9b8ab8c22a84ef66bd49da230bdf6e3c0c7066dfe0678cbe58e780afb4568aca
active
contextual
prescribed
The vendor risk assessment process should consider due diligence factors such as distributed IT environments, legacy suppliers, and subcontractor use by the third party so that inherited operational and security risks are understood.
Supporting contexts
Quoteverbatim
Due diligence
— Pyrana Vendor Management Policy.pdf
Quoteverbatim
distributed IT environments, legacy/ longstanding suppliers
— Pyrana Vendor Management Policy.pdf
Quoteverbatim
use of subcontractors by the third party
— Pyrana Vendor Management Policy.pdf
Effective from: 7/16/2026, 10:38:46 PM