Privacy Policy
Welcome to Managed Company ("Company," "we," "us," or "our"). We are committed to protecting the privacy, confidentiality, and security of the personal data and corporate telemetry we collect, store, and process.
This Privacy Policy explains how we collect, use, disclose, and safeguard personal data when you visit our website (https://www.managed.company), utilize our managed IT, cybersecurity, compliance, virtual assistant, or hybrid BPO services (collectively, the "Services"), or interact with us in any other capacity.
This policy is designed to comply with applicable data protection laws, including UAE Federal Decree-Law No. 45 of 2021 on Personal Data Protection (PDPL), the Australian Privacy Principles (APPs) under the Privacy Act 1988, and other relevant global data privacy frameworks.
1. Information We Collect
To deliver our Services effectively, optimize system security, and manage global staffing operations, we collect several categories of information:
A. Information Provided Directly by You
Contact Information: Name, email address, corporate phone number, and physical office address.
Account Credentials: Usernames, passwords, and security verification logs used to access our Client Portal, helpdesk, or shared workspaces.
Financial and Billing Data: Corporate banking details, billing contacts, tax identification numbers (including UAE VAT registration where applicable), and payment transaction histories.
Communications Data: Records of support tickets, emails, phone calls, and chats exchanged with our team, operational architects, or assigned personnel.
B. Technical and Telemetry Data (MSP & Cybersecurity Services)
When we manage, secure, or monitor your corporate infrastructure, server environments, and endpoints, our automated agents, SIEM, and security platforms (such as the Bitdefender stack) collect technical telemetry:
Device and Network Logs: IP addresses, operating system versions, device hostnames, MAC addresses, system configurations, patch status, and software inventories.
Security Telemetry: Incident logs, security event alerts, malware containment history, network traffic metadata, and system access logs necessary for Managed Detection and Response (MDR) and 24/7 Security Operations Center (SOC) operations.
RMM Logs: Telemetry from Remote Monitoring and Management (RMM) agents used for infrastructure maintenance and system health tracking.
C. Workforce and Staffing Data (BPO & Recruiting Services)
In connection with our technical recruitment and virtual assistant outsourcing services, we collect:
Candidate Data: Resumes, work histories, technical certifications, interview notes, and background evaluation reports.
Personnel Telemetry: Basic performance metadata, time-tracking logs, and secure authentication telemetry associated with Assigned Personnel executing tasks on your systems.
D. Automated Website Data
When you navigate our website, we automatically collect basic usage data, including browser types, pages visited, time spent, referring websites, and general geographic location data (via IP address).
2. How We Use Your Information
We process personal data solely for legitimate business purposes, including:
Service Delivery: Actively managing and securing your servers, endpoints, and cloud environments; operating support helpdesks; and delivering advisory (vCISO) and compliance services.
Security Monitoring and Threat Hunting: Real-time threat detection, rapid incident containment, and forensic analysis to isolate and neutralize cyber threats.
Billing and Financial Administration: Processing standard Net-14 payments, invoicing, executing corporate direct debits, and complying with UAE VAT reporting requirements.
Global Staffing Operations: Matching, training, onboarding, and managing virtual assistants and technical staff assigned to your workflows.
Ad-Network and Site Optimization: Analyzing website traffic patterns to improve usability, monitor loading speeds, and support authorized, compliant marketing campaigns.
3. Data Storage, Security, and Retention
A. Information Security
Managed Company treats security as our operational foundation. We deploy enterprise-grade administrative, technical, and physical safeguards designed to prevent unauthorized access, accidental loss, disclosure, or alteration of data. This includes:
Full-transport encryption (SSL/TLS) for all portal and network communications.
Strict multi-factor authentication (MFA) requirements across all administrative interfaces.
Continuous security patch deployments and hardened endpoint posture management.
B. Data Retention
We retain personal data only as long as necessary to fulfill the purposes for which it was collected, resolve disputes, maintain audit readiness for compliance standards (such as ISO 27001), or satisfy statutory legal and financial retention mandates under UAE law.
4. International Data Transfers
Managed Company operates a global delivery model. Data collected in one jurisdiction—such as Australia, the United Arab Emirates, or South Africa—may be transferred, stored, or processed in international jurisdictions where Managed Company, its subsidiaries, or subcontractors maintain operations, including but not limited to the Republic of the Philippines.
Whenever personal data is transferred across international borders, we ensure that:
Appropriate safeguards, standard contractual clauses, or data protection agreements are in place between our entities.
All remote staffing setups are legally structured to prohibit local direct storage of sensitive client telemetry unless explicitly authorized by the Client.
5. Sharing and Disclosure of Information
We do not sell, rent, or trade your personal data to third parties. We disclose data only in the following limited circumstances:
Authorized Third-Party Processors: We engage trusted vendors (such as secure cloud infrastructure providers, payment processors, and licensed security software vendors like Bitdefender) to perform essential tasks on our behalf, under strict confidentiality agreements.
Compliance and Legal Mandates: We may disclose data where required by law, court order, or regulatory authority (including compliance audits or data breach reporting obligations under UAE PDPL or regional financial authorities).
Corporate Restructuring: In the event of a merger, acquisition, or sale of assets, data may be transferred to the succeeding entity under strict non-disclosure terms.
6. Your Rights Under UAE PDPL and Global Regulations
Depending on your jurisdiction, you or your authorized representatives may hold specific rights regarding your personal data under UAE PDPL, the GDPR, or the Australian Privacy Act:
Right to Access: Request confirmation of whether we are processing your personal data and obtain a copy of that data.
Right to Rectification: Request correction of inaccurate, outdated, or incomplete personal data.
Right to Erasure ("Right to be Forgotten"): Request deletion of your personal data when it is no longer required for active contract performance or legal mandates.
Right to Restrict Processing: Object to or limit specific types of processing (such as direct marketing or analytics).
To exercise any of these rights, please contact our Data Privacy Liaison at [email protected].
7. Cookies and Analytics
Our website utilizes essential, functional, and performance cookies to optimize your browsing experience, remember secure portal session states, and track anonymous visitor analytics via Google Tag Manager and GA4.
You can control and manage cookie preferences directly through your browser settings. However, disabling essential cookies may prevent some features of our Client Portal and helpdesk from functioning correctly.
8. Updates to this Policy
We reserve the right to update this Privacy Policy periodically to reflect changes in our services, technological upgrades, or evolving international regulations. Any revisions will be marked with an updated "Effective Date" at the top of this page. We encourage you to review this policy periodically to stay informed about how we protect your information.
9. Contact Information
If you have questions, concerns, or complaints regarding this Privacy Policy or our data handling practices, please contact us at:
Email: [email protected]
Phone: +971 50 472 1032
Corporate Registered Address: Al Rigga, Dubai, United Arab Emirates