Legal
Privacy Policy
Effective Date: August 8, 2026 · Last Updated: August 8, 2026
1. Introduction & Scope
CyberOps Insights (“CyberOps Insights,” “we,” “us,” or “our”) is an independent B2B research collective producing operational frameworks, benchmark studies, and market analysis for security and IT decision-makers. This Privacy Policy explains how we collect, use, disclose, and safeguard information when you visit our website, download a research asset, register for a webinar, or otherwise interact with our published content and tools (collectively, the “Services”).
This Policy applies to professional and business contact information collected in a B2B context. By accessing our Services or submitting information to us — including through gated content downloads — you acknowledge that you have read and understood this Policy. If you do not agree with our practices, please do not use the Services or submit your information.
2. Information We Collect
We collect information necessary to authenticate professional identities, deliver requested research, and support our B2B marketing and syndication programs.
2.1 Information You Provide Directly
- Work Email Address
- Full Name and Job Title
- Company Name and Company Size
- Business Phone Number (where provided)
- Content of any inquiries, survey responses, or correspondence you submit to us
2.2 Information Collected Automatically
- IP Address and approximate geolocation
- Device, browser, and operating system information
- Usage data such as pages viewed, referral source, and time spent on the Services, collected via cookies and similar tracking technologies
2.3 Information From Third-Party Sources
We supplement the information you provide with firmographic and professional data — such as industry, employee count, revenue range, and verified job function — enriched via reputable third-party business data APIs and providers (including, without limitation, Apollo.io and comparable B2B data enrichment services). This enrichment allows us to route relevant research to appropriate practitioners and to power our demand generation programs.
3. How We Use Your Information
We use the information described above to:
- Provide, deliver, and grant access to the specific operational frameworks, reports, and tools you request;
- Authenticate your professional identity and confirm eligibility to access gated, practitioner-oriented content;
- Enrich your profile with firmographic data to personalize research recommendations and improve relevance;
- Operate our B2B marketing syndication programs, including sharing your information with sponsors of specific gated assets and initiating direct outreach on our behalf and on behalf of our partners;
- Analyze aggregate engagement trends to improve our research methodology and website performance; and
- Comply with legal obligations, enforce our agreements, and protect the security of our Services.
4. Third-Party Data Sharing & Syndication
Gated content on CyberOps Insights operates on a syndication model. When you download a gated report, framework, or dataset and provide your explicit consent at the point of collection, you acknowledge and agree that your professional contact information (including your name, work email, job title, company name, and enriched firmographic data) may be sold, shared, licensed, or otherwise syndicated to our trusted third-party technology partners, enterprise SaaS vendors, and demand generation networks.
These partners may use your information for their own direct marketing and sales outreach purposes, independent of CyberOps Insights, including phone, email, and other electronic communications regarding their products and services. Each gated asset will identify, at the point of collection, the sponsor(s) and/or partner categories associated with that specific piece of content.
We do not sell or share information collected outside of this explicit, consent-based syndication model (for example, anonymous browsing activity is not sold). You may withdraw your consent to future syndication, or opt out of the sale or sharing of your personal information, at any time using the methods described in Sections 5, 6, and 7 below.
5. California Privacy Rights (CCPA/CPRA)
If you are a California resident, the California Consumer Privacy Act, as amended by the California Privacy Rights Act (“CCPA/CPRA”), grants you the following rights with respect to your personal information:
- Right to Know / Access — request disclosure of the categories and specific pieces of personal information we have collected about you, and the categories of third parties with whom it has been sold or shared;
- Right to Correct — request correction of inaccurate personal information;
- Right to Delete — request deletion of personal information we have collected from you, subject to certain legal exceptions;
- Right to Opt-Out of Sale or Sharing — direct us to stop selling or sharing your personal information, including the syndication described in Section 4; and
- Right to Non-Discrimination — we will not deny you access to research, charge you different prices, or provide a different level of service for exercising any of these rights.
To exercise your right to opt out of the sale or sharing of your personal information, or to submit any other CCPA/CPRA request, email our Data Protection Officer at alec@cyberopsinsights.com with the subject line “CCPA Opt-Out Request” or “CCPA Data Request.” We will verify your request and respond within the timeframes required by law.
6. European Privacy Rights (GDPR)
If you are located in the European Economic Area, the United Kingdom, or Switzerland, the General Data Protection Regulation (“GDPR”) applies to our processing of your personal data, and the following terms govern that processing.
6.1 Opt-In Consent Model
Unlike other jurisdictions, we apply a strict opt-in consent model for visitors identified as located in the EEA, UK, or Switzerland. We will not enroll you in third-party marketing syndication (Section 4) or ongoing direct marketing communications unless you provide clear, affirmative, unticked-box consent at the point of collection.
6.2 Lawful Basis for Processing
- Consent — for third-party syndication, sponsor outreach, and any marketing communications requiring opt-in under applicable law;
- Legitimate Interest — for limited, proportionate B2B outreach directly related to research you have requested, and for securing and improving our Services, balanced against your rights and expectations as a data subject; and
- Legal Obligation — where processing is necessary to comply with applicable law.
6.3 Your Rights
Subject to applicable law, you have the right to:
- Access the personal data we hold about you;
- Rectify inaccurate or incomplete data;
- Request erasure (“right to be forgotten”) of your personal data;
- Restrict or object to our processing of your data;
- Receive your data in a portable format; and
- Withdraw consent at any time, without affecting the lawfulness of processing prior to withdrawal.
You also have the right to lodge a complaint with your local data protection supervisory authority if you believe our processing of your personal data infringes applicable law.
7. Contact Information for Data Requests
All Data Subject Access Requests (DSARs), deletion requests, consent withdrawals, and opt-out communications — including CCPA/CPRA and GDPR requests — should be directed to our Data Protection Officer:
Data Protection Officer
CyberOps Insights
We aim to acknowledge all data subject requests promptly and to respond within the timeframe required by applicable law (generally 30 days for GDPR requests and 45 days for CCPA/CPRA requests). We may request additional information to verify your identity before fulfilling a request.