Vendor/Supplier Security Questionnaire – Document Builder 👷‍♂️

🌍 Jurisdiction & Basics

Country, language, and the governing region for this questionnaire.
E.g., California, Gauteng, Ontario
Questionnaire Date

🏢 Vendor Overview

Basic company details, services provided, and delivery model.
List countries/regions where systems or staff operate.
Briefly describe what you provide and what systems/processes are in scope.

🔐 Data Handling & Privacy

Personal data, sensitive data, retention, and privacy obligations.
Personal Data Categories (select all that apply)
Where data comes from, where it goes, and what systems store/process it.
Drag & Drop Files, Choose Files to Upload

🛡️ Security Controls

Access control, encryption, monitoring, and secure development practices.
Authentication & Access (select)
Encryption (select)
Monitoring & Vulnerability Management (select)
Certifications/Reports (select all that apply)
Drag & Drop Files, Choose Files to Upload

🚨 Incident Response & Continuity

Incident handling, breach notification, and business continuity.
Drag & Drop Files, Choose Files to Upload
Last BC/DR Test Date (optional)

🤝 Subprocessors & Supply Chain

Third parties, flow-down obligations, and change notification.
Flow-down Controls (select)

⚖️ Compliance & Assurance

Regulatory alignment, insurance, and internal assurance controls.
Compliance Frameworks (select all that apply)
Drag & Drop Files, Choose Files to Upload
Background/Access Controls (select)

✍️ Acknowledgements & Signatures

Confirm accuracy and provide a typed signature.
Acknowledgements (must check all)
Sign Date
Drag & Drop Files, Choose Files to Upload
Bookmark us
Scroll to Top