Guide
Managing Vendors and Third Parties

Vendor Vulnerability and Remediation

Josh More, IANS Faculty

Vendors are increasingly expected to follow internal security practices and to communicate those practices to their customers.

Requirements involve detecting and addressing vulnerabilities, as well as structuring the public document in a way customers find useful. This template provides vendor security teams with guidance on both internal and external approaches to vulnerability management.

Download this template to receive actionable, time-saving guidance on:

  • Laying out the expectations for internal workers, with specific details for specific systems, if needed.
  • Two approaches on alignment to the NIST Cybersecurity Framework to make it easy for customers to cross-reference claims against their specific requirements.

Complete the form and we’ll send a copy of the policy template to your email.

Request your free content download