cisco-ces-privacy-data-sheet
cisco-ces-privacy-data-sheet
Cisco public
Cisco Secure Email Cloud Gateway is a cloud-based email security solution made available by Cisco to companies or persons
who acquire it for use by their authorized users.
Cisco will process personal data from the Service in a manner that is consistent with this Privacy Data Sheet. In jurisdictions that
distinguish between Data Controllers and Data Processors, Cisco is the Data Controller for the personal data processed to
administer and manage the customer relationship. Cisco is the Data Processor for the personal data processed by Secure Email
Cloud Gateway in order to provide its functionality.
1. Overview
Secure Email Cloud Gateway is a cloud-based email security service that blocks spam and security threats from the internet
and, depending on the features licensed, prevents the accidental or intentional leakage of customer data. Secure Email Cloud
Gateway offers inbound protection and outbound control of email traffic.
The following feature functionalities are available as part of the Service depending on the licensed features purchased:
• Anti-spam
• Intelligent Multi-Scan Anti-spam
• Anti-virus
• Outbreak Filters
• Advanced Malware Protection
• Safe Unsubscribe
• Image Analysis
• Email Encryption Service
• Data Loss Prevention
The Service automatically enables the use of Cisco Secure Email and Web Manager which enables reporting, tracking and
quarantine features. Cisco’s processing of data for these Cisco Secure Email and Web Manager features is within the scope
documented in this privacy data sheet.
For more information about Secure Email Cloud Gateway, please see: https://www.cisco.com/c/en/us/products/security/email-
security/index.html
©2024 Cisco and/or its affiliates. All rights reserved. Version 2.3, March 1, 2024
Doc type Privacy Data Sheet
Cisco public
Admin Information • Admin Information (e.g., name, email) • Provide the Service
• Allow Customer to access admin interface, set
configurations, operate the Service
Email Information • Sender Information (name, email, display • Provide the Service
name)
• Recipient Information (name, email,
display name)
• Email Subject
• Reply-to Headers (including CC/BCC)
• Title of Attachment (but not the content
of the Attachment)
• IP Address
Email Body • Email content and/or entire Attachment • Provide the Service (e.g., evaluate email for threats and
apply any customer created policies)
IP Address • IP Address of users accessing the • IP Addresses are stored for security purposes as part of an
Service’s admin portal audit log to identify IP addresses trying to access
Customer’s Cisco Secure Email Cloud Gateway instance, as
well as for global threat intelligence research
Service Logs Data (Optional) • Global Unique ID (GUID) for email • Global threat intelligence research
message Only processed if Customer has not disabled Service Logs Data
• IP address
• Secure Malware Analytics disposition
(e.g., malicious, neutral, unknown)
• Message metadata (e.g., date, sender,
recipient)
• Filename1
Sender Domain Reputation • GUID for email message • Global threat intelligence research
Data (Optional) • Message ID Only processed if Customer has not disabled Sender Domain
• Email sender IP address Reputation Data
• SMTP envelope fields (e.g., sender email
addresses)
• Display Name
• List-Unsubscribe headers
• Message ID header
• SPF Result
• DKIM Result
• DMARC Result
• Header data (e.g., marketing header, List-
Unsubscribe header, reply-to header
domain)
• Fully qualified domain name
Sender IP Reputation Data • IP address of the sending email server • Global threat intelligence research
(Optional) • GUID for connection (sender IP address) Only processed if Customer has not disabled Sender IP
Reputation Data
URL Reputation Data • GUID for email message • Global threat intelligence research
(Optional) • Sender IP address • Used to develop and deploy URL exploit detection models
• URL in the email being queried Only processed if Customer has not disabled URL Reputation
Data
©2024 Cisco and/or its affiliates. All rights reserved. Version 2.3, March 1, 2024
Doc type Privacy Data Sheet
Cisco public
Email Submission Data • Email Envelope Header • If Customer chooses to send false positive/false negative
(Optional) • Email Data Header email samples to Cisco TAC, TAC may share with
• Email Body (email body and/or appropriate Cisco product teams and the third party
attachment) subprocessors listed below for further analysis.
