Contact and identity
Name, organisation, role, email address, telephone number and information included in an enquiry.
Privacy policy · POPIA
How SIFTCON collects, uses, protects and manages personal information across our websites, services and Academy.
Our commitment
SIFTCON Forensic Services ("SIFTCON", "we", "us" or "our") is the responsible party for personal information collected through this website unless another notice or agreement says otherwise.
We work to process personal information in line with the Protection of Personal Information Act 4 of 2013 (POPIA), other applicable law and the confidentiality duties that apply to our work. This policy is a plain-English summary. A service agreement, learner notice or lawful instruction may provide more specific terms.
What we handle
We collect only the information reasonably needed for the service, relationship or legal duty concerned.
Name, organisation, role, email address, telephone number and information included in an enquiry.
Instructions, correspondence, contracts, billing information and records needed to deliver professional services.
Essential device, browser and preference information, plus optional analytics when you consent.
Account details, email verification, course requests, approval and payment status, learning progress, results, certificates and transcripts.
Do not send sensitive evidence through an ordinary website form or chat. Contact us first so that we can agree on a suitable secure transfer method.
POPIA framework
POPIA sets eight conditions for lawful processing. We use them to shape our policies, controls and day-to-day decisions.
We assign responsibility for privacy and review how personal information is handled.
We collect information lawfully, fairly and only when it is relevant to a clear need.
We explain why information is needed and keep it only for as long as the purpose or law requires.
We do not reuse information in a way that is incompatible with the original purpose.
We take reasonable steps to keep information accurate, complete and current.
We provide clear notices about our collection and use of personal information.
We use organisational and technical safeguards appropriate to the sensitivity and risk.
We provide routes to access, correct, delete or object to processing where the law allows.
We use personal information to respond to enquiries; assess and deliver requested services; manage client, supplier and professional relationships; create and protect Academy accounts; review course registrations and payments; provide learning, certificates and transcripts; maintain security; meet legal, regulatory, accounting and contractual duties; and improve our websites when optional analytics is accepted.
Our lawful basis may be consent, a contract, a legal duty, protection of a legitimate interest, or another basis permitted by POPIA. You may withdraw consent where processing depends on consent, but this does not affect earlier lawful processing.
We do not sell personal information. We may share only what is necessary with authorised SIFTCON personnel, carefully selected technology or professional service providers, payment providers, advisers, a client acting under a lawful mandate, or a regulator, court or law-enforcement body where the law requires or permits it.
Where information is processed outside South Africa, we take reasonable steps to use a recipient, agreement or other protection that meets POPIA's cross-border requirements.
We use reasonable administrative, physical and technical measures designed to protect personal information against loss, misuse, unauthorised access, alteration or disclosure. No system can be guaranteed completely secure.
We keep personal information only for as long as it is needed for its purpose, a contract, professional standards, dispute management or law. We then securely delete, destroy or de-identify it where reasonably practicable. If a security compromise creates a notification duty, we will follow the applicable POPIA process.
Subject to POPIA and other applicable law, you may ask whether we hold your personal information; request access; ask us to correct, update, delete or destroy information; object to certain processing; withdraw consent; and opt out of direct marketing.
We may need to verify your identity before acting. Some requests may be limited where information must be kept by law, is legally privileged, belongs to another person or forms part of a confidential investigation.
Some Academy programmes are designed for children or young learners. Where POPIA requires it, we obtain authorisation from a competent person, school or other authorised adult and limit collection to what is needed for enrolment, safeguarding, learning and certification. Parents, guardians and schools should not submit more information than required.
Essential storage supports core functions and remembers privacy choices. Optional analytics stays off unless you accept it. You can reopen the Cookies tab at any time. Marketing messages include an opt-out route. We do not use website information to make solely automated decisions that have legal or similarly significant effects.
Email forensics@siftcon.africa with the subject "POPIA privacy request", or write to SIFTCON Forensic Services, Northgate Office Park, 14 Aureole Avenue, Gauteng, South Africa. You may also call +27 10 979 0010.
If we cannot resolve your concern, you may lodge a complaint with South Africa's Information Regulator through its official complaints process.
We may update this policy when our services, systems or legal duties change. The effective date at the top shows the current published version. Material changes will be highlighted where reasonably possible.
Need help?