Third-party Vendor Risks Flashcards

1
Q

Supply Chain Attack

A

targeting a weaker link to gain access to the primary target

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Managed Service Providers

A

provides a range of technology services and support to buisnesses/clients (Microsoft Office)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

CHIPS Act

A

US federal statute that provides money in funding researc and manufacturing semiconducters in the USA

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Vendor Assessment

A

process that org’s use to evalutate the security, reliability, and performance of external entiities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Vendor Assessment Targets (S MSP V)

A

Suppliers, Managerd Service Providers, Vendors

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Penetration Testing

A

simulated cyberattack against the suppliers system to check for vulnerabilities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Internal Audit

A

vendor’s self assessment where they evualte their own pratices against industry standards

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Independant Assessment

A

evaulation conducted by third-party entites that have no stake in the circle

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Vendor Questionaire

A

documents that potential vendors fill out

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Rule of Engagement

A

guidelines that dictate the terms of iteraction between vendor and orginzations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Feedback Loops

A

the two-way communication between venodr and org

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Basic Contracts

A

establishes the relationship of two parties

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Service Level Agreement (SLA)

A

standard of a service a client can expect from a provider

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Memorandum of Agreement (MOA)

A

formal and outlines the specific responsiblities and roles of the involved

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Memorandum of Understanding (MOU)

A

less bindign and more of a decleration of intent

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Master Service Agreement (MSA)

A

blanket agreement that covers the general teams of engagment between parites across multiple transactions

17
Q

Statement of Work

A

used to specify details for a particular project

18
Q

Buisness Partnership Agreement

A

two entities decide to pool their resources