Newsletter
Stay up to date with our monthly newsletter.
Covering the latest thought leadership, events, and news about identity security
What We Do
Partners
© MajorKey 2026
Effective Date: January 1, 2021 | Last Updated: June 18, 2026
MajorKey Technologies LLC ("MajorKey," "we," "us," or "our") respects your privacy and is committed to protecting the personal information you share with us. This Privacy Policy describes how we collect, use, disclose, and protect personal information when you visit our websites - majorkeytech.com and info.majorkeytech.com (collectively, the "Sites") - use our services, or otherwise interact with us.
MajorKey operates in the business-to-business (B2B) identity security advisory and consulting space. We primarily collect and process information from business contacts and professionals, not consumers in their personal capacity.
By using our Sites or services, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with our practices, please do not use our Sites.
We collect information you voluntarily provide when you interact with us, including:
When you visit our Sites, we automatically collect certain technical information, including:
We may receive information about you from publicly available sources (such as LinkedIn or company websites) and from third-party data providers, which we use to supplement the information we hold about business contacts.
"Sensitive Personal Information" (“SPI”), as defined under the CPRA and similar laws, includes categories such as government identifiers, precise geolocation, racial or ethnic origin, and account log-in credentials. MajorKey does not intentionally collect SPI from visitors to our Sites for the purpose of inferring characteristics about them. We do not use or disclose any sensitive personal information for purposes other than those permitted under CPRA Section 1798.121(a) (e.g., to provide requested services, for security, and for limited business operations). Where job applicants voluntarily provide information that may be sensitive, we use it solely to evaluate the application. See Section 10.2 for the right to limit the use of SPI.
We use the information we collect for the following purposes:
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, we process your personal data under one or more of the following legal bases:
MajorKey does not sell your personal information. We share information only in the following circumstances:
In the course of providing identity security advisory and consulting services, MajorKey may process personal data on behalf of our clients. In these cases, our clients are the data controllers, and MajorKey acts as a data processor.
We process client data solely in accordance with the client's instructions and the terms of our service agreements. We do not use client data for our own purposes.
If you are an individual whose data has been processed by MajorKey on behalf of one of our clients and you wish to exercise your privacy rights, please contact the organization that engaged MajorKey (the data controller) directly. MajorKey will cooperate with our clients to fulfill such requests.
We use cookies and similar tracking technologies on our Sites to support site functionality, analyze usage, and - where you consent - deliver targeted advertising. Our use of these technologies is governed by our Cookie Policy, available at www.majorkeytech.com/cookie-policy.
Non-essential cookies and third-party tracking technologies (including analytics and advertising tags such as Google Analytics, Google Ads, the LinkedIn Insight Tag, HubSpot analytics, and ZoomInfo) are blocked and do not load until you provide affirmative consent through our cookie banner. Strictly necessary cookies, which are required for the Sites to function and to record your consent choices, are always active.
You can manage or withdraw your cookie preferences at any time through the "Your Privacy Choices" link in the footer of our Sites, which is powered by TrustArc Cookie Consent Manager.
We retain your personal information only for as long as necessary to fulfill the purposes for which it was collected, including to satisfy legal, accounting, or reporting obligations.
In general:
When personal information is no longer needed, we securely delete or anonymize it.
We implement reasonable administrative, technical, and physical safeguards to protect personal information from unauthorized access, use, alteration, or destruction. These measures include encryption of data in transit using TLS, access controls, and regular security assessments.
No method of transmission over the Internet or electronic storage is completely secure. While we strive to protect your personal information, we cannot guarantee absolute security.
Depending on your location, you may have certain rights regarding your personal information. We describe these rights below by jurisdiction.
If you are located in the EEA, UK, or Switzerland, you have the following rights under the GDPR or equivalent legislation:
To exercise these rights, contact us at privacy@majorkeytech.com. We will respond within one (1) month of receipt, and will inform you within that month if we need to extend our response by up to two (2) further months because the request is complex or numerous.
