
Repliance
@repliance1
Followers
17
Following
7
Media
1
Statuses
27
Repliance helps streamline your sales process so you can focus on closing deals! We answer VSQs (and much more!) so you don't have to.
Joined June 2021
RT @metosin: In collaboration with Metosin, Repliance developed a system that combines AI and expert knowledge to efficiently and accuratel….
metosin.fi
From dream, to MVP, to industry standard - how Metosin helped build a human and AI-powered service for dealing with Vendor Security Questionnaires.
0
5
0
The best advice for a startup needing to answer vendor #securityquestionnaires is to get ahead on documentation. Don't forget about HR policies. Security questionnaires ask more than just security-related questions! ✍️🗒️. #vendorriskmanagement #thirdpartyriskmanagement #infosec.
0
0
0
#securityquestionnaires can be ambiguous. e.g. authentication questions can pertain to either application end-user auth or internal auth to prod environments. They can be two different sets of controls. Consider adding context to questionnaires and get the info you are after!.
0
0
0
October is cybersecurity awareness month 🔒. It's a good time to assess your third-party vendors to see how they are reducing risks and if their systems are built with resiliency in mind. Consider regular review ✅☑️. #CybersecurityAwarenessMonth #thirdpartyriskmanagement.
0
0
0
Pro-tip Thursday!. Consider general legal training for your sales team. Some vendor questionnaires could be legally binding. For example, when your sales team receives questionnaires inquiring about US transfer of personal data, check with your legal team on how to proceed.
Pro tip Thursday!. If your sales team helps answer vendor security questionnaires, consider additional security training for them (supplemental to security awareness training). #vendorsecurity #thirdpartyriskmanagement.
0
0
0
Does your startup filter incoming vendor security questionnaires based on opportunity costs? . Share some thoughts on the topic!. #vendorriskmanagement #thirdpartyriskmanagement #compliance #supplychain #infosec.
0
0
0
SOC2 vendor security questions evolved recently from . "Does your organization have a SOC2 Type II report" . to . "Does your SOC2 Type II report note any exceptions". Could this be an industry indicator? 🤔 . #thirdpartyriskmanagement #vendorsecurity #securitycompliance.
0
0
0
Vendor security questionnaires are typically just part of the sales engagement for B2B transactions. Which parts of the sales engagement do you find most useful from a security standpoint? . #thirdpartyriskmanagement #vendorsecurity #corporatesecurity.
0
0
0
With the rise of text phishing, add this to your vendor security questionnaire, "Does your security awareness program incorporate training related to email and text phishing security incidents?". #thirdpartyriskmanagement #vendorsecurity #corporatesecurity.
0
0
0
Last of the #SecurityPolicyProTips for the week!. Get everyone involved:.✅ Incorporate feedback from your sales team. They hear about security control demands from your customers. ✅ Keep your staff up-to-date on policy changes so everyone understands the goals and implications.
0
0
0
When doing your annual review of your security policies, check for gaps and discrepancies. One good approach is to review the policies against a recently completed vendor security questionnaire. #corporatesecurity #SecurityPolicyProTips.
0
0
0
Many organizations use policy templates or generate them using third-party tools. Pro-tip: Review the output to ensure the policies align with your practices and security maturity level. Edit accordingly! . #SecurityPolicyProTips #corporatesecurity.
0
0
0
Keeping security policies up-to-date is a struggle! Some tips include:.⭐️ delegating ownership to policies so more than one person is responsible for them.⭐️ hosting company sprints to work on those policies.⭐️ automating reminders . #SecurityPolicyProTips .#corporatesecurity.
0
0
0
Happy Monday ☕️ . This week we are diving deep into security policies; the good, the bad, & the ugly! . How often do you review your security policies? Not only should you review (at min) annually, but also keep a revision history 📝 . #SecurityPolicyProTips .#corporatesecurity.
0
0
0
Customers want to know they can reach out to someone if they find a security or privacy issue with your service/product! Have a security@ and privacy@ list that goes to appropriate staff 📧 . #thirdpartyriskmanagement #vendorsecurity #corporatesecurity.
0
0
0