top of page
Privacy Policy
A legal disclaimer
Last updated: June 20th 2026
Risk Management Outsourcing, trading as RMO, respects your privacy and is committed to protecting your personal information. This Privacy Policy explains how we collect, use, store and protect personal information when you visit our website, contact us, make an enquiry, engage our services, or otherwise interact with us.
For the purposes of this Privacy Policy, “RMO”, “we”, “us” and “our” refers to Risk Management Outsourcing.
1. Who we are
RMO provides health and safety, risk management, compliance and training services to businesses across a range of sectors.
Contact details
Risk Management Outsourcing
Unit 1, The Messenger Centre
Crown Lane
Tinwell
Stamford
PE9 3UF
Telephone: 03300 100316
Email: operations@rmo.org.uk
Website: https://www.rmo.org.uk
If you have any questions about this Privacy Policy or how we handle your personal information, please contact us using the details above.
2. The personal information we collect
We may collect and use the following types of personal information:
Information you provide to us directly
This may include:
-
your name;
-
business name;
-
job title or role;
-
email address;
-
telephone number;
-
postal address or business address;
-
information included in enquiry forms, emails, messages or telephone conversations;
-
information relating to the services you ask us to provide;
-
billing and payment information;
-
any other information you choose to provide to us.
Information collected through our website
When you visit our website, we may collect limited technical information, such as:
-
IP address;
-
browser type and version;
-
device type;
-
operating system;
-
pages viewed;
-
the date and time of your visit;
-
how you interact with our website;
-
referral source, where applicable.
This information may be collected through cookies, analytics tools or similar technologies.
Information relating to clients and service delivery
Where we provide health and safety, risk management, compliance, consultancy or training services, we may process information relating to your organisation, employees, contractors, site contacts or other relevant individuals. This may include names, contact details, roles, attendance records, training records, incident information, site information, health and safety documentation, audit notes and compliance records.
We will only collect personal information that is relevant and necessary for the purposes for which it is processed.
3. How we collect personal information
We may collect personal information when you:
-
visit our website;
-
complete an enquiry or contact form;
-
contact us by email, telephone, post, social media or another communication channel;
-
request information about our services;
-
become a client or supplier;
-
attend training or consultancy sessions;
-
provide information as part of our work with your organisation;
-
interact with us on LinkedIn or other professional platforms.
We may also receive personal information from third parties, such as clients, employers, contractors, professional advisers, service providers or publicly available sources, where this is relevant to the services we provide.
4. How we use your personal information
We may use your personal information for the following purposes:
-
to respond to enquiries;
-
to provide information about our services;
-
to assess whether our services are suitable for your organisation;
-
to deliver health and safety, risk management, compliance, consultancy and training services;
-
to manage client relationships;
-
to prepare proposals, contracts, reports, training materials and service documentation;
-
to arrange meetings, site visits, audits, reviews or training;
-
to maintain accurate business records;
-
to issue invoices and manage payments;
-
to comply with legal, regulatory, tax and accounting obligations;
-
to protect our business, clients, website and systems;
-
to improve our website, services and client experience;
-
to send relevant business updates or marketing communications where permitted by law.
5. Our lawful bases for using personal information
We will only use your personal information where we have a lawful basis to do so under UK data protection law. Depending on the circumstances, we may rely on one or more of the following lawful bases:
Contract
We may process your personal information where it is necessary to perform a contract with you or your organisation, or to take steps before entering into a contract.
Legitimate interests
We may process your personal information where it is necessary for our legitimate business interests, provided your rights and interests do not override those interests. This may include responding to business enquiries, managing client relationships, improving our services, protecting our business and sending relevant business-to-business communications.
Legal obligation
We may process your personal information where we need to comply with a legal or regulatory obligation.
Consent
We may rely on your consent in certain circumstances, for example where required for specific marketing activity or certain non-essential cookies. Where we rely on consent, you can withdraw it at any time.
