![](/accounts/venminder/images/logo.png)
Feature Courses
Third-Party Risk Management Basics
Lorem ipsum dolor sit amet, consectetuer adipiscing elit. Donec odio. Quisque volutpat mattis eros.
30min
Pandemic Planning
Lorem ipsum dolor sit amet, consectetuer adipiscing elit. Donec odio. Quisque volutpat mattis eros.
Duration: 30minHow to Review a Vendor Contract
Lorem ipsum dolor sit amet, consectetuer adipiscing elit. Donec odio. Quisque volutpat mattis eros.
Duration: 30min
Venminder Product Overview
Third-Party Risk Management Basics
Lorem ipsum dolor sit amet, consectetuer adipiscing elit. Donec odio. Quisque volutpat mattis eros.
Get to know the Venminder Exchange for Vendors
The fastest path to retaining and winning new business is through demonstrating safety and soundness with Venminder’s risk-scored Control Assessments. Learn how the exchange works in this 30-second video.
LIVE WEBINAR
1-Vetting Your Vendor's Cybersecurity Preparedness
Lorem ipsum dolor sit amet, consectetuer adipiscing elit. Donec odio. Quisque volutpat mattis eros.
LIVE WEBINAR
2- Vetting Your Vendor's Cybersecurity Preparedness
Lorem ipsum dolor sit amet, consectetuer adipiscing elit. Donec odio. Quisque volutpat mattis eros.
LIVE WEBINAR
3 - Vetting Your Vendor's Cybersecurity Preparedness
Lorem ipsum dolor sit amet, consectetuer adipiscing elit. Donec odio. Quisque volutpat mattis eros.
Trending Discussions Happening at ThinkTank Community
What is your plan for 4th party vendors on a critical vendor?
Posted in: Due Diligence and Ongoing Monitoring by Chris SmithFor critical vendors, it's important, first and foremost, to make sure the contract requires them to notify you of any sub-service providers that are essential to the services they are providing you. This would mean their data center (more than likely), and any other 4th party which has access to your data or is in some how critical to your operations. Furthermore it is important to have a right to audit. Aside from that, see if you can get your critical vendor to provide that information either way, and also validation that they've conducted their due diligence on those 4th parties. I would usually ask for evidence of their assessment, what the results were, and I would also review my critical vendors' third party risk policy to assure they have the proper controls and capabilities in place for those assessments. Just a word of advice, it's always been helpful for me to go about this with a "let's help each other out" mentality. It's one thing do make demands, and another to explain why you have to make sure your company is safe by understanding all the risk areas, and making improvements wherever possible. Certainly open to more feedback - any other tips for 4th parties of our critical vendors?
What is your plan for 4th party vendors on a critical vendor?
Posted in: Due Diligence and Ongoing Monitoring by Chris SmithFor critical vendors, it's important, first and foremost, to make sure the contract requires them to notify you of any sub-service providers that are essential to the services they are providing you. This would mean their data center (more than likely), and any other 4th party which has access to your data or is in some how critical to your operations. Furthermore it is important to have a right to audit. Aside from that, see if you can get your critical vendor to provide that information either way, and also validation that they've conducted their due diligence on those 4th parties. I would usually ask for evidence of their assessment, what the results were, and I would also review my critical vendors' third party risk policy to assure they have the proper controls and capabilities in place for those assessments. Just a word of advice, it's always been helpful for me to go about this with a "let's help each other out" mentality. It's one thing do make demands, and another to explain why you have to make sure your company is safe by understanding all the risk areas, and making improvements wherever possible. Certainly open to more feedback - any other tips for 4th parties of our critical vendors?
![image](https://32967964317f78783c4e-e9697062182b83a6df2042c528cda1c3.ssl.cf2.rackcdn.com/venminder_b5e7bf906502fce64ca12634fa778987.png)
Why learn with Venminder Academy
Interactive and Easy-to-Navigate
Modern eLearning courses to guide you through third-party risk management in an interactive and compelling environment.
Learn on your Schedule
All courses are self-paced learning so you can take them whenever and wherever you want. Courses range from 90 minutes and up.
Advance your Career
Invest in yourself and your career by continuing your education and stay up-to-date on best practices, trends and more.
Access Date | Quiz Result | Score | Actions |
---|