A small firm for a large new obligation.

Cyber and Data Protection Act compliance, IT support, ICT project management and staff training for Zimbabwean clinics, schools, lenders and businesses.

Two MazeTech consultants reviewing a document in an evening office

Why MazeTech exists

When Cyber and Data Protection Act [Chapter 12:07] came into force, most Zimbabwean organisations had never had to think about personal information as something the law could ask about. Then SI 155 of 2024 made a licence and a Data Protection Officer mandatory, and the question stopped being whether to comply and became how.

MazeTech was set up to answer that question for organisations that cannot hire a lawyer, an IT department, a project manager and a trainer separately. We do all four jobs as one team, so the policy, the laptop and the person using it agree with each other.

The name is the promise. A maze has a way through. We know it, and we walk it with you.

We are based in Harare and work with clients across Zimbabwe, on site and remotely.

Who we work with

  • Clinics and medical practices
  • Schools and colleges
  • Microfinance, SACCOs and insurers
  • Law and accounting firms
  • NGOs and membership bodies
  • Retail, hospitality and property

What you can hold us to

Six promises. All of them in writing.

A fixed price before work starts. A named person who answers the phone. A date on every deliverable. None of that is a slogan; all of it goes in your engagement letter.

Fixed fees, in writing

You get a price before work starts, and the price does not move unless the scope does.

A named person

The engineer who set up your backups is the one who answers when something fails. Not a queue.

Plain language

A policy your receptionist can follow beats a forty-page PDF nobody has opened. We write the first kind.

Built for here

Load-shedding, patchy bandwidth and USD budgets are inputs to the design, not excuses afterwards.

One team, not four suppliers

The policy, the laptop, the rollout and the person using it all agree, because the same people did all four.

Lawyers where lawyers belong

We do compliance, IT and training. When a question needs a legal opinion we say so, and we work alongside your lawyer.

Your first 30 days

What working with us actually looks like.

Every engagement starts the same way, so the price and the timeline are settled before you commit to anything.

  1. Day 1

    A 20-minute call

    Tell us what you hold and what is worrying you. We tell you whether the Act applies, what it will take, and roughly what it costs. No charge.

  2. Week 1

    Gap assessment

    On site or remote. We walk your systems and paperwork with you: what data, where, who has access, what is missing.

  3. Day 10

    Written report

    Every gap, its priority, and a fixed price to close it. The report is yours whether or not you continue.

  4. Weeks 2 to 4

    Build

    Licence application, DPO, register, notices, breach plan, and the IT fixes that the assessment flagged.

  5. Month 2 on

    Embed

    Staff training, DPO handover or retainer, quarterly reviews. Compliance that holds next year, not just this quarter.