Skip to content

Vendor risk management guides

Practical, framework-mapped guides to vendor due diligence for teams without a GRC department: how to inventory and tier third parties, what to ask them, how to score the answers, and what SOC 2, ISO 27001 and GDPR auditors expect to find in the file.

The process in these guides, as a product

VendorVet is the vendor inventory, questionnaire, scoring and evidence record the guides describe — built for small and mid-sized businesses, free to start.