Virtual Cyber & Technology Risk Management Forum

• All depends on the Level of the Vendor • The greater the Vendor Level (risk), the more documentation should be required • Don’t forget to analyze ; can’t just collect • What do you look for? RED FLAGS! • SBS Blog: “What Documentation Should You Review for a Critical Vendor?” o https://sbscyber.com/resources/what-documentation-should-you- review-for-a-critical-vendor Required Documentation

© 2020 SBS CyberSecurity, LLC www.sbscyber.com

31

Made with FlippingBook Publishing Software