Virtual Cyber & Technology Risk Management Forum

Questionnaires

• Create your own questionnaires! • Include things like: o Physical Security Requirements

ƒ Physical Access ƒ Physical Storage

o Data segregation o Base questionnaire from your own regulation ƒ FIL 44-2008 or OCC 2013-29 are good places to start ƒ After all, YOU are responsible for the protection of your data o Best Practices (based on vendor type or data center)

© 2020 SBS CyberSecurity, LLC www.sbscyber.com

39

Made with FlippingBook Publishing Software