The Secure Engineer

https://the.secure.engineer

1 posts

Tech

Subscribe via RSS

  1. Questions that security questionnaires should be asking

    Framing the problem Questionnaires are part of the job. They’re part of how our industry works. Organisations need to make sure that their vendors are trustworthy enough to do business with, and questionnaires are the industry agreed-upon way to do so, alongside compliance frameworks obviously. The problem is that questionnaires are often too generic. Customising questionnaires for each potential vendor introduces significant overhead for a third-party vendor risk assessment team. Historicall...

    0