223895ea9a6f1c74af67b4b241a93ba4abf56f3901090b8e4e30490c2044eae8
active
contextual
prescribed
Information security is a required risk category in vendor risk assessments and includes assessing third-party controls for security, privacy, confidentiality, and availability of shared data.
Supporting contexts
Quoteverbatim
The risk categories that should be considered during the risk assessment process includes
— Pyrana Vendor Management Policy.pdf
Quoteverbatim
Information security:
— Pyrana Vendor Management Policy.pdf
Quoteverbatim
assessment of third-party controls related to security, privacy, confidentiality and availability of data shared
— Pyrana Vendor Management Policy.pdf
Effective from: 7/16/2026, 10:38:26 PM