Get started with Paraqum — experience advanced network visibility and control.
Discover More
PARAQUM PRIVACY AND DATA PROTECTION POLICY
Paraqum Technologies (“Paraqum”, “we”, “our”, or “us”) is committed to protecting personal data and respecting privacy across all our operations. As a provider of network monitoring, analytics, and DPI-based solutions, Paraqum processes personal data in accordance with applicable laws depending on the nature of the services provided and the jurisdictions involved. Where relevant, our practices are aligned with the General Data Protection Regulation (GDPR) and similar data protection frameworks.
Depending on the context, Paraqum may act either as a Data Controller or as a Data Processor. When customers deploy Paraqum systems within their own infrastructure and configure monitoring, logging, analytics, subscriber management, authentication integrations (including AD/LDAP), or billing integrations, the customer acts as the Data Controller. In such cases, Paraqum processes personal data strictly under documented customer instructions and does not independently determine the purpose of such processing.
Depending on the configuration and deployment environment, Paraqum systems may process limited categories of personal data necessary for system operation and monitoring. These may include user account identifiers, authentication information, device identifiers, IP addresses, URL access logs, system logs, network metadata, and contact information of authorized customer administrators. Paraqum does not intentionally collect personal data beyond what is necessary for the provision, security, and maintenance of its services.
In certain configurations, such as integration with authentication systems (e.g., AD/LDAP), network-level data, including IP addresses, may be associated with identifiable users within the End User’s environment.
Paraqum manages personal data in accordance with established data protection principles. Personal data is processed lawfully and transparently, and only for legitimate and defined purposes. Where consent is required by law, it is obtained appropriately, and individuals may withdraw consent in accordance with applicable regulations.
Access to identifiable personal data, including URL access logs and user identification data processed through AD/LDAP integration, is strictly restricted and limited to authorized administrative personnel only. Any attempt at unauthorized access will be detected and may trigger alerts to designated administrators through configurable notification channels, including email and text messages. All such personal data remains under the control of the Data Controller (End User), who is responsible for implementing and maintaining appropriate access AD/LDAP controls and security measures.
Paraqum Technologies (Pvt) Ltd shall not be responsible for any misuse or unauthorized processing of personal data arising from the Data Controller’s failure to enforce adequate access controls or security practices.
We apply data minimization practices by collecting and processing only the information necessary for operational, contractual, or legal purposes. Reasonable steps are taken to maintain data accuracy and ensure records remain up to date where required. Personal data is retained only for as long as necessary to fulfil contractual, operational, or legal obligations, after which it is securely deleted or anonymized.
Where Paraqum processes personal data on behalf of a customer acting as the Data Controller, the retention period and deletion instructions are determined by that customer in accordance with their own data governance policies and applicable laws.
Confidentiality and integrity are fundamental to our operations. Access to personal data is restricted to authorized personnel, and appropriate safeguards are implemented to protect data against unauthorized access, misuse, alteration, disclosure, or loss.
To support these principles, Paraqum maintains appropriate technical and organizational measures. These include secure system design, role-based access controls, authentication management, encryption where appropriate, routine system monitoring, and backup and recovery mechanisms. Security measures are reviewed periodically to maintain effectiveness.
Employees are provided with appropriate awareness and training to ensure responsible handling of personal data. Where applicable, individuals may request access to their personal data, seek correction of inaccuracies, or request deletion, subject to legal and contractual limitations. When Paraqum acts as a Data Processor, such requests are generally directed to the relevant customer acting as Data Controller.
Approved partners and service providers engaged by Paraqum are required to adhere to appropriate confidentiality and data protection standards consistent with the level of risk involved.
Once a Paraqum product is commissioned within an End User’s network, any connectivity to Paraqum’s servers shall be limited solely to license management purposes, and any data transmitted shall be strictly confined to information necessary for such license management.
Paraqum shall not initiate or perform any transfer of operational data from a commissioned system to its servers, except where such transfer is expressly requested and authorized by the End User for specific purposes such as troubleshooting or technical support.
Privacy oversight is maintained at the management level within Paraqum. Policies and procedures are periodically reviewed to ensure continued alignment with applicable legal requirements, operational realities, and industry best practices. Documentation is maintained to demonstrate accountability and responsible data handling practices across our operations.
In the event of a security incident affecting personal data, Paraqum maintains procedures to assess, contain, and address the situation promptly. Where required by law or contract, affected customers will be notified without undue delay.
Where Paraqum services involve cross-border data processing or remote support operations, appropriate safeguards are implemented to ensure that personal data remains protected in accordance with applicable data protection laws and internationally recognized privacy frameworks.
Questions, concerns, or requests related to privacy or personal data protection may be directed to Paraqum through the official contact channels below:
Paraqum may update this Privacy and Data Protection Policy periodically to reflect changes in legal requirements, operational practices, or technological developments. The most recent version of the policy will be made available through Paraqum’s official website or customer communication channels.
Paraqum recognizes the importance of protecting personal data as part of responsible digital infrastructure management. We are committed to implementing proportionate, risk-based safeguards and continuously improving our privacy practices in response to evolving legal, technological, and operational developments.