We are committed to protecting your personal information and being transparent about how we use it. This policy explains everything.
The PM Office ("we", "us", "our") is a project management consultancy based in the United Kingdom. We provide outsourced PMO services, fractional project management, and PMO setup and design for UK SMEs and growing organisations.
We are the data controller responsible for your personal information. You can contact us at hello@thepmoffice.co.uk or +44 20 8050 5449.
We collect personal information when you:
Information you provide directly
Information collected automatically
We use your personal information for the following purposes:
We process your personal data on the following legal bases:
We do not sell your personal data to third parties. We may share your information with:
All service providers are required to maintain appropriate security standards and use your data only for the purposes we specify.
We retain personal data for as long as necessary to provide our services and comply with legal obligations:
| Data Type | Retention Period |
|---|---|
| Client records | 7 years after the end of the client relationship (financial and legal compliance) |
| Enquiry records | 2 years from the date of enquiry |
| Marketing consents | Until you withdraw consent or 3 years from last engagement |
| Website analytics | 26 months (Google Analytics default) |
Under UK GDPR, you have the following rights:
Request a copy of the personal data we hold about you
Request correction of inaccurate or incomplete data
Request deletion of your data in certain circumstances
Request that we limit how we use your data
Receive your data in a structured, machine-readable format
Object to processing based on legitimate interests or for direct marketing
Where processing is based on consent, you may withdraw at any time
Lodge a complaint with the ICO at ico.org.uk
To exercise any of these rights, please contact us at hello@thepmoffice.co.uk. We will respond within 30 days.
Our website uses cookies to improve your experience. Cookies are small text files stored on your device. We use:
You can manage cookie preferences through your browser settings. Disabling certain cookies may affect website functionality.
We take the security of your personal data seriously. We use appropriate technical and organisational measures to protect your information against unauthorised access, loss or disclosure — including encrypted communications (HTTPS), access controls and regular security reviews.
Our principal, John Naughton, holds ISO 27001 Lead Auditor certification and has over 20 years' experience in information security across major financial institutions. Data protection is not an afterthought — it is embedded in how we operate.
While we take all reasonable precautions, no internet transmission is completely secure. If you have concerns about a specific data security matter, please contact us directly.
For any questions about this privacy policy or how we handle your data:
This policy was last updated in January 2025. We may update it periodically — the current version will always be available on this page.
Our team are happy to answer any questions about how we handle your personal information. We respond to every enquiry personally.