Menu

Last updated: 1 September 2026

Venture Security respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website or use our services.

1. Who We Are

Venture Security Management Ltd (“Venture Security”) is a UK-based provider of security, training and consultancy services. We are the data controller for personal data collected via our website and through our security, operational, reporting, training, consultancy and associated business processes.

Contact details:

Email: [email protected]

Phone: 01264 391538

Postal address: Unit 8 Focus Way, Walworth Business Park, Andover, Hampshire, SP10 5NY

ICO Registration Number: Z1775475

2. Data Protection Officer (DPO)

We have appointed a Data Protection Officer responsible for overseeing questions in relation to this Privacy Policy.

DPO Name: Sara Howe

Email: [email protected]

3. What Personal Data We Collect

We may collect the following categories of data:

  • Contact details: Name, email address, phone number, company name
  • Website usage data: IP address, browser type, device information, and cookies
  • CCTV footage: Images captured when you attend our offices, training centre or other premises operated or protected by Venture Security
  • Monitored CCTV service: Live and recorded footage captured from client sites
  • Operational reports: Names, addresses, physical descriptions, incident details
  • Body camera footage: Video and audio recordings of interactions during operations
  • Call recordings:  Inbound and outbound call recordings with our team
  • Dash camera and vehicle tracking data: Visual and location data collected from company vehicles as part of operational activity
  • Incident records: Including witness statements, logs, photographic evidence
  • Job applications: CVs, cover letters, work history, references
  • Customer service interactions: Emails, forms, and phone call records
  • Training and delegate information: Names, addresses, contact details, employer or organisation, course bookings, attendance records, learner registration information, assessment results, qualifications, certificates, identification and eligibility information, correspondence and course completion records.
  • Training support and reasonable adjustment information: Information provided by delegates concerning accessibility requirements, reasonable adjustments, dietary requirements, medical needs or learning support requirements where relevant to their participation in training.
  • Visitor information: Names, organisation/ company, person being visited, arrival and departure times and other information required as part of our visitor check-in, security, fire safety, emergency evacuation and health and safety processes.
  • Payment and transaction information: Limited billing, payment and transaction information relating to purchases made through our website or other booking channels, including information provided to us by our payment processor, Stripe. We do not store full payment card details where these are processed directly by our payment provider.

We do not intentionally collect personal data from children under 16 except where they are involved in an incident or where data is required for the prevention or detection of crime. In such cases, data is handled strictly in accordance with applicable data protection laws and retained only for as long as necessary.

4. How We Collect Your Data

We collect personal data:

  • When you complete a form on our website
  • When you communicate with us by email or phone
  • When we provide contracted security services
  • During active patrols and incident responses
  • Through operational reporting and body-worn cameras
  • Through monitored CCTV feeds
  • Through dash cameras and vehicle tracking systems
  • Through inbound and outbound telephone call recordings
  • Through automated tracking on our website (cookies)
  • From job applicants via our recruitment process
  • When you enquire about, book or attend training, qualifications, assessments, workshops, events or other services provided by us
  • When you register for or access an e-learning course or learning platform
  • When your employer or another organisation makes a training booking on your behalf
  • Through trainers, assessors, awarding bodies, qualification providers and other training partners where necessary
  • When you make a payment through our website, booking system or payment provider
  • When you visit or check in at our offices, training centre or other premises.

5. Why We Process Your Data

Purpose Legal Basis
To respond to enquiries Legitimate interests
To provide security services Performance of a contract
To record and respond to incidents and threats Public task or legitimate interests
For operational reports, body-worn video, CCTV monitoring and call recordings Public task / legal obligation / vital interests
For legal obligations (e.g. reporting to police) Legal obligation
For employment/ recruitment Legitimate interests or consent
To administer training enquiries and bookings and deliver training services Performance of a contract / legitimate interests
To manage course attendance, assessments, qualifications and certification Performance of a contract / legitimate interests / legal obligation where applicable
To meet awarding body, qualification provider or regulatory requirements Performance of a contract / legitimate interests / legal obligation where applicable
To process course and service payments, refunds and transactions Performance of a contract / legal obligation
To maintain financial and accounting records Legal obligation / legitimate interests
To manage visitors, premises security and access Legitimate interests
For fire safety, emergency evacuation and health and safety purposes Legal obligation / legitimate interests
To provide reasonable adjustments and support safe and accessible participation in training Appropriate lawful basis and, where special category data is processed, an applicable condition under UK data protection law
For website analytics Consent via cookies
For marketing communications (if opted in) Consent

Note: Processing of personal data in operational reports, body camera footage, and call recordings is carried out under the lawful basis of public interest for the prevention or detection of crime, in line with the Data Protection Act 2018 Schedule 1, Part 2, para 10.