6. Marketing communications
We may contact business contacts with relevant information about our services where permitted by law. You can ask us to stop sending marketing communications at any time by contacting us at operations@rmo.org.uk or by using any unsubscribe option provided in our communications.
We will not sell your personal information to third parties for marketing purposes.
7. Cookies and website analytics
Our website may use cookies and similar technologies to support website functionality, understand how visitors use the site and improve user experience.
Cookies are small text files placed on your device when you visit a website. Some cookies may be strictly necessary for the website to function. Others, such as analytics or marketing cookies, may require your consent.
You can usually manage or disable cookies through your browser settings. If our website uses a cookie banner or preference tool, you can use it to manage your choices.
For more information about cookies and how to control them, you can visit the Information Commissioner’s Office website.
8. Who we share personal information with
We may share personal information with trusted third parties where necessary and appropriate, including:
-
IT, hosting and website service providers;
-
email, communications and software providers;
-
payment, accounting and professional advisers;
-
subcontractors, consultants or trainers who support the delivery of our services;
-
legal, regulatory, tax or insurance advisers;
-
public authorities, regulators or law enforcement agencies where required by law;
-
clients or client representatives, where relevant to the services being delivered.
Where we use third-party service providers, we expect them to protect personal information and only process it in accordance with our instructions and applicable data protection law.
9. International transfers
Some of the service providers we use may process personal information outside the United Kingdom. Where this happens, we will take appropriate steps to ensure that personal information is protected in accordance with applicable data protection law. This may include using approved contractual safeguards or ensuring that the country or organisation provides an adequate level of protection.
10. How we protect personal information
We take appropriate technical and organisational measures to protect personal information against unauthorised access, loss, misuse, alteration or disclosure.
These measures may include access controls, secure systems, password protection, data minimisation, staff awareness and appropriate supplier due diligence.
However, no method of transmission over the internet or electronic storage is completely secure, and we cannot guarantee absolute security.
11. How long we keep personal information
We will only keep personal information for as long as necessary for the purposes for which it was collected, including for legal, regulatory, accounting, insurance and reporting requirements.
The length of time we keep information may vary depending on the nature of the information and our relationship with you or your organisation. In general:
-
enquiry information may be kept for a reasonable period to allow us to respond and follow up;
-
client records may be kept for the duration of our relationship and for a reasonable period afterwards;
-
financial and accounting records are usually kept for at least six years;
-
training, compliance and health and safety records may be kept for longer where required for legal, regulatory, insurance or evidential purposes.
When personal information is no longer required, we will securely delete, anonymise or archive it.
12. Your rights
Under UK data protection law, you may have the following rights in relation to your personal information:
-
the right to be informed about how your personal information is used;
-
the right to access the personal information we hold about you;
-
the right to request correction of inaccurate or incomplete information;
-
the right to request deletion of your personal information in certain circumstances;
-
the right to request restriction of processing in certain circumstances;
-
the right to object to processing in certain circumstances;
-
the right to data portability in certain circumstances;
-
the right to withdraw consent where we rely on consent;
-
the right to complain to the Information Commissioner’s Office.
To exercise any of your rights, please contact us at operations@rmo.org.uk.
We may need to verify your identity before responding to a request.
13. Complaints
If you have concerns about how we handle your personal information, please contact us first so that we can try to resolve the matter.
You also have the right to complain to the Information Commissioner’s Office, the UK regulator for data protection.
Information Commissioner’s Office
Website: https://ico.org.uk
Telephone: 0303 123 1113
14. Links to other websites
Our website may contain links to third-party websites, including social media platforms. We are not responsible for the privacy practices, content or security of those websites. You should read the privacy policy of any external website you visit.
15. Changes to this Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our business, website, services or legal obligations.
The latest version will be published on this page with the updated date shown at the top.
16. Contact us
If you have any questions about this Privacy Policy or how we use personal information, please contact:
Risk Management Outsourcing
Unit 1, The Messenger Centre
Crown Lane
Tinwell
Stamford
PE9 3UF
Email: operations@rmo.org.uk
Telephone: 03300 100316
bottom of page
