Which of the following actions should be included when conducting a vendor risk review? Select all that apply.1 pointTest the vendor's hardware or softwareTalk to the vendor’s employeesAsk the vendor to fill out a security questionnaireAsk the vendor for a cost comparison
Question
Which of the following actions should be included when conducting a vendor risk review? Select all that apply.1 pointTest the vendor's hardware or softwareTalk to the vendor’s employeesAsk the vendor to fill out a security questionnaireAsk the vendor for a cost comparison
Solution
The actions that should be included when conducting a vendor risk review are:
-
Test the vendor's hardware or software: This is important to ensure that the vendor's products or services meet your company's standards and requirements. It can also help identify any potential risks or issues that could impact your business.
-
Ask the vendor to fill out a security questionnaire: This can provide valuable information about the vendor's security practices and protocols. It can help you assess whether the vendor has adequate measures in place to protect your company's data and information.
-
Talk to the vendor’s employees: This can give you insights into the vendor's operations and how they manage risks. It can also help you gauge the vendor's culture and values, which can be important factors in a business relationship.
-
Ask the vendor for a cost comparison: While this may not directly relate to risk, understanding the cost of the vendor's products or services compared to others in the market can help you make an informed decision. It can also help you assess whether the vendor offers good value for money, which can be a factor in risk assessment.
Similar Questions
Conducting Vendor Evaluation, Vendor Rating, Vendor Audits & Qualification along with Quality & Assurance Team.
What are four possible actions that you can take in response to an identified risk? Group of answer choicesAccept / Mitigate / Transfer / AvoidAnalyse/ Insure / Implement / ReviewAccept / Analyse / Treat / TransferTreat / Report / Insure / Cancel
Multiple Select QuestionSelect all that applyWhich are appropriate methods for handling technical (project technology related issues) risk?Multiple select question.Purchase price protections.Testing and assessment methods.Back-up or alternate plans.Reducing project duration.
Multiple Select QuestionSelect all that applyWhat are two things companies should do to manage the risks associated with global operations?Multiple select question.Encourage procurement employees to work together to find suppliers at a reasonable costCreate large storehouses of goodsLimit inventory on hand until demand is evidencedMake sure supply chains are diverse
Select ALL the correct responses. Which of the following are considered contractor responsibilities in the acquisition and contracting process?Question 10Select one or more:a.Appoint an Industrial Security Representative to assist in establishing compliant security proceduresb.Perform work in accordance with the Statement of Work or Performance Work Statementc.Use the DD Form 254, Contract Security Classification Specification, to establish their security programd.Comply with NISPOM requirementse.Execute and ensure compliance with the DD Form 441, DoD Security Agreement
Upgrade your grade with Knowee
Get personalized homework help. Review tough concepts in more detail, or go deeper into your topic by exploring other relevant questions.