6. Cookies

We use cookies to improve your website experience, analyse traffic, and remember your preferences.

  • Essential cookies: Necessary for the site to function
  • Analytics cookies: Help us understand visitor behaviour
  • Marketing cookies: May be used if marketing tools are embedded

You can manage cookie preferences at any time via our cookie banner.

7. How Long We Keep Your Data

  • Contact forms: 12 months
  • CCTV and body camera footage: 30 days (unless required for investigations or legal proceedings)
  • Monitored CCTV: 31 days
  • Dash cam data: 30 days
  • Call recordings: 30 days (unless required longer for legal, training, or investigative reasons)
  • Incident reports: 7 years (unless required for investigations or legal proceedings)
  • Job applicant data: 12 months unless hired
  • Training booking and delegate records: 3 years following completion of the course or qualification, unless a longer period is required by an awarding body, regulator, funding body or other legal requirement
  • Assessment and quality assurance records: Minimum of 3 years in accordance with Highfield centre requirements, or longer where required by the relevant qualification specification, regulator or funding body.
  • Learner assessment work/evidence:  For internally assessed qualifications, retained until successful external quality assurance has been completed. Relevant assessment and quality assurance records will continue to be retained for the required retention period.
  • Qualification and certification records: 3 years as a minimum for records, subject to any longer awarding body or regulatory requirement. Awarding bodies may independently retain qualification and certification information for substantially longer periods.
  • E-learning registration and completion records: 3 years following completion where the learning forms part of a regulated qualification or is required as evidence of achievement; otherwise only for as long as reasonably necessary for course administration and certification.
  • Reasonable adjustment and special consideration records: For the period required to administer the adjustment, assessment and associated quality assurance, and thereafter where the record forms part of the learner’s assessment record or is required by the awarding body.
  • Visitor/check-in records: 12 months from the date of the visit, unless the information is required for longer in connection with an accident, incident, safeguarding concern, complaint, investigation, insurance matter, legal claim or other legal or regulatory requirement.
  • Payment and transaction records: 6 years from the end of the financial year to which the transaction relates, or longer where required by law or in connection with an ongoing dispute, investigation or legal claim. Full payment card details are not retained by Venture Security where payments are processed directly by our payment provider. Our payment providers may retain information in accordance with their own legal obligations and privacy policies.
  • Website analytics:  As specified by the relevant cookie/provider settings

Some qualifications and accredited courses require information to be provided to an awarding organisation or regulator. These organisations act in accordance with their own data protection and retention requirements. For example, Highfield Qualifications retains certain learner and qualification information for an extended period to meet regulatory requirements and to provide services such as confirmation of awards and replacement certificates.

8. Call Recordings

We may record inbound and outbound telephone calls for the purposes of:

  • Staff training and development
  • Monitoring service quality and ensuring compliance
  • Dispute resolution or complaints handling
  • Evidence in the event of legal or operational investigations

Recordings are stored securely and retained for 30 days, unless a longer retention is justified (e.g. active investigation). Access is strictly limited to authorised staff.

9. Monitored CCTV Services

For clients who engage us for live-monitored CCTV, we collect and process:

  • Real-time footage from static or PTZ (pan-tilt-zoom) cameras
  • Audio (if enabled and permitted)
  • Alerts triggered by motion or AI analytics
  • Escalation logs and incident reports based on footage reviews

This processing is carried out under the legal bases of public task and legitimate interests, specifically for crime prevention, detection, and emergency response. Monitoring is performed from our secure control room with restricted access.

Where we are the data processor on behalf of a client (i.e. the client is the data controller), we act under their instructions and relevant data processing agreements.

10. Dash Cameras & Vehicle Tracking

Venture Security vehicles may be fitted with:

  • Dash cameras (front and/ or rear-facing) for road safety, incident documentation, and insurance protection
  • GPS tracking systems for operational monitoring, route planning, and safeguarding personnel

These tools help prevent and respond to incidents, support investigations, and improve service efficiency. Data collected is limited to operational use, stored securely, and accessed only by authorised personnel.

11. Training, Delegates and Visitors

Venture Security provides training, qualifications, assessments, workshops, events, e-learning and associated services.

Where you enquire about, book or participate in one of these services, we may process your personal information to administer your booking, provide joining instructions, confirm identity and eligibility, manage attendance, deliver training, provide access to e-learning, administer assessments, record results and qualifications, issue certificates, make reasonable adjustments, process payments and meet applicable awarding body, regulatory and legal requirements.

Where an employer or another organisation books training on your behalf, we may receive your personal information from that organisation.

We may share relevant information with organisations involved in delivering or administering training, including trainers, assessors, e-learning providers, awarding bodies, qualification providers, regulators and certification bodies.

