top of page

Privacy Policy

Privacy Policy
Global Risk Consultants (GRC) is committed to protecting the privacy and security of personal information entrusted to us by our clients, employees, consultants, business partners, vendors and other stakeholders.

Information We Collect and Use
GRC may collect and process personal information where required for legitimate business purposes, contractual requirements, provision of professional services, legal and regulatory obligations, recruitment, and other business relationships.
We collect only information that is relevant and necessary for the purpose for which it is required. Personal information is processed fairly, transparently and in accordance with applicable laws and regulations.

How We Protect Information
GRC maintains appropriate technical and organisational security measures to protect personal information against unauthorised access, disclosure, alteration, loss or misuse.
Access to personal information is restricted to authorised personnel based on their roles and business requirements. Where appropriate, security measures such as encryption, data masking, anonymisation, pseudonymisation and role-based access controls are applied.

Sharing of Information
Personal information may be shared with third parties only where there is a legitimate business requirement, contractual requirement, consent, or legal or regulatory obligation.
GRC requires appropriate confidentiality and data protection safeguards when information is shared with third parties.
GRC does not sell personal information to third parties.

Data Retention
Personal information is retained only for as long as necessary to fulfil the purpose for which it was collected or to comply with applicable contractual, legal and regulatory requirements. Information that is no longer required is securely deleted or disposed of.

Data Accuracy
GRC takes reasonable measures to ensure that personal information maintained by us is accurate and updated where necessary.

Privacy and Data Protection
GRC periodically reviews its privacy and data protection practices to maintain appropriate controls and compliance with applicable requirements.

Our Privacy Policy is aligned with GRC's information security management framework and ISO 27001:2022 requirements.

Contact Us

For any questions or clarifications regarding privacy or the handling of personal information, please contact:
Global Risk Consultants
Email: grc@globalriskconsultants.in
 

bottom of page