Virtual Cyber & Technology Risk Management Forum

Models to Manage Vendor Risk

• Assessment documentation from vendors o SSAE 18, SOC, or IT Audit reports • Tools (like TRAC) • Questionnaires • Onsite Visits • Other – Security Scorecard, FICO, etc.

© 2020 SBS CyberSecurity, LLC www.sbscyber.com

37

Made with FlippingBook Publishing Software