Software

Gain a 360-degree view of third-party risk by using our SaaS software to centralize, track, automate, assess and report on your vendors. 

Managed Services

Let us handle the manual labor of third-party risk management by collaborating with our experts to reduce the workload and mature your program. 

Overview
Document Collection
Policy/Program Template/Consulting
Virtual Vendor Management Office
Vendor Site Audit

Ongoing Monitoring

Let us handle the manual labor of third-party risk management by collaborating with our experts.

VX LP Sequence USE FOR CORPORATE SITE-thumb
Venminder Exchange

As Venminder completes assessments for clients on new vendors, they are then made available inside the Venminder Exchange for you to preview scores and purchase as you need.

CREATE FREE ACCOUNT

Use Cases

Learn more on how customers are using Venminder to transform their third-party risk management programs. 

Industries

Venminder is used by organizations of all sizes in all industries to mitigate vendor risk and streamline processes

Why Venminder

We focus on the needs of our customers by working closely and creating a collaborative partnership

1.7.2020-what-is-a-third-party-risk-assessment-FEATURED
Sample Vendor Risk Assessments

Venminder experts complete 30,000 vendor risk assessments annually. Download samples to see how outsourcing to Venminder can reduce your workload.

DOWNLOAD SAMPLES

Resources

Trends, best practices and insights to keep you current in your knowledge of third-party risk.

Webinars

Earn CPE credit and stay current on the latest best practices and trends in third-party risk management.  

See Upcoming Webinars

On-Demand Webinars

 

Community

Join a free community dedicated to third-party risk professionals where you can network with your peers. 

Weekly Newsletter

Receive the popular Third Party Thursday newsletter into your inbox every Thursday with the latest and greatest updates.

Subscribe

 

Venminder Samples

Download samples of Venminder's vendor risk assessments and see how we can help reduce the workload. 

resources-whitepaper-state-of-third-party-risk-management-2023
State of Third-Party Risk Management 2023!

Venminder's seventh annual whitepaper provides insight from a variety of surveyed individuals into how organizations manage third-party risk today.

DOWNLOAD NOW

Vendor Management 10 Years in the Making

3 min read
Featured Image

The maturing landscape of vendor management has been ten years in the making. Take a look at how the third-party risk management thought process has changed from 2007 to 2017.

2007                                                                                           

Common Attitude: What is vendor management? Isn’t it just about getting the lowest price?

Vendor Interactions: Donuts on Friday.

Annual Assessments: Nope!

Risk Assessments: Look at the annual spend.

Board Involvement: How much do we spend?

Performance Management: Staff complain but we have no way to report or record the facts.

Dedicated Vendor Management Department: Unlikely.

RFP to Stimulate Competition: Unlikely.

Contract Management: Contracts are in a filing cabinet. Key dates come and go. There's lack of signing control on contracts.

Policy and Procedures In Place: Why do we need a Policy & Procedures?

Accounts Payable: Process the bill. There's little to no oversight.

CFPB: Doesn’t exist.

2017

Common Attitude: Are we ready when the regulator comes to town? Are we doing enough?

Vendor Interactions: There are monthly performance scorecard calls and ongoing monitoring.

Annual Assessments: Huge improvement - onsite and desktop audit activity on the increase.

Risk Assessments: Review both inherent and residual risk. Scope includes: financial, policy and procedures, SOC, BCP, disaster recovery and regulatory compliance.

Board Involvement: Increased interaction and have formal board acknowledgement.

Performance Management: Improved feedback loop on performance and complaint tracking to address and remediate vendor issues.

Dedicated Vendor Management Department: This is on the rise, but we still see a lot of other departments still try to shoulder vendor management in a part-time capacity.

RFP to Stimulate Competition: This depends on the size and maturity of the organization.

Contract Management: Contracts are in a filing cabinet. Key dates are logged in excel and reminders for contract expiration dates can become a burden to manage. Contracts are reviewed in closer detail with key caveats included. Streamlined contract management system and signing authority policy is in place. Pre-contract due diligence is recognized as a key practice in order to flush out potential vendors who present elevated risk to the organization.

Policy and Procedures In Place: Still room for improvement. They're readily available off the shelf. Policy and procedures are available but are a one size fits all approach. These can become a self-inflicted wound when reviewed by a regulator.

CFPB: In full force, will review vendor management practices at the department and enterprise level, and have also begun to perform vendor oversight on key vendors serving financial institutions.

It's nice to see how far we've come. We'll see how much further we can go and improve in the next ten years...better yet, it will be interesting to see what 2018 will bring.

Learn vendor management best practices to use in 2018, download our infographic.
Regulatory Developments Impact Your Next Vendor Management Exam eBook

Subscribe to Venminder

Get expert insights straight to your inbox.

Ready to Get Started?

Schedule a personalized solution demonstration to see if Venminder is a fit for you.

Request a Demo