Legal

Privacy Policy

Last updated: 30 April 2026.

00

Preface

This Privacy Policy applies to all personal information collected by ASCENDANT CYBER PTY LTD (we, us or our) via the website located at ascendantcyber.com (Website).

01

What Information Do We Collect?

The kind of Personal Information that we collect from you will depend on how you use the website. The Personal Information which we collect and hold about you may include:

  • Full name and contact details (email address, phone number, business address)
  • Company name, ABN, and business registration details
  • Technical information including IP addresses, browser type, device information, and cookies
  • Usage data and website analytics (pages visited, time spent, navigation patterns)
  • Security assessment requirements and cyber security infrastructure details
  • Information about IT systems, networks, and security vulnerabilities disclosed during engagement
  • Payment and billing information including credit card details and transaction history
  • Communications and correspondence related to cyber security services
  • Login credentials and authentication information for secure client portals
  • Any other information voluntarily provided through contact forms, service requests, or during the provision of cyber security consulting and penetration testing services
02

Types of Information

The Privacy Act 1998 (Cth) (Privacy Act) defines types of information, including Personal Information and Sensitive Information.

Personal Information means information or an opinion about an identified individual or an individual who is reasonably identifiable: whether the information or opinion is true or not; and whether the information or opinion is recorded in a material form or not.

If the information does not disclose your identity or enable your identity to be ascertained, it will in most cases not be classified as "Personal Information" and will not be subject to this privacy policy.

Sensitive Information is defined in the Privacy Act as including information or opinion about such things as an individual's racial or ethnic origin, political opinions, membership of a political association, religious or philosophical beliefs, membership of a trade union or other professional body, criminal record or health information.

Sensitive Information will be used by us only:

  • for the primary purpose for which it was obtained;
  • for a secondary purpose that is directly related to the primary purpose; and
  • with your consent or where required or authorised by law.
03

How We Collect Your Personal Information

We may collect Personal Information from you whenever you input such information into the Website, related app or provide it to Us in any other way.

We may also collect cookies from your computer which enable us to tell when you use the Website and also to help customise your Website experience. As a general rule, however, it is not possible to identify you personally from our use of cookies.

We generally don't collect Sensitive Information, but when we do, we will comply with the preceding paragraph.

Where reasonable and practicable we collect your Personal Information from you only. However, sometimes we may be given information from a third party, in cases like this we will take steps to make you aware of the information that was provided by a third party.

04

Purpose of Collection

We collect Personal Information to provide you with the best service experience possible on the Website and keep in touch with you about developments in our business.

We customarily only disclose Personal Information to our service providers who assist us in operating the Website. Your Personal Information may also be exposed from time to time to maintenance and support personnel acting in the normal course of their duties.

By using our Website, you consent to the receipt of direct marketing material. We will only use your Personal Information for this purpose if we have collected such information direct from you, and if it is material of a type which you would reasonably expect to receive from use. We do not use sensitive Personal Information in direct marketing activity. Our direct marketing material will include a simple means by which you can request not to receive further communications of this nature, such as an unsubscribe button link.

05

Security, Access and Correction

We store your Personal Information in a way that reasonably protects it from unauthorised access, misuse, modification or disclosure. When we no longer require your Personal Information for the purpose for which we obtained it, we will take reasonable steps to destroy and anonymise or de-identify it. Most of the Personal Information that is stored in our client files and records will be kept for a maximum of 7 years to fulfil our record keeping obligations.

The Australian Privacy Principles:

  • permit you to obtain access to the Personal Information we hold about you in certain circumstances (Australian Privacy Principle 12); and
  • allow you to correct inaccurate Personal Information subject to certain exceptions (Australian Privacy Principle 13).

Where you would like to obtain such access, please contact us in writing on the contact details set out at the bottom of this privacy policy.

We implement industry-standard security measures including encryption for data at rest and in transit, role-based access controls with multi-factor authentication, and regular security audits. In the event of a data breach that is likely to result in serious harm, we will notify affected individuals and the Office of the Australian Information Commissioner within 72 hours of becoming aware of the breach, in accordance with the Notifiable Data Breaches scheme under the Privacy Act 1988 (Cth).

06

Your Privacy Rights

Under the Australian Privacy Principles, you have the right to:

  • Request access to the personal information we hold about you
  • Request correction of inaccurate or incomplete information
  • Request deletion of your personal information in certain circumstances
  • Withdraw consent where processing is based on consent
  • Lodge a complaint about how we have handled your personal information

To exercise any of these rights, see section 07, Complaint procedure.

07

Complaint Procedure

If you have a complaint concerning the manner in which we maintain the privacy of your Personal Information, or to exercise any of the rights set out above, please contact our Privacy Officer using the contact details set out at the bottom of this policy. We will respond within 30 days. An administrative fee may apply to access requests in certain circumstances as permitted under the Privacy Act 1988 (Cth).

All complaints will be considered by our Privacy Officer and we may seek further information from you to clarify your concerns. If we agree that your complaint is well founded, we will, in consultation with you, take appropriate steps to rectify the problem. If you remain dissatisfied with the outcome, you may refer the matter to the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.

08

GDPR

In some circumstances, the European Union General Data Protection Regulation (GDPR) provides additional protection to individuals located in Europe. The fact that you may be located in Europe does not, however, on its own entitle you to protection under the GDPR. Our website does not specifically target customers located in the European Union and we do not monitor the behaviour of individuals in the European Union, and accordingly the GDPR does not apply.

09

Links to Other Websites

Our website may contain links to third-party websites. We are not responsible for the privacy practices or content of those sites. We recommend you review the privacy policy of any third-party site you visit.

10

Changes to This Policy

We may update this Privacy Policy from time to time. Changes take effect when posted to this page. We recommend checking this page periodically. Continued use of our website after changes are posted constitutes acceptance of the updated policy.

11

How to Contact Us About Privacy

If you have any queries, or if you seek access to your Personal Information, or if you have a complaint about our privacy practices, you can contact us through:

Ascendant Cyber Pty Ltd

ABN: 695 573 098

privacy@ascendantcyber.com