Contact and identity
Name, organisation or school, role, email address, telephone number and information included in an enquiry.
Privacy policy · POPIA
How SIFTCON Academy collects, uses, protects and manages personal information for visitors, learners, parents, schools and clients.
Our commitment
SIFTCON Forensic Services ("SIFTCON", "we", "us" or "our") is the responsible party for personal information collected through SIFTCON Academy unless another notice or agreement says otherwise.
We work to process personal information in line with the Protection of Personal Information Act 4 of 2013 (POPIA), other applicable law and our professional confidentiality duties. This policy is a plain-English summary. A course, school, employer or client agreement may provide more specific terms.
What we handle
We collect only the information reasonably needed for the course, account, service or legal duty concerned.
Name, organisation or school, role, email address, telephone number and information included in an enquiry.
Email verification, sign-in information and records used to protect access to the Study Portal.
Course requests, administrator approval, payment status, progress, answers, results, certificates and transcripts.
Essential device, browser and preference information, plus optional analytics when you consent.
Do not share passwords, payment-card details or sensitive evidence through the assistant, enquiry form or course workspace.
POPIA framework
POPIA sets eight conditions for lawful processing. We use them to shape our policies, controls and day-to-day decisions.
We assign responsibility for privacy and review how learner and visitor information is handled.
We collect information lawfully, fairly and only when it is relevant to a clear need.
We explain why information is needed and keep it only for as long as the purpose or law requires.
We do not reuse information in a way that is incompatible with the original purpose.
We take reasonable steps to keep account and learning information accurate and current.
We provide clear notices about our collection and use of personal information.
We use organisational and technical safeguards appropriate to the sensitivity and risk.
We provide routes to access, correct, delete or object to processing where the law allows.
We use personal information to respond to enquiries; create and protect accounts; confirm email addresses; assess course registrations and payment status; provide learning; save progress and results; issue certificates and transcripts; support learners; maintain security; meet legal, regulatory, accounting and contractual duties; and improve the Academy when optional analytics is accepted.
Our lawful basis may be consent, a contract, a legal duty, protection of a legitimate interest, or another basis permitted by POPIA. You may withdraw consent where processing depends on consent, but this does not affect earlier lawful processing.
We do not sell personal information. We may share only what is necessary with authorised SIFTCON personnel, course facilitators, carefully selected technology or professional service providers, payment providers, a school or employer that arranged the learning, advisers, or a regulator or authority where the law requires or permits it.
Where information is processed outside South Africa, we take reasonable steps to use a recipient, agreement or other protection that meets POPIA's cross-border requirements.
We use reasonable administrative, physical and technical measures designed to protect personal information against loss, misuse, unauthorised access, alteration or disclosure. No system can be guaranteed completely secure.
We keep information only for as long as needed for learning, certification, a contract, dispute management or law. We then securely delete, destroy or de-identify it where reasonably practicable. If a security compromise creates a notification duty, we will follow the applicable POPIA process.
Subject to POPIA and other applicable law, you may ask whether we hold your information; request access; ask us to correct, update, delete or destroy information; object to certain processing; withdraw consent; and opt out of direct marketing.
We may need to verify your identity. Some requests may be limited where course or financial records must be kept by law, protect another person or are needed to establish or defend a legal right.
Some Academy programmes are designed for children. Where POPIA requires it, we obtain authorisation from a competent person, school or authorised adult and limit collection to what is needed for enrolment, safeguarding, learning and certification. Parents, guardians and schools should not submit more information than required.
Essential storage supports secure access and remembers privacy choices. Optional analytics stays off unless you accept it. You can reopen the Cookies tab at any time. Marketing messages include an opt-out route. Course access is reviewed by an Academy administrator and is not decided only by an automated system.
Email forensics@siftcon.africa with the subject "POPIA privacy request", or write to SIFTCON Forensic Services, Northgate Office Park, 14 Aureole Avenue, Gauteng, South Africa. You may also call +27 10 979 0010.
If we cannot resolve your concern, you may lodge a complaint with South Africa's Information Regulator through its official complaints process.
We may update this policy when our courses, systems or legal duties change. The effective date at the top shows the current published version. Material changes will be highlighted where reasonably possible.
Need help?