Processor Obligations
Stark acts as processor and will process Customer Data only on documented instructions.Technical & Organisational Measures
Stark maintains controls aligned with ISO 27001/27701 and SOC 2 Type II, including encryption, network segmentation, and SIEM monitoring.Subprocessor Management
Stark ensures subprocessors offer equivalent protections and maintains a public subprocessors list. Customers receive prior notice of material changes.Data Subject Assistance
Stark assists controllers with data subject requests, breach notifications, and DPIAs.A signed DPA is available via the Trust Portal or legal@starkassistant.com.