• Global threat intelligence research and machine learning
• Technical Support
Only processed if Customer has enabled Email Submission Data
Submitted Attachment Data • Any personal data that may be contained • If Customer chooses to send erroneously blocked file
(Optional) in the files attachments to Cisco TAC, TAC may share with Threat
Intelligence teams and the third party subprocessors listed
below for further analysis
• Technical support
• Global threat intelligence research
Only processed if Customer has not disabled Submitted
Attachment Data
IronPort Anti-Spam Engine • GUID for email message • Global threat intelligence research
(IPAS) Data (Optional) • Filename to the extent it includes Only processed if Customer has not disabled IronPort Anti-Spam
personal data Data
• IPAS results (spam score, rule hits, sender
IP address)
Email Metadata for • Email Envelope Header (Sender, • Enable integration between Cisco Secure Email Gateway
Integration with Cisco Recipient, Host/IP address) and Cisco Advanced Phishing Protection. For more
Secure Email Phishing • Email Data Header (From, To, Subject, information see the Advanced Phishing Protection Privacy
Defense (Optional) Reply-to Headers) Data Sheet
Only processed if Cisco Secure Email Gateway and Secure Email
Phishing Defense has been integrated by Customer
Secure Email Cloud Gateway collects “Systems Information” to assist Cisco with understanding product usage and enabling
product improvements. For more information, see the Systems Information Data Brief. Customers can opt-out of sending
Systems Information to Cisco Customer Success. Similarly, non-personally identifiable Systems Information is transferred to
Google Analytics to assist Cisco with product usage analysis and continuous product improvement. Customers may opt-out of
sending such non-personally identifiable Systems Information to Google Analytics. For more information on the collection and
use of Systems Information, please see https://www.cisco.com/c/en/us/about/trust-center/systems-information.html.
In addition, Secure Email Cloud Gateway may integrate with third-party products. Protection of data within the applicable third-
party system is governed by the contract(s) and policies of the applicable third party.
TAC
If a customer contacts the Cisco Technical Assistance Center (TAC) for problem diagnosis and resolution, Cisco TAC may receive
and process personal data from the Service and from the Customer, and may share such data with appropriate Cisco product
teams as set forth herein. The Cisco TAC Service Delivery Privacy Data Sheet describes Cisco’s processing of such data.
Smart Licensing
Secure Email Gateway is Smart License-enabled. Personal data may be provided to Cisco in the form of a user credential to
associate it with a related Cisco.com account (i.e., CCO) or Smart License account. For more information regarding Smart
License accounts and related data collection, please refer to the Smart Software Licensing Privacy Data Sheet.
©2024 Cisco and/or its affiliates. All rights reserved. Version 2.3, March 1, 2024
Doc type Privacy Data Sheet
Cisco public
Equinix (co-location facilities) The infrastructure for the Cisco Secure Email Cloud Gateway cloud runs United States
on Equinix co-location facilities in North America, the EU and APJC Canada
United Kingdom
Netherlands
Germany
Japan
Q9 The infrastructure for the Cisco Secure Email Cloud Gatewaycloud runs Canada
on Q9 co-location facilities in Canada
Getronics/KPN The infrastructure for the Cisco Secure Email Cloud Gateway cloud runs Netherlands
on Getronics/KPN co-locations factilites in the Netherlands
NextDC The infrastructure for the Cisco Secure Email Cloud Gateway cloud runs Australia
on NextDC co-location facilities in Australia
Switch The infrastructure for the Cisco Secure Email Cloud Gateway cloud runs United States
on Switch co-location facilities in the United States
If a Personal Data Category above in Section 2 is processed for the purposes of “Global threat intelligence research,” then the
processing and storage of such personal data is conducted by Cisco’s global threat intelligence teams, which have U.S. data
centers described below and use the subprocessors in the locations set forth in Section 9 below. This is necessary for the
delivery of Secure Email Cloud Gateway, as threat intelligence analytics requires the examination of worldwide data in real
time.
