Privacy Policy

How SSDB Tech Services, Inc. ("SSDB Tech") collects, uses, protects, and shares personal information in connection with our consulting and enterprise IT services and this website.

Last updated: 26 July 2026 · Effective date: 26 July 2026

Scope of this Policy. This Privacy Policy applies to ssdbtech.com and to personal information SSDB Tech processes in connection with our consulting, engineering, and managed services. Our Core AI platform is provided from a separate site at core.ssdbtech.com and is governed by its own Privacy Policy, Terms of Service, and Data Processing Addendum. If you use Core, please refer to those documents.

SSDB Tech respects your privacy and is committed to protecting the personal information you share with us. This Privacy Policy describes how we collect, use, disclose, and safeguard personal information when you visit ssdbtech.com, request our services, engage us as a consultancy, or interact with us in any commercial capacity.

1. Who we are

SSDB Tech Services, Inc. is a technology consultancy incorporated in the State of Texas, United States, delivering enterprise software engineering, cloud modernization, cybersecurity, and enterprise computing services to clients globally. Where this Policy refers to "we," "us," or "our," it means SSDB Tech Services, Inc.

For most personal information we process about website visitors and prospective clients, we act as the data controller. Where we process personal information on behalf of a client as part of a services engagement, we act as a data processor and our obligations are governed by the Data Processing Addendum executed as part of that engagement.

2. Information we collect

Information you provide. When you request a consultation, complete a contact form, subscribe to our newsletter, take our Enterprise Technology Readiness Assessment, apply for a role, or otherwise engage with us, we collect information you voluntarily provide — including your name, business email address, telephone number, company name, job title, country, and the content of any messages or documents you send.

Information collected automatically. When you visit ssdbtech.com, we automatically collect technical information — IP address (which we truncate for analytics purposes), browser type and version, operating system, referring URL, pages viewed, time spent on pages, and general geographic region (country and city level). This information is collected via cookies, server logs, and similar technologies.

Information from third parties. We may receive contact information about you from your employer, a mutual introducer, a business partner, publicly available sources (such as LinkedIn), or from your interactions with our content on third-party platforms.

Information collected in the course of a services engagement. When we deliver a consulting or engineering engagement, we may process personal information contained in the systems, data, or documents you provide to us in scope of that engagement. Such processing is governed by the executed engagement contract and Data Processing Addendum, not this Policy.

3. How we use your information

We use the personal information we collect for the following purposes:

  • To respond to your inquiries and provide the consulting, engineering, and managed services you request.
  • To negotiate, execute, and administer statements of work, master services agreements, and related commercial arrangements.
  • To send administrative communications, engagement updates, security notifications, and — where you have opted in — marketing communications and research insights.
  • To operate, maintain, secure, and improve ssdbtech.com and its content.
  • To evaluate candidates for open roles and manage recruitment processes.
  • To comply with legal, regulatory, tax, accounting, and audit obligations.
  • To detect, prevent, and respond to fraud, security incidents, and misuse of our website or services.
  • To protect the rights, property, and safety of SSDB Tech, our clients, our personnel, and other third parties.

4. Legal bases for processing (GDPR / UK GDPR)

If you are located in the European Economic Area, United Kingdom, or Switzerland, we process your personal information under one or more of the following legal bases:

  • Contract. Where processing is necessary to perform a contract with you or to take pre-contractual steps at your request.
  • Legitimate interests. Where processing is necessary for our legitimate interests in operating and marketing our services, provided those interests are not overridden by your fundamental rights and freedoms.
  • Consent. Where you have given us explicit consent — for example, to receive marketing communications or to place non-essential cookies.
  • Legal obligation. Where processing is required by law.

5. Cookies and similar technologies

ssdbtech.com uses cookies and similar tracking technologies to distinguish you from other visitors, understand how you interact with the site, remember your preferences, and enable certain features. We use:

  • Strictly necessary cookies — required for the site to function; cannot be disabled.
  • Analytics cookies — help us understand aggregate site usage (Google Analytics 4, with IP anonymization).
  • Functional cookies — remember your preferences (for example, accessibility settings).

You can control cookies through your browser settings or, where applicable, through our cookie preferences interface. Blocking some cookies may affect site functionality.

