
How IRM Consulting & Advisory collects, uses and protects your personal information, and your rights under PIPEDA and GDPR. Each section starts with a one-line summary.

How we use and protect what you share with us through our website forms.
Our Privacy Policy sets out how IRM Consulting & Advisory uses and protects any information you give to IRM Consulting & Advisory via the website’s online forms. IRM Consulting & Advisory is committed to ensuring that your privacy is protected and preserved.
When you are asked to provide certain information by which you can be identified, rest assured that such information will only be used in accordance with this privacy statement. IRM Consulting & Advisory may change this policy from time to time by updating this webpage. It is your responsibility to check this page from time to time to ensure that you are happy with any changes. This policy is effective as of November 20, 2025.
Only what you type into our forms: your name, address, email and phone number.
We collect information by fair and lawful means, with your knowledge and consent. We only process your data when we have a lawful reason for doing so. We also let you know why we’re collecting it and how it will be used. You are free to refuse our request for this information, with the understanding that we may be unable to provide you with some of your desired services without it.
On our online forms, we may collect the following information:
The information collected will help IRM Consulting & Advisory fulfil the services that are due to you. We also collect information through the website for the following purposes:
To improve our website and services, and to send updates you can unsubscribe from.
In Canada, and in most cases deleted after 2 years without contact or consent.
Encryption and other safeguards against unauthorized access or disclosure.
We are committed to ensuring that the information you submit to IRM Consulting & Advisory is secure. To prevent unauthorized access or disclosure, we have put in place suitable safeguards such as encryption to ensure the security of the information we collect online.
Only service providers working for us, never without your consent, and never for sale.
Through the IRM Consulting & Advisory website, you can link to other websites which are not under the control of IRM Consulting & Advisory. We have no control over the nature, content, and availability of outbound third-party web sites. The inclusion of any links does not necessarily imply a recommendation or endorsement of the views expressed within them. IRM Consulting & Advisory remains independent from third party website links.
We use third-party services for:
These third-party service providers may only access your data for the sole purpose of performing specific tasks on behalf of IRM Consulting & Advisory. We do not share any personally identifying information with them without your explicit consent. We do not give them permission to disclose or use any of your data for any other purpose.
We may, from time to time, allow limited access to our data by external consultants and agencies for the purpose of analysis and service improvement. This access is only permitted for as long as necessary to perform a specific function.
We follow Canada’s PIPEDA and the EU’s GDPR.
You can see, correct or delete your information, and object to how we use it.

Know what data we collect about you and how it is processed.
Request details of the personal information we hold about you.
Correct and update any personal information about you.
Ask us to erase your personal information.
Restrict or object to our use of your data.
Refuse decisions based solely on automated processing.
Email info@irmcon.com or call +1-647-800-2590
Our diverse industry experience and expertise in AI, Cybersecurity & Information Risk Management, Data Governance, Privacy and Data Protection Regulatory Compliance is endorsed by leading educational and industry certifications for the quality, value and cost-effective products and services we deliver to our clients.