Skip to Content
Arkeo Cyber
  • Home
  • Services
  • About Us
  • Get in touch
  • Sign in
  • 0
  • 0
  •       Certified Cyber Risk  & Compliance Specialists
  • Follow us
Arkeo Cyber
  • 0
  • 0
    • Home
    • Services
    • About Us
  •       Certified Cyber Risk  & Compliance Specialists
  • Follow us
  • Sign in
  • Get in touch
Privacy Policy1. Introduction​2. Definitions​3. What Personal Information We Collect​4. Purpose of Processing​5. Legal Basis for Processing​6. How Personal Information is Stored and Secured​7. Sharing of Personal Information​8. Cross-Border Transfers​9. Data Retention​10. Your Rights as a Data Subject​11. Use of Cookies​12. Direct Marketing​13. Information Officer​14. How to Lodge a Complaint​15. Changes to This Policy

Privacy Policy


Aligned with the Protection of Personal Information Act (POPI Act 4 of 2013)

Effective Date: 1/1/2026

Last Updated: 1/1/2026

Responsible Party: Arkeo Cyber (Pty) Ltd

Registration Number: 

Address: Unit 4 Benton House, Bond Street Business Park, 374 Kent Avenue, Ferndale, Gauteng, 2194

Email: info@arkeocyber.com

Website: https://arkeocyber.com


1. Introduction

This Privacy Policy explains how Arkeo Cyber (Pty) Ltd (“the Company”, “we”, “our”, or “us”) collects, uses, stores, shares, and protects personal information as defined by the Protection of Personal Information Act, 4 of 2013 (“POPIA”). We are committed to processing personal information lawfully, reasonably, and securely.

By accessing our website, products, or services, you acknowledge that you have read and understood this Privacy Policy.


2. Definitions

For purposes of this policy:

  • POPIA refers to the Protection of Personal Information Act 4 of 2013.

  • Personal Information means information relating to an identifiable, living natural person or existing juristic person.

  • Special Personal Information includes sensitive categories such as health data, biometric data, and financial information.

  • Data Subject refers to the person to whom the personal information relates.

  • Responsible Party refers to the party who determines the purpose and means of processing personal information.

  • Processing includes the collection, receipt, recording, storage, updating, use, distribution, and destruction of personal information.


3. What Personal Information We Collect

We may collect and process the following types of personal information:

3.1 Information you provide directly

  • Full name and surname

  • Identification or passport number

  • Contact details (email, phone number, address)

  • Company details (where applicable)

  • Billing information

  • Payment and financial details

  • Login details for relevant portals (where applicable)

3.2 Information collected automatically

  • IP address

  • Device and browser type

  • Cookies and usage data

  • Log files and system tracking information

3.3 Special Personal Information

Where applicable and only with consent or legal requirement:

  • Sensitive financial information

  • Security credentials

  • Other special categories as required by service delivery


4. Purpose of Processing

We process personal information for the following purposes:

  • To provide and maintain our services

  • To manage billing, invoicing, and financial transactions

  • To verify identity and perform security checks

  • To comply with legal and regulatory obligations

  • To communicate with clients and respond to support requests

  • To conduct internal audits, reporting, and quality control

  • To enhance or improve our products and services

  • For marketing and communication purposes (only with consent)


5. Legal Basis for Processing

We rely on one or more of the following justifications under POPIA:

  • Consent of the data subject

  • Performance of a contract

  • Compliance with a legal obligation

  • Protection of legitimate interests

  • Public law duty


6. How Personal Information is Stored and Secured

We implement appropriate technical and organisational security safeguards, including but not limited to:

  • Secure servers and encrypted storage

  • Access controls and authentication

  • Regular monitoring and security reviews

  • Firewalls and intrusion detection systems

  • Data minimization and retention policies

We take all reasonable steps to prevent loss, unauthorised access, disclosure, modification, or destruction of personal information.


7. Sharing of Personal Information

We may share personal information with:

  • Service providers and operators who assist in service delivery

  • IT and cloud hosting providers

  • Regulators, law enforcement, and government bodies (where required)

  • Payment processors and financial institutions

  • Professional advisors (legal, accounting, auditing)

Operators are bound by confidentiality and security obligations and may only process information as instructed.

We do not sell personal information.


8. Cross-Border Transfers

Your information may be transferred outside South Africa for processing or storage. Where this occurs, we ensure that:

  • The recipient country has adequate data protection laws, or

  • Binding agreements are in place to protect your information in terms of POPIA.


9. Data Retention

Personal information is retained only for as long as necessary to:

  • Fulfil the purpose for which it was collected

  • Meet regulatory or legal requirements

  • Resolve disputes

  • Enforce agreements

Thereafter, information will be securely destroyed or anonymised.


10. Your Rights as a Data Subject

Under POPIA, you have the right to:

  • Access your personal information

  • Request correction or deletion of your information

  • Object to processing

  • Withdraw consent

  • Lodge a complaint with the Information Regulator

  • Request restriction of processing

  • Request data portability (where applicable)

Requests may be submitted in writing to the Information Officer.


11. Use of Cookies

We use cookies to improve user experience and analyse website performance. Users may disable cookies through browser settings; however, certain site features may not function correctly.


12. Direct Marketing

We will only send direct marketing communications where:

  • You have given consent, or

  • You are an existing client and we are marketing similar services.

You may opt out at any time.


13. Information Officer

In compliance with POPIA, we have appointed an Information Officer:

Name: George Soumbouloglou

Email: info@arkeocyber.com

Telephone: +27 87 265-7513

The Information Officer is responsible for ensuring compliance and responding to all POPIA-related queries and requests.


14. How to Lodge a Complaint

If you believe your personal information has been misused, you may contact the Information Regulator:

Information Regulator (South Africa)

Email: complaints.IR@justice.gov.za

Website: www.justice.gov.za/inforeg


15. Changes to This Policy

We reserve the right to amend or update this Privacy Policy at any time. Updates will be published on our website with a revised “Last Updated” date.

If you would like this privacy policy adapted for a specific business type (e.g., SaaS, consulting, retail, online store), I can tailor it further.

Legal & Compliance

Terms of Service 
Promotion of Access to Information (PAIA)
Privacy Policy (POPIA)


Offices

Cape Town
32 Kloof Street
Gardens
Cape Town
8000

Johannesburg
Unit 4 Benton House
374 Kent Avenue
Ferndale
Johannesburg

2194


Arkeo Cyber helps organisations understand, quantify and mitigate their cybersecurity risks to close visibility and control gaps, build resilience in the face of continued cyberthreats and meet their regulatory compliance requirements.

Copyright © Arkeo Cyber (Pty) Ltd
Powered by Odoo - The #1 Open Source eCommerce