6. How we share your information

SSDB Tech does not sell, rent, or trade personal information. We may share personal information with:

  • Service providers and sub-processors — vendors performing services on our behalf (cloud hosting, analytics, email delivery, CRM, engagement management), bound by written data-processing terms and appropriate confidentiality obligations.
  • Affiliates. Our corporate affiliates and group entities, for the purposes described in this Policy.
  • Professional advisors — legal, accounting, insurance, and audit advisors under duties of confidentiality.
  • Authorities — where required by law, court order, or valid governmental request, or where reasonably necessary to protect our legal rights, the rights of our clients, or public safety.
  • Business transfers — in connection with a merger, acquisition, financing, reorganization, or sale of assets, subject to customary confidentiality protections.

A current list of our material sub-processors is available on written request to legal@ssdbtech.com.

7. International data transfers

SSDB Tech is headquartered in the United States and operates delivery capabilities globally. Personal information we collect may be transferred to, stored in, and processed in countries other than the country in which you reside, including the United States, India, and jurisdictions where our sub-processors operate.

Where such transfers involve personal data of individuals in the EEA, UK, or Switzerland, we implement appropriate safeguards — including the European Commission's Standard Contractual Clauses, the UK International Data Transfer Addendum, and supplementary technical and organizational measures — to provide an essentially equivalent level of protection.

8. Data retention

We retain personal information only for as long as necessary to fulfill the purposes for which it was collected, to satisfy legal, tax, accounting, or reporting obligations, to resolve disputes, and to enforce our agreements. Retention periods vary by data category:

  • Prospect & inquiry data: retained for up to 24 months from last interaction, unless you request earlier deletion.
  • Client & engagement data: retained for the duration of the engagement and for the period required by law and by the engagement contract (typically 7 years for financial records).
  • Recruitment data: retained for up to 24 months following a candidacy, unless you consent to longer retention for future opportunities.
  • Analytics data: retained for up to 14 months in identifiable form; thereafter aggregated.

When personal information is no longer required, we securely delete or anonymize it in accordance with our retention schedule.

9. Data security

We implement technical, administrative, and physical safeguards designed to protect personal information — including encryption in transit and at rest, role-based access controls, network segmentation, multi-factor authentication, secure development practices, and periodic security assessments. Our operations align with SOC 2, ISO 27001, and NIST CSF 2.0 principles. See our Security Policy for further detail.

Despite our efforts, no method of transmission over the internet or method of electronic storage is completely secure; we cannot guarantee absolute security.

10. Your rights

Depending on your location, you may have the following rights regarding your personal information:

  • Access — request a copy of the personal information we hold about you.
  • Correction — request that we correct inaccurate or incomplete information.
  • Deletion — request that we delete your personal information, subject to legal retention requirements.
  • Restriction — request that we limit how we process your personal information.
  • Portability — receive your personal information in a structured, commonly used, machine-readable format.
  • Objection — object to processing based on our legitimate interests, including direct marketing.
  • Withdraw consent — where we rely on consent, withdraw it at any time without affecting the lawfulness of prior processing.
  • Lodge a complaint — with your local supervisory or data protection authority.

California residents have additional rights under the California Consumer Privacy Act, as amended by the CPRA — including the right to know what personal information is collected, sold, or shared; the right to correct or delete personal information; the right to opt out of the sale or sharing of personal information; and the right to non-discrimination for exercising these rights. SSDB Tech does not sell personal information and does not share personal information for cross-context behavioral advertising.

To exercise any of these rights, contact us at legal@ssdbtech.com. We will verify your request and respond within the timeframes required by applicable law (generally 30 days under GDPR, 45 days under CCPA).

11. Children's privacy

Our website and services are directed to businesses and are not intended for individuals under the age of 16. We do not knowingly collect personal information from children. If you believe we have collected personal information from a child, please contact us at legal@ssdbtech.com and we will delete it.

12. Third-party links

Our website may contain links to third-party websites, resources, and services, including our Core product site at core.ssdbtech.com which operates under its own privacy policy. This Privacy Policy does not apply to third-party sites. We encourage you to review their privacy policies before providing personal information.

13. Changes to this Policy

We may update this Privacy Policy periodically to reflect changes in our practices, services, or applicable law. When we do, we will update the "Last updated" date at the top and, where the changes are material, provide additional notice — for example, by email to registered contacts or via a banner on ssdbtech.com. Your continued use of ssdbtech.com after the effective date constitutes acceptance of the updated Policy.

14. Contact us

For questions, requests, or complaints regarding this Privacy Policy or our data practices, please contact:

SSDB Tech Services, Inc.

Legal & Privacy: legal@ssdbtech.com

Security matters: security@ssdbtech.com

Registered in the State of Texas, United States. Our contact address is available in the site footer.