Legal
Privacy Policy
Last updated: July 2, 2026
This Privacy Policy explains how JRS Allied Consultancy ("JRS Allied," "we," "our," or "us") collects, uses, discloses, and safeguards information about visitors to our website, prospective clients, active clients, and other individuals we interact with in the course of our business. By using our website or engaging our services you acknowledge the practices described below.
Information We Collect
We collect information in the following ways:
- Information you provide directly. When you contact us, request a proposal, or enter into an engagement, you may provide your name, employer, email address, phone number, job title, project descriptions, and any other information you choose to share.
- Client engagement data. During active engagements we may receive access to systems, source code, documentation, datasets, network diagrams, credentials, and other technical or business information necessary to deliver services.
- Website usage data. Our website may automatically collect limited technical information such as IP address, browser type, device identifiers, referring pages, pages visited, and timestamps, primarily for security, diagnostics, and performance.
- Cookies and similar technologies. We use strictly necessary cookies and, where permitted, analytics cookies. You can control cookies through your browser settings.
How We Use Information
We use collected information to:
- Respond to inquiries and evaluate potential engagements.
- Deliver, manage, and improve the services we have been contracted to perform.
- Maintain the security, integrity, and confidentiality of our systems and our clients' systems.
- Comply with legal, regulatory, tax, accounting, and contractual obligations.
- Communicate operationally with clients regarding scope, deliverables, invoicing, and support.
- Detect, prevent, and respond to fraud, misuse, or security incidents.
Legal Bases for Processing
Where applicable law requires a legal basis for processing personal data, we rely on one or more of the following: performance of a contract with you or your organization; our legitimate business interests in operating a professional services practice; compliance with legal obligations; and, where required, your consent.
Confidentiality and Client Data
JRS Allied treats all client information as confidential by default. Where the nature of an engagement warrants heightened protections — for example, defensive or offensive cybersecurity work, financial infrastructure, or regulated data — we are prepared to execute non-disclosure agreements, data processing agreements, and additional security addenda prior to the start of work.
We do not use client data to train third-party artificial intelligence or machine learning models without written authorization from the client.
How We Share Information
We do not sell personal information. We may share information only with:
- Authorized personnel. Our employees, contractors, and advisors who are bound by confidentiality obligations and require access to perform their role.
- Service providers. Vendors that support our operations (for example, cloud infrastructure, email delivery, accounting, and legal counsel), under written agreements that require the protection of information.
- Legal and regulatory recipients. Government authorities, courts, or other parties when we are required to do so by law or to protect our rights, our clients' rights, or the public.
- Successors in interest. A party involved in a merger, acquisition, financing, or sale of assets, subject to appropriate safeguards.
Data Retention
We retain personal information for as long as necessary to fulfill the purposes described in this Policy, including to satisfy contractual, legal, tax, and accounting requirements. When information is no longer needed we delete, anonymize, or securely archive it in accordance with our internal retention schedules and any client-specific retention terms.
Security
JRS Allied applies technical and organizational safeguards appropriate to the sensitivity of the information we handle, including access controls, encryption in transit, principle-of-least-privilege access, monitoring, and secure development practices. No method of transmission or storage is perfectly secure, and we cannot guarantee absolute security.
International Transfers
JRS Allied operates internationally and may process information in countries other than the country in which you are located. Where required, we implement appropriate safeguards for cross-border transfers of personal data.
Your Rights
Depending on your jurisdiction, you may have rights to access, correct, delete, restrict, port, or object to certain processing of your personal information, and to withdraw consent where processing is based on consent. To exercise these rights, contact us using the details below. We will respond within the timeframes required by applicable law.
Children's Privacy
Our services and website are directed to businesses and professionals, not to children under 16. We do not knowingly collect personal information from children.
Third-Party Links
Our website may contain links to third-party sites. We are not responsible for the privacy practices of those sites, and we encourage you to review their privacy policies before providing information.
Changes to This Policy
We may update this Policy from time to time. Material changes will be reflected by updating the "Last updated" date above and, where appropriate, by additional notice.
Contact Us
Questions about this Privacy Policy or our data practices may be directed to inquiry@jrsallied.com.
