Privacy Policy Effective date: 01 January 2020
Beryllium, LLC., dba Beryllium InfoSec Collaborative is a cyber security consultancy providing information security risk assessment services with a focus on assisting smaller businesses in the defense industrial base to better secure their data from exfiltration by agents of adversarial nation states. Our flagship product is CUICK TRAC™ a secure virtual environment to lock down proprietary and sensitive data.
This Privacy Policy sets out our policies regarding the collection, use and disclosure of personal data when you engage with us via our website or during the period you retain us for our operational services, as well as any choices you may have communicated to us with regard that data.
We may your data to provide and improve the user experience on this website. By using the website, you agree to the collection and use of information in accordance with this policy.
We collect several different types of information for various purposes to provide and improve our website and professional services to you.
Personal Data
While using our website, we may ask you to provide us with certain personally identifiable information that can be used to contact or identify you (“Personal Data”). Personally identifiable information may include, but is not limited to:
We may use your Personal Data to contact you with newsletters, marketing or promotional materials and other information that may be of interest to you. You may opt out of receiving any, or all, of these communications from us by following the unsubscribe link or the instructions provided in any email we send.
Usage Data
We may also collect information on how the website is accessed and used (“Usage Data”). This Usage Data may include information such as your computer’s Internet Protocol address ( IP address), browser type, browser version, the pages of our Service that you visit, the time and date of your visit, the time spent on those pages, unique device identifiers including mobile devices, and other diagnostic data.
Tracking & Cookies Data
We use cookies and similar tracking technologies to track the activity on our website and we may hold certain information that derives from the use of those technologies.
Cookies are files with a small amount of data which may include an anonymous unique identifier. Cookies are sent to your browser from a website and stored on your device. Other tracking technologies are also used such as beacons, tags and scripts to collect and track information and to determine how we can improve our website and user experience.
You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to fully use some portions of our website
Examples of Cookies we use:
Beryllium uses the collected data for various purposes, which may include:
At the effective date of this Privacy Policy, Beryllium does not actively market our services in the EuroZone. However, the nature of our services are such that our clients can be located around the globe. Therefore, if you reside within the European Economic Area (EEA), our legal basis for collecting and using the personal information described in this Privacy Policy depends on the types of Personal Data we collect and the specific context in which we collect it.
For example:
Beryllium may process your Personal Data because:
Beryllium will retain your Personal Data only for as long as is necessary for the purposes set forth in this Privacy Policy. We will retain and use your Personal Data only to the extent necessary to comply with our legal obligations (for example, if we are required to retain your data to comply with applicable laws), resolve disputes and enforce our legal agreements and policies.
Beryllium will also retain Usage Data for the purpose of internal analysis. Usage Data is generally retained for a shorter length of time, except when this data is used to strengthen the security or to improve the functionality of our website, or we are legally obligated to retain this data for longer periods.
Your information, including Personal Data, may be transferred to — and maintained on — computers located outside of your state, province, country or other governmental jurisdiction where the data protection laws may differ from those of your jurisdiction.
If you are located outside the United States and choose to provide information to us, please note that we may transfer the data, including Personal Data, to United States and process it there.
Your consent to this Privacy Policy, as amended from time to time, and followed by your submission of such information is deemed to represent your agreement to that transfer.
Beryllium will take all the steps reasonably necessary to ensure that your data is treated securely while your Personal Data is under Beryllium control. Additionally, and in accordance with this Privacy Policy any transfer of control of your Personal Data will be only be sent to an organization or a country if that organization or country represents and warrants that there are adequate controls in place to assure the security of your data and other personal information.
If Beryllium is involved in a merger, acquisition or asset sale, your Personal Data could be transferred to a successor entity. We will provide you notice before your Personal Data is transferred and becomes subject to a different Privacy Policy.
Under certain circumstances, Beryllium may be required to disclose your Personal Data if required to do so by law or in response to valid requests by public authorities (e.g. a court or a government agency with appropriate legal jurisdiction.)
Beryllium may disclose your Personal Data in the good faith belief that such action is necessary to:
The security of your data is important to us but remember that no method of transmission over the Internet or method of electronic storage can be guaranteed to be 100% secure. While we strive to use commercially acceptable means to protect your Personal Data, we cannot guarantee its absolute security.
Our website does not implement Do Not Track (“DNT”) for you. Do Not Track is a preference you can set in your web browser to inform websites that you do not wish to be tracked.
You can enable or disable Do Not Track by visiting the Preferences or Settings page of your web browser.
If you are a resident of the European Economic Area (EEA), you have certain data protection rights. Beryllium aims to take reasonable steps to allow you to correct, amend, delete or limit the use of your Personal Data.
If you wish to be informed about what Personal Data we hold about you and if you want it to be removed from our systems, please contact us. Our Data Protection Officer is David Confeld, Vice President of Tech Ops., privacy@berylliumfosec.com
In certain circumstances, you have the following data protection rights:
Please note that we may ask you to verify your identity before responding to such requests.
You also have the right to complain to a Data Protection Authority about our collection and use of your Personal Data. For more information, please contact your local data protection authority in the European Economic Area (EEA).
Service Providers
We may employ third party companies and individuals to optimize the user experience of our website (“Service Providers”), or to provide the website delivery on our behalf, perform website connected services or assist us in analyzing how our website is being used.
These third parties have access to your Personal Data only to perform the above mentioned tasks on our behalf and are obligated not to disclose or use your data for any other purpose.
