited to personnel who need it for their role, using named individual accounts
  • Multi-factor authentication on administrative and remote access
  • Encrypted channels for transferring credentials, configuration, and sensitive files
  • Logging of administrative and remote access activity
  • Defined internal escalation for suspected exposure of information

Data retention

Information is kept only as long as there is a business, contractual, or legal reason to retain it. Enquiry correspondence is retained for a reasonable period to support follow-up conversations. Service records are retained for the duration of the engagement and for the period required by contract or law afterwards. Newsletter details are retained until you unsubscribe.

Your rights

Depending on your location, you may have rights over the personal information we hold about you.

  • Request access to the personal information we hold about you
  • Request correction of inaccurate or incomplete information
  • Request deletion where there is no overriding legal or contractual reason to retain it
  • Object to or request restriction of certain processing
  • Withdraw consent for communications you previously opted into

Client environment data

Where we support a client environment, the client remains the owner and controller of the data in that environment. We handle that data in accordance with the engagement agreement and the client's instructions. If you are an employee or customer of one of our clients, please direct data requests to that organization in the first instance.

Children's information

This website and our services are intended for business use. We do not knowingly collect personal information from children.

Changes to this policy

This policy may be updated as services, tooling, or legal obligations change. The current version is always published on this page.

Contacting us about privacy

Requests and questions can be submitted through the contact page on this website.

Please note

This document is published for transparency and describes current practice. It is general information, not legal advice, and it does not replace the written agreement covering a specific engagement.