COGNIORA CONSULTING LTD is committed to protecting personal data and ensuring that all personal information is processed lawfully, fairly and transparently.
This policy outlines our commitment to complying with the UK General Data Protection Regulation (UK GDPR), the Data Protection Act 2018 and other applicable data protection legislation.
This policy applies to:
• All directors, employees and contractors of COGNIORA CONSULTING LTD.
• All personal data processed by the business.
• All business systems, devices and cloud services used to process personal data.
We process personal data in accordance with the following principles:
• Lawfulness, fairness and transparency.
• Purpose limitation.
• Data minimisation.
• Accuracy.
• Storage limitation.
• Integrity and confidentiality.
• Accountability.
Depending on the services provided, we may process:
• Names.
• Business contact details.
• Email addresses.
• Company information.
• Enquiry details.
• Client project information.
• Supplier information.
We do not intentionally collect special category personal data unless it is necessary for the delivery of agreed services and there is an appropriate legal basis.
Personal data is processed where one or more of the following applies:
• Consent.
• Contractual necessity.
• Compliance with legal obligations.
• Legitimate business interests.
We implement appropriate technical and organisational measures to protect personal data, including:
• Secure passwords.
• Multi-factor authentication where available.
• Device encryption where supported.
• Access controls.
• Secure cloud storage.
• Regular software updates.
• Anti-malware protection.
Access to personal data is limited to authorised individuals who require it to perform their duties.
Personal data will only be shared where necessary with trusted service providers, including website hosting, email providers and other professional service providers supporting our business operations.
We do not sell personal data.
Where personal data is transferred outside the United Kingdom, appropriate safeguards will be implemented in accordance with UK GDPR.
Individuals have the right to:
• Access their personal data.
• Request correction of inaccurate information.
• Request erasure where applicable.
• Restrict processing.
• Object to processing.
• Request data portability where applicable.
• Withdraw consent where processing relies on consent.
Requests will be handled within the timeframes required by law.
Any suspected personal data breach will be investigated promptly.
Where required, we will:
• Contain the incident.
• Assess the impact.
• Notify the Information Commissioner's Office (ICO).
• Notify affected individuals where legally required.
• Implement corrective actions to reduce the likelihood of recurrence.
Anyone processing personal data on behalf of COGNIORA CONSULTING LTD is expected to:
• Handle personal data responsibly.
• Keep information secure.
• Report suspected breaches immediately.
• Follow this policy and all applicable procedures.
As the business grows, appropriate data protection awareness and training will be provided to personnel who process personal data.
This policy will be reviewed periodically and updated where necessary to reflect changes in legislation, business operations or technology.
COGNIORA CONSULTING LTD
Company Number: 16743129
Registered Office
65 Knowl Piece
Wilbury Way
Hitchin
Hertfordshire
SG4 0TY
United Kingdom
Cogniora Consulting
Copyright © 2026 Cogniora Consulting - All Rights Reserved.