Analytics
We may use third-party Service Providers to monitor and analyze the use of our website.
Links to Other Sites
Our website may contain links to other sites that are not operated by us. If you click a third-party link, you will be directed to that third party’s site. We strongly advise you to review the Privacy Policy of every site you visit.
We have no control over and assume no responsibility for the content, privacy policies or practices of any third-party sites or services.
Children’s Privacy
Our website is not intended for the use of anyone under the age of 18 (“Children”).
We do not knowingly collect personally identifiable information from anyone under the age of 18. If you are a parent or guardian and you are aware that your Child has provided us with Personal Data, please contact our Data Protection Officer. If we become aware that we have collected Personal Data from children without verification of parental consent, we will promptly take the necessary steps to remove that information from our servers.
Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page.
We will let you know via email and/or a prominent notice on our website, prior to the change becoming effective and update the “effective date” at the top of this Privacy Policy.
You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.
Contact Us
If you have any questions about this Privacy Policy, please contact us:
This PRIVACY NOTICE FOR CALIFORNIA RESIDENTS supplements the information contained in the Privacy Statement of BERYLLIUM LLC (collectively, “we,” “us,” or “our”) and applies solely to visitors, users, and others who reside in the State of California (“consumers” or “you”). We adopt this notice to comply with the California Consumer Privacy Act of 2018 (“CCPA”) and other California privacy laws. Any terms defined in the CCPA have the same meaning when used in this notice.
Information We Collect
We collect information that identifies, relates to, describes, references, is capable of being associated with, or could reasonably be linked, directly or indirectly, with a particular consumer or device (“personal information”). In particular, we have collected the following categories of personal information from consumers within the last twelve (12) months:
Personal information does not include:
We obtain the categories of personal information listed above from the following categories of sources:
Use of Personal Information
We may use or disclose the personal information we collect for one or more of the following business purposes:
We will not collect additional categories of personal information or use the personal information we collected for materially different, unrelated, or incompatible purposes without providing you notice.
Sharing Personal Information
We may disclose your personal information to a third party for a business purpose. When we disclose personal information for a business purpose, we enter a contract that describes the purpose and requires the recipient to both keep that personal information confidential and not use it for any purpose except performing the contract.
In the preceding twelve (12) months, we have disclosed the following categories of personal information for a business purpose:
Category A: Identifiers.
Category B: California Customer Records personal information categories.
Category C: Protected classification characteristics under California or federal law.
Category I: Professional or employment-related information.
We disclose your personal information for a business purpose to the following categories of third parties:
In the preceding twelve (12) months, we have not sold any personal information.
Your Rights and Choices
The CCPA provides consumers (California residents) with specific rights regarding their personal information. This section describes your CCPA rights and explains how to exercise those rights.
Access to Specific Information and Data Portability Rights
You have the right to request that we disclose certain information to you about our collection and use of your personal information over the past 12 months. Once we receive and confirm your verifiable consumer request, we will disclose to you:
Deletion Request Rights
You have the right to request that we delete any of your personal information that we collected from you and retained, subject to certain exceptions. Once we receive and confirm your verifiable consumer request, we will delete (and direct our service providers to delete) your personal information from our records, unless an exception applies.
We may deny your deletion request if retaining the information is necessary for us or our service providers to:
Exercising Access, Data Portability, and Deletion Rights
To exercise the access, data portability, and deletion rights described above, please submit a verifiable consumer request to us by either:
Only you or a person registered with the California Secretary of State that you authorize to act on your behalf, may make a verifiable consumer request related to your personal information. You may also make a verifiable consumer request on behalf of your minor child.
You may only make a verifiable consumer request for access or data portability twice within a 12-month period. The verifiable consumer request must:
We cannot respond to your request or provide you with personal information if we cannot verify your identity or authority to make the request and confirm the personal information relates to you. Making a verifiable consumer request does not require you to create an account with us. We will only use personal information provided in a verifiable consumer request to verify the requestor’s identity or authority to make the request.
Response Timing and Format
We endeavor to respond to a verifiable consumer request within 45 days of its receipt. If we require more time (up to 90 days), we will inform you of the reason and extension period in writing. If you have an account with us, we will deliver our written response to that account. If you do not have an account with us, we will deliver our written response by mail or electronically, at your option. Any disclosures we provide will only cover the 12-month period preceding the verifiable consumer request’s receipt. The response we provide will also explain the reasons we cannot comply with a request, if applicable. For data portability requests, we will select a format to provide your personal information that is readily useable and should allow you to transmit the information from one entity to another entity without hindrance.
We do not charge a fee to process or respond to your verifiable consumer request unless it is excessive, repetitive, or manifestly unfounded. If we determine that the request warrants a fee, we will tell you why we made that decision and provide you with a cost estimate before completing your request.
Non-Discrimination
We will not discriminate against you for exercising any of your CCPA rights. Unless permitted by the CCPA, we will not:
Changes to Our Privacy Notice
We reserve the right to amend this privacy notice at our discretion and at any time. When we make changes to this privacy notice, we will notify you by email or through a notice on our website homepage.
Contact Information
If you have any questions or comments about this notice, our Privacy Statement, the ways in which we collect and use your personal information, your choices and rights regarding such use, or wish to exercise your rights under California law, please do not hesitate to contact us at:
David Confeld (Data Protection Officer & Vice President of Tech Ops.)
715 Florida Ave S Ste 210
Minneapolis, MN 55426
763-546-8354
privacy@berylliumfosec.com