01
Confidentiality & Data Handling
-
Confidentiality: All employees and linguists are bound by assignment-appropriate confidentiality obligations, including contractual nondisclosure requirements and role-based access controls.
-
Data Minimization: Piedmont Global Federal collects, processes, and retains only the minimum data necessary to deliver contracted services and satisfy legal and contractual obligations. No extraneous data is retained.
-
Data Handling Model: No PHI or PII is retained beyond defined contractual or operational retention periods. Data is stored using encrypted systems, both at rest and in transit. Where required, all work is performed within client-owned or client-designated systems. Handling of sensitive government information (e.g., CUI) follows client-mandated controls and applicable federal guidance.
-
Secure Transmission: All files, recordings, and communications are transmitted through secure, access-controlled channels appropriate to the service modality, with encryption applied where applicable.
-
Subcontractor Controls: All subcontractors are subject to mandatory flow-down clauses, least-privilege access restrictions, and ongoing quality and performance monitoring to ensure compliance with confidentiality and security requirements.