Where a course leads to a regulated or accredited qualification, we may be required to provide personal information to the relevant awarding organisation, including Highfield Qualifications. Awarding organisations process and retain this information in accordance with their own privacy notices, regulatory obligations and retention requirements.

Where health, disability, accessibility or other special category information is provided to enable reasonable adjustments or safe participation, we will only collect and use information that is reasonably necessary for that purpose and in accordance with applicable data protection legislation.

Visitors to our premises: When you visit our offices, training centre or other premises, we may collect your name, organisation, host, arrival and departure times and other information reasonably required for site security, access control, health and safety and emergency evacuation purposes. Our premises may also be covered by CCTV for the purposes of security, crime prevention and detection, protecting our staff, delegates, visitors and property, and investigating incidents. CCTV footage is handled and retained in accordance with the CCTV provisions and retention periods set out in this Privacy Policy.

Payments: Where you purchase training, e-learning or other services online, payments may be processed by third-party payment providers, including Stripe. We may receive limited transaction information including your name, billing information, transaction reference, amount, payment status and refund information. Full payment card details are not retained by Venture Security where they are processed directly by the payment provider.

12. Sharing Your Data

We may share your data with trusted third parties, including:

  • IT providers and cloud hosting (e.g. Microsoft, Google)
  • Employment background screening companies
  • Legal advisors or insurers (if required)
  • Law enforcement or regulatory bodies (when required by law or in the public interest)

We ensure all third parties respect your data and comply with data protection laws.

13. Law Enforcement Requests

We work with UK police forces and law enforcement agencies in support of criminal investigations and public safety.

  • Requests for footage or data should be made in writing to: [email protected]
  • We accept requests via secure email or official data sharing links, in line with the requesting force’s own data sharing policy
  • We will validate the legitimacy of any request before releasing footage or information
  • Only relevant data will be disclosed, with appropriate redaction where necessary

We reserve the right to refuse requests that are not proportionate, lawful, or properly authorised.

14. International Transfers

We may transfer your data outside the UK (e.g. cloud platforms), but only where:

  • There is an adequacy decision by the UK government, or
  • Appropriate safeguards are in place, such as the International Data Transfer Agreement (IDTA) or Standard Contractual Clauses (SCCs).

15. Your Rights

Under the UK General Data Protection Regulation (UK GDPR), you have the right to:

  • Access your personal data
  • Request correction of inaccurate or outdated information
  • Request deletion of your data (where appropriate)
  • Restrict or object to certain types of processing
  • Request data portability (for data you provided to us)
  • Withdraw consent at any time (where we rely on consent)
  • Lodge a complaint with the Information Commissioner’s Office (ICO)

To exercise any of these rights, please email us at [email protected] or write to the address above. We may require proof of identity.

16. Subject Access Requests (SARs)

  • Email: [email protected]
  • Include your full name, contact details, and details of the information you are requesting
  • We may ask for verification of identity before processing the request

We will respond within one calendar month, in line with data protection law. Complex or excessive requests may be extended by a further two months, and we will inform you if this is the case.

We do not usually charge a fee for Subject Access Requests. However, a reasonable fee may apply if your request is manifestly unfounded, excessive, or repetitive, or if you request additional copies of the data. This fee will be limited to the administrative cost of providing the information. You will be notified in advance if a fee applies.

17. Provision of Personal Data

Providing certain personal data is contractual and required for legal obligations. If not provided, we cannot deliver services, verify identity, or fulfil compliance checks.

Optional data (e.g. marketing) is voluntary.

18. Automated Decision-Making and Profiling

We may use automated tools to support processes, but we do not make decisions with significant effects based solely on automation. Human review is always involved.

19. Credit Reference and Affordability Checks

To help us assess applications, prevent fraud, and meet legal obligations, we may obtain information about you from credit reference agencies (CRAs). We obtain this information via Creditsafe, which uses its data partner TransUnion to supply consumer credit and identity data.

Creditsafe Business Solutions Limited is authorised and regulated by the Financial Conduct Authority (FCA FRN: 742313).

TransUnion International UK Limited is authorised and regulated by the Financial Conduct Authority (FCA FRN: 805757).

The information we receive may include identity, credit commitments, payment history, and public record information. This data is used solely for legitimate business purposes.

See their privacy notices:

– Creditsafe Transparency Notice

– TransUnion CRAIN: https://www.transunion.co.uk/legal/privacy-centre/pc-credit-reference

– TransUnion Bureau Privacy Notice: https://www.transunion.co.uk/legal/privacy-centre/pc-bureau

20. Updates to This Policy

We may update this Privacy Policy periodically. The latest version will always be published on our website. If material changes are made, we may notify you where appropriate.