Privacy Policy


This Privacy Policy outlines our commitment to protecting personal data in compliance with applicable privacy regulations.


1. Data Protection Principles

We are committed to processing data in accordance with our responsibilities under privacy regulations. We ensure data is:

  1. Processed lawfully, fairly, and transparently
  2. Collected for specified, explicit, and legitimate purposes
  3. Adequate, relevant, and limited to what is necessary
  4. Accurate and kept up to date
  5. Stored only as long as necessary
  6. Processed securely and protected against unauthorized access

2. Third-Party Risk Management

We implement risk assessment frameworks for all vendors handling personal data, including:

  1. Review availability of vendor audit reports such as SOC 2 Type II
  2. Availability of Vendor’s Privacy Policy
  3. Monitor Adverse Media Coverage


3. Security Measures

We maintain appropriate security measures including:

  1. Access controls and authentication requirements including MFA.
  2. Employee training on data protection


4. Data Subject Rights

We respect and facilitate the exercise of data subject rights, including:

  1. Right to access personal data
  2. Right to rectification
  3. Right to erasure
  4. Right to restrict processing
  5. Right to data portability

For any questions or clarifications, please reach out to us at contact@vendormanagementoffice.net


5. Updates and Review

This privacy policy is regularly reviewed and updated to ensure continued compliance with evolving regulatory requirements and industry standards.

Last Updated: February 10, 2025


© 2021 Vendor Management Office. All rights reserved.