IT Service Portal
Service Desk: +1 (213) 430-7000
Back to IT Service Portal

IT Privacy Statement

Document ID: OMM-IT-PRV-002 • Effective Date: August 27, 2026 • Version 3.1

O’Melveny values your privacy and is dedicated to managing data transparently and in compliance with global data protection laws (including GDPR and CCPA). This IT Privacy Statement explains what information is collected, processed, and maintained during your interaction with the O’Melveny IT Service Portal and corporate networks.

1. Information We Collect

To deliver reliable IT services, manage corporate security, and maintain network health, the IT Department automatically collects and stores specific technical data:

  • Identity Data: Employee/Contractor name, company email address, professional title, corporate department, and personnel ID numbers.
  • Device & Telemetry Data: IP addresses, hardware MAC addresses, operating system version, browser user-agent, device names, and installed security software statuses.
  • Session & Log Data: Connection timestamps, authentication success/failure counts, web access logs on corporate networks, and duration of VPN sessions.

2. How Your Data is Used

All collected information is processed solely for operational and administrative business purposes, including:

  • Identity Verification: Ensuring remote login and database access requests originate from authorized personnel.
  • Support Fulfillment: Establishing secure remote-control sessions, tracking software installation requests, and managing support tickets.
  • Security Auditing: Monitoring firm endpoints for unauthorized software, malware, or potential breach indications, and conducting forensic investigations.
  • Performance Optimization: Analyzing network traffic levels to manage corporate bandwidth and minimize service latency.

3. Information Sharing & Retention

O’Melveny protects personal data and maintains strict restrictions regarding information sharing:

  • Third-Party Vendors: Technical telemetry data may be processed by trusted IT security vendors (e.g. Duo Security for MFA, EDR vendors) solely to secure and maintain support systems. These vendors are contractually bound to preserve data privacy.
  • Legal Requirements: Information will not be disclosed to third parties unless required by legally binding requests, court mandates, or regulatory audits.
  • Data Retention: Network access logs, session logs, and remote support telemetry are stored securely for 12 months, after which they are automatically aggregated and archived or permanently deleted, unless active security audits require retention.

4. Data Security

O’Melveny implements industry-standard physical, electronic, and procedural controls to protect information against unauthorized access, loss, or alteration:

All portal databases, support logs, and remote session records are protected behind multi-layered firewalls, accessed only via encrypted channels (SSL/TLS), and require Duo Multi-Factor Authentication for administrator reviews.

Privacy Concerns

For inquiries regarding data collection, privacy audits, or your personal information rights under GDPR/CCPA, please contact the Office of the General Counsel and Privacy team at privacy@omm.com.