This document is a guide outlining the security measures required for vendors working with Omnissa. It specifies the minimum security controls and expectations that vendors must adhere to in order to ensure the integrity, confidentiality, and availability of information assets. The guide emphasizes the necessity for compliance with these requirements as a condition for doing business with Omnissa. It details various technical and organizational measures, including pseudonymization and encryption of personal data, ensuring ongoing confidentiality, integrity, and availability of processing systems, and the importance of incident management. Additionally, it outlines procedures for user identification and authorization, as well as measures for protecting data during transmission. The document serves as a comprehensive framework for vendors to implement appropriate safeguards throughout their engagement with Omnissa, thereby contributing to a secure operational environment.