Where MajorKey is required to designate a Data Protection Officer or an EU/UK Article 27 representative, the relevant contact details will be published here. Privacy inquiries may in all cases be directed to the contacts in Section 19.
If you are a California resident, the California Consumer Privacy Act, as amended by the California Privacy Rights Act (collectively, "CCPA"), provides you with the following rights:
Categories of personal information we collect (per CCPA definitions):
MajorKey does not sell personal information for monetary consideration. However, certain advertising technologies may constitute a "sale" or "sharing" of personal information under the CCPA when they enable third-party advertising partners to collect data for cross-context behavioral advertising. You can opt out of this sale and sharing at any time by selecting "Your Privacy Choices" in the footer of our Sites - which opens our consent management tool, where you can decline advertising cookies - or by enabling the GPC signal. No account, login, or identity verification is required to opt out, and we will give effect to your request within fifteen (15) business days.
The "Your Privacy Choices" link also satisfies the "Do Not Sell or Share My Personal Information" and "Limit the Use of My Sensitive Personal Information" requirements under California law. Because this control operates through cookies, your choice applies to the specific browser and device you use to make it; you may need to renew your choice if you clear cookies or use a different browser or device.
We honor the GPC browser signal as a valid opt-out of the sale or sharing of personal information.
California residents may submit a verifiable request to know, delete, correct, or limit SPI through either of the following two methods:
We acknowledge receipt of your request within ten (10) business days and provide information about how it will be processed. We will verify your identity before fulfilling a request to know, delete, or correct, and respond within forty-five (45) days of receipt (extendable by an additional forty-five (45) days with notice). Requests to opt out of the sale or sharing of personal information, and to limit the use of Sensitive Personal Information, do not require identity verification and are honored within fifteen (15) business days of receipt.
You may designate an authorized agent to submit a request on your behalf. We will require (i) written permission signed by you authorizing the agent or a valid power of attorney, and (ii) verification of your own identity directly with us. We may deny a request from an agent who cannot provide proof of authorization.
Residents of states with comprehensive privacy laws - including Virginia (VCDPA), Colorado (CPA), Connecticut (CTDPA), Utah (UCPA), Montana, Oregon, Texas, and other states with enacted privacy legislation - may have rights to access, delete, correct, and opt out of targeted advertising or the sale of personal data, and to appeal a denied request.
To exercise your rights under any applicable state law, contact us at privacy@majorkeytech.com or via the toll-free number above. We will process your request in accordance with the requirements of your state's law.
If we decline to act on your request, you may appeal that decision by emailing appeals@majorkeytech.com with the subject line "Privacy Rights Appeal" (or by writing to the address in Section 19, Attn: Privacy Appeals). This appeal channel is separate from the initial request channel. We will respond to your appeal within the period required by your state's law (generally forty-five (45) to sixty (60) days) and will explain the reasons for our decision. If your appeal is denied, we will provide information on how to contact your state Attorney General to submit a complaint.
If you are located in Canada, the Personal Information Protection and Electronic Documents Act (PIPEDA) and applicable provincial legislation provide you with the right to access and correct your personal information, to withdraw consent to its collection and use, and to challenge our compliance.
If you are a resident of Quebec, you have additional rights under Quebec's Act respecting the protection of personal information in the private sector, as amended by Law 25, including the right to data portability, the right to be informed of and to object to automated decision-making, and the right to request information about the technologies we use to identify, locate, or profile you. MajorKey conducts Privacy Impact Assessments where required, reports confidentiality incidents to the Commission d'accès à l'information and affected individuals as required by Law 25, and has designated a person responsible for the protection of personal information, reachable at privacy@majorkeytech.com.
To exercise these rights, contact us at privacy@majorkeytech.com. We will respond within thirty days.
MajorKey Technologies LLC complies with the EU-U.S. Data Privacy Framework (EU-U.S. DPF), the UK Extension to the EU-U.S. DPF, and the Swiss-U.S. Data Privacy Framework as set forth by the U.S. Department of Commerce, and has certified its adherence to the DPF Principles for personal data received from the EU, United Kingdom (and Gibraltar), and Switzerland.
