Third Party Cyber Third-Party Risk Management should include, as appropriate:
• Existing ordinances or governing authorities
• Procurement policies or regulations
• Standard IT agreements
• Standard cybersecurity-related contractual clauses, terms and conditions
- Gap The analysis should identify gaps related to:
• Vendor cybersecurity requirements
• Vendor cybersecurity insurance requirements
• Security assessments
• Incident reporting
• Data ownership and protection
• Audit rights
• Continuous monitoring
• Business continuity and disaster recovery
• Contract termination for cybersecurity noncompliance
Set up free email alerts and get notified when new government bids, tenders and procurement opportunities match your industry and location. Choose daily or weekly delivery.