Assess and score your third parties
Send assessments, track compliance posture and risk, collect evidence, and run due diligence on the vendors that warrant it, so each vendor carries a defensible score.
Try it in CybervergentOverview
Move vendors from onboarded to assessed with compliance, risk, evidence, and due diligence.
Step-by-step
- 1 From the Register tab, send assessments to your onboarded vendors, prioritizing the highest tiers.
- 2 Open the 'Compliance' view to track objective posture and find vendors below acceptable scores.
- 3 Open the 'Risk' view to read inherent versus residual risk and how risks are being mitigated.
- 4 Open the 'Evidence' view to confirm vendors have provided the required artefacts, and chase the gaps.
- 5 Open the 'Due Diligence' view and run due diligence on the vendors that warrant a deeper look.
- 6 Use the 'Gap' view to see open gaps per vendor and feed them into remediation and reassessment.
Related articles
Third-Party Program Stand up a third-party risk program Build a tiered, owned third-party risk program from framework to live register. Third-Party Program Onboard and tier your vendors Bring the vendor population into the register and classify it by criticality and tier. Third-Party Program Run vendor reassessment at scale Keep a large vendor population current with cadence-driven reassessment. Third-Party Program Monitor vendors continuously Move beyond point-in-time assessment to continuous monitoring of vendor assets.