Share this
Previous story
← What is HIPAA Compliance? Just the Facts...
In today's business climate, using vendors or third-party service providers is no longer a luxury, it has become a necessity. Organizations "outsource" key business functions every day for many reasons, some of which include:
However, with great reward comes great risk, especially in today’s world of Information Security. Managing vendors isn't enough anymore. Having a strong vendor management program is essential, but it is the starting point, not the end game. Today, it is essential to know the vendors your company uses. But what does knowing vendors actually mean? Obviously, your vendors were not chosen without doing some homework in the first place. As a potential partner, their references were checked and insurance was verified so if there is a problem, all your bases are covered. While those are all awesome things to do when establishing the relationship, digging deeper is necessary by conducting some due diligence to get the full picture. But before we talk about what that due diligence looks like, an important point must be stressed:
Due diligence on vendors should be happening on at least an annual basis!
Business changes and vendors change in how they conduct provided services. Vendors may go through difficult times which impacts their level of service or the security of their systems. Business changes quickly and changes in your vendor's circumstances can have a significant impact on your business! Here are some tips on how to better know your vendor:
Knowing your vendors is more than signing a contract and checking references one time. As the business climate changes, your needs and your vendor's responses to those changing needs change as well. In addition, many Federal, State, and Industry regulations are focusing on how companies manage vendors to mitigate risk (you can thank Target for that).
Next week, Compass IT Compliance’s February webinar will be on the topic of getting to know your vendors and why this is so important. This 30-minute webinar will cover the items above in greater detail and provide you with some practical examples of how to get to know your vendors. Details are below. We look forward to seeing you next week!
These Related Stories
No Comments Yet
Let us know what you think