1. Data Controller Identity
For the purposes of the General Data Protection Regulation and relevant UK data protection laws, the responsible entity is SterlingIQX, located at Canary Wharf, London, United Kingdom. Direct inquiries regarding data handling can be directed to [email protected].
2. Types of Data We Process
We collect information strictly required to fulfill service requests and optimize platform performance. This includes Identity Data such as your name and professional title, Contact Data including email addresses and telephone numbers provided via inquiry forms, and Technical Data comprising IP addresses, browser identifiers, and interaction logs for platform security and stability assessment.
3. Legal Bases for Processing
We process your data under the following legal frameworks: Contractual Necessity, required to fulfill your requests for consultancy services; Legitimate Interests, necessary to ensure website security and improve our operational offerings; and Consent, applied exclusively for the use of non-essential cookies and marketing communications where explicitly requested.
4. Data Security and Protection
We implement rigorous technical and organizational measures to prevent accidental loss or unauthorized access to your information, employing encryption standards aligned with current industry best practices. Access to raw datasets is strictly limited to authorized personnel who require such access for service delivery, and all transmission channels utilize advanced cryptographic protocols.
5. Data Sharing and Third Parties
Data may only be shared with trusted service providers acting as data processors under strict confidentiality agreements, exclusively to facilitate our consulting operations and platform maintenance. We conduct annual compliance audits of all subprocessors to verify that their security postures meet or exceed our internal standards.
6. Your Rights Under Data Protection Law
Under applicable regulations, you possess the right to request access to your personal data, demand correction of inaccurate information, request deletion of your data, restrict processing activities, and exercise data portability. You also retain the right to lodge a complaint with a supervisory authority, such as the Information Commissioner's Office in the United Kingdom.
7. Data Retention and Erasure
We retain your information only for as long as necessary to fulfill the purposes outlined in this policy or to comply with statutory retention obligations. Upon request, we will securely erase your personal data from all active and archival systems within thirty business days, unless a legal obligation requires us to maintain specific records for audit or litigation purposes.
8. Policy Updates and Contact
We may revise this privacy policy to reflect changes in our data practices or applicable legislation. Material updates will be communicated via our platform notification system or direct email correspondence. For any privacy-related inquiries, please contact our Data Protection Officer at [email protected] or write to us at Canary Wharf, Level 42, London, E14 5AB, United Kingdom.