If there is any conflict between this Privacy Policy and the DPF Principles, the Principles shall govern.
Some of our service providers and advertising partners (including Google, LinkedIn, HubSpot, and ZoomInfo) are located in, or transfer data to, the United States and other countries outside the EEA, United Kingtom, and Switzerland. Where we transfer personal data internationally, we rely on an appropriate safeguard such as the EU Standard Contractual Clauses, the UK International Data Transfer Addendum, the Data Privacy Framework, or an adequacy decision.
MajorKey remains responsible for personal data it receives under the Data Privacy Frameworks and subsequently transfers to third parties acting as agents on its behalf, consistent with the DPF Principles.
Individuals in the EU, UK, or Switzerland with a complaint regarding our DPF compliance should first contact us at privacy@majorkeytech.com. If unresolved, we have committed to refer unresolved complaints to TRUSTe, an independent dispute resolution provider; see https://feedback-form.truste.com/watchdog/request. Under certain conditions you may invoke binding arbitration as described in Annex I of the DPF Principles. MajorKey Technologies LLC is subject to the investigatory and enforcement powers of the U.S. Federal Trade Commission (FTC).
Browser "Do Not Track" (DNT) signals: there is no accepted industry standard for interpreting DNT signals, and our Sites do not currently respond to them.
GPC: we do honor the GPC signal. When we detect a GPC signal from your browser, we treat it as a valid opt-out of the sale or sharing of your personal information under the CCPA and other applicable state laws. We will continue to monitor developments in universal opt-out signal requirements and update our practices as new laws take effect.
Our Sites may contain links to websites and services operated by third parties. This Privacy Policy does not apply to those third-party sites. We encourage you to review the privacy policies of any third-party site you visit.
Our Sites may include social media features (such as LinkedIn or X share buttons and widgets). These features may collect your IP address and the page you are visiting and may set a cookie to function. Your interactions with these features are governed by the privacy policy of the company providing them.
We may display testimonials from satisfied clients on our Sites. With your consent, we may post your testimonial along with your name and company. If you wish to update or remove your testimonial, contact us at privacy@majorkeytech.com.
Any content you submit to public areas of our Sites (such as blog comment sections) may be viewable by other users. Exercise caution when disclosing personal information in these areas.
Our Sites and services are designed for business professionals and are not directed to individuals under the age of sixteen. We do not knowingly collect personal information from children. If we learn that we have collected such information, we will take steps to delete it promptly. If you believe we have collected information from a child under sixteen, please contact us at privacy@majorkeytech.com.
We do not use automated decision-making, including profiling, in a way that produces legal effects or similarly significant effects on you. Our analytics and marketing tools may create audience segments or interest profiles, but these are used solely for marketing optimization and do not affect your access to our services or result in decisions with legal consequences.
In the event of a data breach affecting your personal information, we will notify you and the relevant supervisory authorities as required by applicable law. Where required under the GDPR, we will notify the relevant datad'accèstion authority within 72 hours of becoming aware of the breach and will notify affected individuals without undue delay where the breach is likely to result in a high risk to their rights and freedoms. We will report confidentiality incidents to the Commission d'accès à l'information for Quebec residents as required by Law 25.
We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last Updated" date and, where required by law, provide notice via email or a prominent notice on our Sites before the changes take effect. We review this policy at least annually.
We are committed to making this Privacy Policy reasonably accessible to all individuals, including those who use assistive technologies. A printable/downloadable version is available on request. If you communicate with us predominantly in a language other than English and need this policy in an alternative format or language, contact us at privacy@majorkeytech.com.
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
MajorKey Technologies LLC
Attn: Privacy
1 Mid America Plaza, 3rd Floor, Oakbrook Terrace, IL 60181
Email: privacy@majorkeytech.com
Toll-free: (866) 265-8665