Security & Data Handling
Last updated: 16 August 2026
Kobitel supports customer-service operations for clients that value privacy, security and accountability. We tailor our service controls to the client’s workflow, systems, locations and data-handling requirements before live customer data is accessed.
Our security commitments
Least-privilege access
Team members receive only the system access needed for their assigned work. Access is reviewed when responsibilities change or an engagement ends.
Secure sign-in
Client systems are accessed through individual accounts, strong passwords and multi-factor authentication where the client system supports it.
Confidentiality
People authorised to handle client information are bound by confidentiality obligations and trained on the approved workflow.
Approved tools only
We use only the communication, helpdesk, CRM and file-sharing tools approved for the engagement. Unauthorised personal tools are not used for client data.
Data minimisation
We access and retain only the information needed to deliver the agreed service, and follow the client’s retention, deletion or return instructions.
Incident escalation
If we identify a suspected security or privacy incident, we escalate it promptly under the agreed incident-contact process and support the client’s response.
Before a client pilot begins
Every customer-support pilot is scoped before launch. We confirm the service channels, coverage schedule, escalation path, approved tools, access roles, reporting, confidentiality obligations and data-processing responsibilities. For international engagements, the parties also agree the appropriate cross-border transfer terms.
24/7 operational coverage
Kobitel uses shift-based teams to provide round-the-clock customer-support coverage. No matter where a client or customer is located, a member of the team is available to respond. Service levels, escalation routes and approved workflows are agreed individually for each client engagement.
Important limits
Kobitel does not claim certifications or compliance frameworks that have not been independently achieved. We do not accept payment-card, healthcare, or other specially regulated data unless the engagement has been specifically assessed, approved and contracted for that data type.
Questions or due diligence
Clients may request a discussion of the planned workflow and security measures during the support audit. Contact [email protected] or write to Kobitel, Regus — Accra, Airport Residential Area, Accra, Ghana.