Vendor Assessments Flashcards

1
Q

What is a Vendor Assessment?

A

Assessing and evaluating vendors

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Who are the Vendors?

A

Businesses or individuals that provide the goods of services and products to an organization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Who are the suppliers?

A

Individuals involved with the production and delivery of the products

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Who are the Managed Service Providers (MSPs)?

A

Individuals hired by companies to manage IT services on behalf of an organization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Why is Pen Testing part of the Vendor Assessment?

A

Validate that the service provider or vendor is taking their own cybersecurity posture seriously since their risk can become your risks once you install their software into your network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Why is The Right to Audit Clause part of the Vendor Assessment?

A

The right to evaluate vendors internal processes for compliance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is an Internal Audit?

A

A vendors self-assessment of practices against industry or organizational requirements

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is an independent assessment?

A

An evaluation done by third party entities that have no stake in the organizations or vendors operations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is a Supply Chain Analysis?

A

Used to dive deep into a vendors supply chain to ensure its integrity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly