Managing Privacy and Data Security Risks in Vendor Relationships | Practical Law

Managing Privacy and Data Security Risks in Vendor Relationships | Practical Law

A Practice Note explaining how to manage privacy and data security risks created by vendors and service providers. This Note provides guidance for developing a privacy and data security vendor management process, including due diligence questionnaires and assessments, contracting strategies, and continued vendor oversight. This Note also addresses the role of vendor and supply chain risk management in an organization's overall information security program.

Managing Privacy and Data Security Risks in Vendor Relationships

Practical Law Practice Note w-001-8814 (Approx. 23 pages)

Managing Privacy and Data Security Risks in Vendor Relationships

by Practical Law Data Privacy & Cybersecurity
MaintainedUSA (National/Federal)
A Practice Note explaining how to manage privacy and data security risks created by vendors and service providers. This Note provides guidance for developing a privacy and data security vendor management process, including due diligence questionnaires and assessments, contracting strategies, and continued vendor oversight. This Note also addresses the role of vendor and supply chain risk management in an organization's overall information security program.