Privacy Policy

Last Updated: January 2025

Introduction

ssecureai is committed to protecting your privacy and personal data. This privacy policy explains how we collect, use, store, and protect your personal information when you use our website and educational services. We comply with Singapore's Personal Data Protection Act (PDPA) and international data protection standards.

This policy applies to all personal data collected through our website, course enrollment, and related educational services. By using our services, you consent to the collection and use of your information as outlined in this policy.

Contact for Privacy Matters: [email protected] | +65 6518 3764

Information We Collect

Personal Data You Provide

  • Contact Information: Name, email address, phone number, mailing address
  • Professional Information: Job title, company name, industry, experience level
  • Educational Data: Course preferences, learning objectives, academic background
  • Communication Data: Messages sent through contact forms, course inquiries, support requests
  • Payment Information: Billing details, payment method (processed by secure third-party providers)
  • Identity Verification: Documentation required for course enrollment and certification

Automatically Collected Data

  • Technical Data: IP address, browser type and version, operating system, device information
  • Usage Data: Pages visited, time spent on site, click patterns, navigation paths
  • Cookie Data: Preferences, session information, analytics data (see our Cookie Policy)
  • Performance Data: Page load times, error reports, system performance metrics
  • Security Data: Login attempts, access logs, security event monitoring

Third-Party Sources

We may receive information from:

  • Professional networking platforms (with your consent)
  • Educational partners and institutions
  • Marketing and analytics service providers
  • Public professional directories and databases

How We Use Your Data

Service Delivery

  • • Course enrollment and administration
  • • Learning platform access and management
  • • Progress tracking and assessment
  • • Certificate and credential issuance
  • • Technical support and customer service

Communication

  • • Course updates and announcements
  • • Educational content and resources
  • • Marketing communications (with consent)
  • • Customer support responses
  • • Important policy or service changes

Analytics & Improvement

  • • Website and platform performance analysis
  • • User experience optimization
  • • Course content effectiveness evaluation
  • • Educational research and development
  • • Security monitoring and threat detection

Legal Compliance

  • • PDPA and data protection compliance
  • • Educational licensing requirements
  • • Financial record keeping
  • • Fraud prevention and security
  • • Legal proceedings if required

Legal Basis for Processing

  • Consent: Marketing communications, non-essential cookies, optional surveys
  • Contract: Course delivery, payment processing, customer support
  • Legitimate Interest: Website analytics, security monitoring, business operations
  • Legal Obligation: Financial records, regulatory compliance, safety requirements

Data Sharing and Disclosure

We do not sell your personal data. We may share your information with:

Service Providers

  • Learning Management System: Course delivery and student progress tracking
  • Payment Processors: Secure payment processing and billing (Stripe, PayPal)
  • Email Services: Course communications and marketing (with consent)
  • Analytics Providers: Website performance and user behavior analysis (Google Analytics)
  • Cloud Hosting: Data storage and platform infrastructure (AWS, Azure)
  • Security Services: Fraud prevention and cybersecurity monitoring

Educational Partners

  • Universities and research institutions for collaborative programs
  • Professional certification bodies for credential verification
  • Industry partners for internship and job placement opportunities
  • Guest instructors and subject matter experts

Legal Requirements

  • Government agencies when required by Singapore law
  • Law enforcement for legitimate investigations
  • Regulatory bodies for compliance audits
  • Legal proceedings and court orders

Data Security Measures

Technical Safeguards

  • 256-bit SSL/TLS encryption for data transmission
  • AES-256 encryption for data storage
  • Regular security audits and penetration testing
  • Automated backup and disaster recovery systems
  • Multi-factor authentication for administrative access
  • Network security monitoring and intrusion detection

Administrative Controls

  • Role-based access controls and data minimization
  • Regular staff training on data protection
  • Incident response procedures and breach notifications
  • Vendor security assessments and contracts
  • Data retention policies and secure disposal
  • ISO 27001 security management framework

Data Breach Notification

In the event of a data breach that poses a risk to your rights and freedoms, we will notify the Personal Data Protection Commission within 72 hours and affected individuals without undue delay, as required by Singapore law.

Data Retention

Student Records

Course enrollment data, progress records, and certificates: 7 years after course completion (educational licensing requirements)

Contact Information

Contact forms and inquiries: 3 years from last contact (customer service and follow-up purposes)

Financial Records

Payment and billing information: 7 years (Singapore tax and accounting requirements)

Marketing Data

Newsletter subscriptions and marketing preferences: Until consent withdrawn or 5 years of inactivity

Technical Logs

Website analytics and security logs: 2 years (security monitoring and performance optimization)

Your Privacy Rights

Access and Control

  • Right to Access: Request copies of your personal data
  • Right to Rectification: Correct inaccurate or incomplete data
  • Right to Erasure: Request deletion of your personal data
  • Right to Portability: Receive your data in machine-readable format

Consent and Processing

  • Right to Withdraw Consent: Opt-out of marketing communications
  • Right to Object: Object to processing based on legitimate interests
  • Right to Restrict Processing: Limit how we use your data
  • Right to Lodge Complaints: File complaints with PDPC

Exercising Your Rights

To exercise any of these rights, contact us at [email protected] or +65 6518 3764. We will respond within 30 days and may require identity verification for security purposes.

Some rights may be limited by legitimate interests, legal obligations, or educational requirements. We will explain any limitations when responding to your request.

International Data Transfers

Some of our service providers are located outside Singapore. When we transfer personal data internationally, we ensure appropriate safeguards are in place:

  • European Union: Transfers to EU countries covered by adequacy decisions
  • United States: Standard Contractual Clauses with privacy-certified providers
  • Other Countries: Binding corporate rules or approved transfer mechanisms
  • Cloud Services: Data residency options and encryption in transit and at rest

All international transfers comply with Singapore PDPA requirements and international data protection standards.

Children's Privacy

Our services are designed for professional education and are not intended for individuals under 18 years of age. We do not knowingly collect personal information from children under 18 without parental consent.

If you believe we have inadvertently collected information from a child under 18, please contact us immediately so we can take appropriate action to remove such information from our systems.

Updates to This Policy

We may update this privacy policy to reflect changes in our practices, services, or legal requirements. When we make material changes, we will:

  • Update the "Last Updated" date at the top of this policy
  • Notify you via email or prominent website notice
  • Request additional consent for new uses of personal data
  • Provide a summary of significant changes

We encourage you to review this policy periodically to stay informed about how we protect your privacy.

Contact Information

Privacy Officer

General Inquiries

Phone: +65 6518 3764
Response Time: Within 48 hours

Mailing Address

ssecureai Privacy Officer
10 Collyer Quay
Ocean Financial Centre
Singapore 049315

Regulatory Authority

If you are not satisfied with our response to your privacy concerns, you may lodge a complaint with the Personal Data Protection Commission (PDPC) of Singapore at www.pdpc.gov.sg