Skip to main content

💼 CC3.2-8 Analyzes Threats and Vulnerabilities From Vendors, Business Partners, and Other Parties

  • ID: /frameworks/soc-2/cc3/02/08

Description​

The entity's risk assessment process includes the analysis of potential threats and vulnerabilities arising from vendors providing goods and services, as well as threats and vulnerabilities arising from business partners, customers, and others with access to the entity's information systems.

Similar​

  • Internal
    • ID: dec-c-70ddc410

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance