Trust, Data Safety, Security & Compliance at VMA Service
At VMA Service, we understand the critical importance of protecting your data and privacy.
Compliance That Builds Confidence
Over 500 businesses trust VMA Service with their remote hiring needs.
We are fully HIPAA-compliant, ensuring all healthcare-related data is handled with the highest confidentiality.
We take data security seriously. As an ISO 27001-certified company, we follow globally recognised standards.
Our SOC 2 Type II certification shows our commitment to top security and data integrity standards.
We fully comply with GDPR, upholding the highest data privacy and security standards.
Implemented Policies & Procedures at VMA
Explore policies providing information on storage, security, privacy, and use of sensitive information & ensuring compliance with regulations for our customers.
People Controls
> Background Checks
> Legal contractual bindings in the country of origin
> Coordination Assistance / Dedicated Accounts Manager
> Payment Protection (as per contract)
> HR Training for enhancement of Cyber Hygiene
Physical Controls
> Power / Network Backups
> 24/7 Surveillance Coverage and On-Duty Guards
> Tiered Access Control
> Environmental Hazards Protection
Technological Controls
> Single Sign-On (SSO)
> Multi-Factor Authentication (MFA)
> Role-Based Access Control (RBAC)
> Secure Tenant Segregation
> Password Management Implementation
Cloud Infrastructure
> Business Continuity and Disaster Recovery Plans
> Multi-Environment with Isolated Production Environment
Security Operations Center
> Enhanced Metrics Capture and Logging> 24/7 Monitoring
> Information Security Incident Response Management and Plan
> Performance Monitoring
Endpoint Security
> Anti-Virus/Anti-Malware Protection
> Full Disk Encryption
> Mobile Device Management (MDM)
> CIS Benchmark-Based Hardening
> Secure Disposal of Hardware and Media
Secure Software Development Lifecycle
> Security by Design Architecture
> Code Reviews, Vulnerability and Patch Management
> Vulnerability Assessment and Penetration Testing (VAPT) Programs
> Web Application Firewall (WAF)
> Intrusion Detection and Prevention System (IDS/IPS)
> Responsible Disclosure (Internal and Partners)
> Security Audit and Risk Assessment
Data Controls
> Encryption at Rest
> Encryption in Transit
> Secure Data Sharing
> Network Security
> Web Filtering
> Host-Based and Tiered Network Firewall
> Zero-Trust VPN
HIPPA Controls
> ePHI Handling Policy for Users and Facilities
Why Hire with VMA Service
Solve your most pressing workforce challenges with fast, easy access to bilingual, trained talent.