US: California, Texas, Equinix (co-location CA facility has SOC 2 Type II, ISO 27001 and SSAE16 SOC 1 Type 1
Virginia facility)
TX facility has NIST 800- 53/FISMA, ISO 27001, SOC 1 Type II, SOC 2 Type II, PCI DSS and HIPPA
VA facility has NIST 800- 53/FISMA, ISO 27001, SOC 1 Type II, SOC 2 Type II, PCI DSS and HIPPA
US AWS AWS offers robust controls to maintain security and data protection. Physical security controls
include but are not limited to perimeter controls such as fencing, walls, security staff, video
surveillance, intrustion detection systems and other electronic means. The AWS SOC reports
provide additional details on the specific control activities executed by AWS. More details can
be found at: https://aws.amazon.com/compliance/soc-faqs/
With respect to data collected by the global threat intelligence teams, the Global Co-location Data Center Networks below use
dynamic Anycast routing decisions to route each customer’s Service Log Data, Sender Domain Reputation Data, Sender IP
Reputation Data, URL Reputation Data and IPAS Data to any data center facility listed below (provided the features are enabled
as described herein), although normally the data center in which the data is routed will be to the closest physical location to the
Secure Email Cloud Gateway deployment. The data sent to the Global Co-location Data Center Network is transient in nature,
©2024 Cisco and/or its affiliates. All rights reserved. Version 2.3, March 1, 2024
Doc type Privacy Data Sheet
Cisco public
and is not stored in those locations. This is necessary for the delivery of Secure Email Cloud Gateway , as threat intelligence
analytics requires the examination of worldwide data in real time.
Rio de Janeiro, Brazil Equinix ISO 22301, SOC 1 Type II, PCI-DSS, SOC 2 Type II, ISO 9001-2008, ISO 27001
©2024 Cisco and/or its affiliates. All rights reserved. Version 2.3, March 1, 2024
Doc type Privacy Data Sheet
Cisco public
5. Access Control
The table below lists the personal data used by Secure Email Cloud Gateway to carry out the service, who can access that data,
and why.
Cisco Creating an account and validating license entitlements and general product
support and operations
Admin Information Customer Administration and operations
Cisco Security monitoring, maintain audit logs, and global threat intelligence
research
6. Data Retention
The table below lists the personal data used by Secure Email Cloud Gateway, the length of time that data needs to be retained,
and why we retain it.
©2024 Cisco and/or its affiliates. All rights reserved. Version 2.3, March 1, 2024
Doc type Privacy Data Sheet
Cisco public
Registration Information • Data will be deleted upon customer request • Product registration and enablement,
product use notifications, training and
support
Admin Information • Admin Information will be deleted upon customer • Provide customer admin interface and
request provide the Service
• 14 days after account is terminated or
decommissioned
Email Information • As configured by customer in quarantine policy • Providing security analytics and forensics
(default configuration is 14 days)2 for product usage
• 14 days after account is terminated or
decommissioned
• For the Message Tracking and Reporting features,
the retention period depends on customer’s disk
storage availability
Email Body (only if the customer • As configured by customer in quarantine policy • Providing security analytics and forensics
enables the Quarantine feature) (default configuration is 14 days) for product usage for customer review
• At least 14 days if customer licenses the Data Loss (Cisco does not review)
Prevention (DLP) feature and “Matched Content
Logging” is enabled. Message Tracking will store that
portion of the Email Body that matched the
customer created “Matched Content Logging”
criteria for a DLP violation.
• 14 days after account is terminated or
decommissioned
Service Logs Data (Optional) • Data will be deleted upon request • Global threat intelligence research
Sender Domain Reputation Data • Data will be deleted upon request • Global threat intelligence research
(Optional)
Sender IP Reputation Data • Data will be deleted upon request • Global threat intelligence research
(Optional)
URL Reputation Data (Optional) • Data will be deleted upon request • Global threat intelligence research
Email Submission Data • Data will be deleted upon request • Global threat intelligence research for false
(Optional) positive/false negative diagnosis and
resolution; machine learning
Submitted Attachment Data • Data will be deleted upon request • Global threat intelligence research to
(Optional) correct erroneous blocking/detection of the
files as malicious
2 Pre-defined Quarantine features may be disabled by customer. However, disabling these features may limit the functionality and security provided by
Secure Email Cloud Gateway. Please see the Secure Email Cloud Gateway product documentation for more information.
