Privacy Policy
Last updated 30th April 2026
At Soteria, we are committed to protecting your privacy and ensuring your personal information is handled securely and transparently. We treat data protection as a core operating principle.
This Privacy and Cookie Policy outlines how we collect, use, and protect your data when you use our website (soteria.uk) and engage with our services, in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
Who We Are
Soteria is a UK-registered cybersecurity and digital consultancy. For any questions about this policy, or to exercise any of your data protection rights, please contact us:
- Email: contact@gcap.int
- Website: https://soteria.uk
What Information We Collect
We may collect and process the following categories of data:
- Personal information: Name, email address, telephone number, organisation, job title, and any other details you provide when contacting us or completing forms.
- Usage data: Information about how you interact with our website, including IP address, browser type and version, device information, referring pages, and pages visited.
- Communications: Records of correspondence, including emails, contact form submissions, and supporting documentation.
How We Use Your Information
We use your information to:
- Respond to enquiries and provide requested services
- Manage and deliver contracted engagements
- Improve our website and user experience
- Comply with legal, regulatory, and contractual obligations
- Maintain system security and prevent fraud
Our lawful bases under UK GDPR are:
- Consent: For non-essential cookies or marketing communications
- Contract: Where processing is necessary to fulfil a contract
- Legitimate interests: To improve services and operate efficiently
- Legal obligation: To comply with applicable laws and regulations
Sharing Your Information
We do not sell, rent, or trade your personal information. We may share data with:
- Trusted service providers supporting our operations
- Authorities or regulators where legally required
- Professional advisers under confidentiality obligations
Where data is transferred outside the UK, appropriate safeguards are implemented in line with UK GDPR.
Cookies
Cookies are small text files stored on your device to enhance your browsing experience. Our website uses minimal cookies to ensure functionality and improve usability.
Managing Your Cookies
You can manage cookies via your browser settings or by using the “Cookie Settings” link on our website. Disabling certain cookies may affect functionality.
Your Rights
Under UK GDPR, you have the right to:
- Access: Request a copy of your data
- Correction: Correct inaccurate or incomplete data
- Erasure: Request deletion of your data
- Restriction: Limit how your data is processed
- Portability: Transfer your data to another organisation
- Objection: Object to processing based on legitimate interests
- Withdraw consent: At any time where consent applies
To exercise your rights, contact contact@soteria.uk. You may also lodge a complaint with the ICO: https://ico.org.uk/
Data Security
We implement appropriate technical and organisational measures to protect your data against unauthorised access, alteration, disclosure, or destruction. These measures are regularly reviewed and aligned with recognised frameworks.
While we take reasonable precautions, no method of transmission over the internet is completely secure.
Retention of Your Data
We retain personal data only as long as necessary for the purposes outlined or to comply with legal and regulatory requirements. Retention periods vary depending on the data type and obligations.
Changes to This Policy
We may update this policy periodically. The “Last Updated” date indicates when changes were made. Please review this page regularly.
Contact Us
If you have any questions, contact us at:
- Email: contact@soteria.uk
You can also contact the ICO for further information or to raise a concern: https://ico.org.uk/
By using our website, you agree to this Privacy and Cookie Policy.