<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Vendor Security on DC Security Solutions</title><link>https://dcsecuritysolutions.com/categories/vendor-security/</link><description>Recent content in Vendor Security on DC Security Solutions</description><generator>Hugo</generator><language>en</language><lastBuildDate>Tue, 05 Nov 2019 21:03:59 +0000</lastBuildDate><atom:link href="https://dcsecuritysolutions.com/categories/vendor-security/index.xml" rel="self" type="application/rss+xml"/><item><title>Why do we do Vendor Security Reviews?</title><link>https://dcsecuritysolutions.com/2019/11/05/why-do-we-do-vendor-security-reviews/</link><pubDate>Tue, 05 Nov 2019 21:03:59 +0000</pubDate><guid>https://dcsecuritysolutions.com/2019/11/05/why-do-we-do-vendor-security-reviews/</guid><description>&lt;p&gt;Recently I was involved in a conversation with some internal departments (HR, &lt;a href="https://www.peerlyst.com/tags/legal"&gt;Legal&lt;/a&gt;, &lt;a href="https://www.peerlyst.com/tags/finance"&gt;finance&lt;/a&gt;, etc) about them wanting to change out a front end &lt;a href="https://www.peerlyst.com/tags/vendor"&gt;vendor&lt;/a&gt; for a solution we use. The new vendor was going to send the data to the same 3rd party backend solution.&lt;/p&gt;&#10;&lt;p&gt;Someone mentioned to the department that &lt;a href="https://www.peerlyst.com/tags/it-security"&gt;IT security&lt;/a&gt; may want to review the vendor. They reached out to me and gave me the high-level back story and were unsure of what further information I might need. They also didn’t understand the “why” for this security review.&lt;/p&gt;</description></item></channel></rss>