223895ea9a6f1c74af67b4b241a93ba4abf56f3901090b8e4e30490c2044eae8
active
contextual
prescribed

Information security is a required risk category in vendor risk assessments and includes assessing third-party controls for security, privacy, confidentiality, and availability of shared data.

Supporting contexts

Quoteverbatim

The risk categories that should be considered during the risk assessment process includes

Pyrana Vendor Management Policy.pdf

Quoteverbatim

Information security:

Pyrana Vendor Management Policy.pdf

Quoteverbatim

assessment of third-party controls related to security, privacy, confidentiality and availability of data shared

Pyrana Vendor Management Policy.pdf

Effective from: 7/16/2026, 10:38:26 PM

History