Third Party Information Security Risk Management | Policy Template Download

(ORGANIZATION) utilizes third-party products and services to support our mission and goals. Third-party relationships carry inherent and residual risks that must be considered as part of our due care and diligence. The Third-Party Information Security Risk Management Policy contains the requirements for how (ORGANIZATION) will conduct our third-party information security due diligence.

Audience

This policy applies to all individuals who engage with a third-party on behalf of (ORGANIZATION).

Definitions

The following definitions apply only to aid the understanding of the reader of this policy:

Policy

The policy is organized into three sections; general, physical, and technical according to the precaution or requirement specified.

Assessments