©2024 Cisco and/or its affiliates. All rights reserved. Version 2.3, March 1, 2024
Doc type Privacy Data Sheet
Cisco public
IronPort Anti-Spam Engine • Data will be deleted upon request • Global threat intelligence research
(IPAS) Data (Optional)
Email Metadata for Integration • Data will be deleted upon request • Global threat intelligence research.
with Cisco Secure Email Phishing
Defense (Optional)
A note on Cisco Talos: Talos is Cisco’s trusted global threat intelligence research team. In order to continually secure Cisco’s
Security portfolio, certain Security products share data with Talos, which Talos then processes for global threat intelligence
research purposes. All data transferred to Talos from Cisco Security products is encrypted in transit.
Email Metadata for Integration with Cisco • Encrypted in transit. For further encryption details, please see the Advanced Phising
Secure Email Phishing Defense (Optional) Protection Privacy Data Sheet
8. Sub-processors
Cisco partners with service providers that act as sub-processors and contract to provide the same level of data protection and
information security that you can expect from Cisco. A current list of sub-processors for the service is below:
Vade Secure Email Sample Data Global threat intelligence research France
Sophos File Attachment Data Global threat intelligence research United Kingdom
©2024 Cisco and/or its affiliates. All rights reserved. Version 2.3, March 1, 2024
Doc type Privacy Data Sheet
Cisco public
McAfee File Attachment Data Global threat intelligence research United States
Google Cloud Emal Sample Data3 Translation services to assist with global United States
Translate threat intelligence research
PSIRT manages the receipt, investigation, and public reporting of security vulnerabilities related to Cisco products and
networks. The team works with Customers, independent security researchers, consultants, industry organizations, and other
vendors to identify possible security issues with Cisco products and networks. The Cisco Security Center details the process for
reporting security incidents.
The Cisco Notification Service allows Customers to subscribe and receive important Cisco product and technology information,
including Cisco security advisories for critical and high severity security vulnerabilities. This service allows Customers to choose
the timing of notifications, and the notification delivery method (email message or RSS feed). The level of access is determined
by the subscriber's relationship with Cisco. If you have questions or concerns about any product or security notifications,
contact your Cisco sales representative.
Further, in addition to complying with our stringent internal standards, Cisco also maintains third-party validations to
demonstrate our commitment to information security.
We will confirm identification (typically with the email address associated with a Cisco account) before responding to the
request. If we cannot comply with the request, we will provide an explanation. Please note, users whose employer is the
Customer/Controller, may be redirect to their employer for a response.
3 When analyzing Email Sample Data, Cisco may manually share a necessary portion of the email body text with Google Cloud Translate for the
sole purpose of translation through the Google Cloud Translate API. Such text is retained by Google Cloud Translate for only enough time to
perform the translation and then it is deleted.
©2024 Cisco and/or its affiliates. All rights reserved. Version 2.3, March 1, 2024
Doc type Privacy Data Sheet
Cisco public
We will endeavor to timely and satisfactorily respond to inquiries and requests. If a privacy concern related to the personal data
processed or transferred by Cisco remains unresolved, contact Cisco’s US-based third-party dispute resolution provider.
Alternatively, you can contact the data protection supervisory authority in your jurisdiction for assistance. Cisco’s main
establishment in the EU is in the Netherlands. As such, our EU lead authority is the Dutch Autoritiet Persoonsgegevens.
Cisco Privacy Data Sheets are reviewed and updated on an annual, or as needed, basis. For the most current version, go to the
Personal Data Privacy section of the Cisco Trust Center.
To receive email notifications of updates to the Privacy Data Sheet, click the “Subscribe” link in the upper right corner of the
Trust Portal.
©2024 Cisco and/or its affiliates. All rights reserved. Version 2.3, March 1, 2024