The pre-conference workshops at the Data Protection & Privacy Law Compliance Conference have begun! The first workshop covered managing the risk of third party vendors. An important element of ensuring the security and privacy of your vendors is finding out what vendors your vendors are using. As we all know, you can out-source the work, but not the responsibility. And all too often the vendors we are entrusting our information to are also using vendors, increasing the risk that a data breach will occur. As reported in the workshop, 39% of data breaches involve information held by a third party. While a solid business practice is to include language in your vendor agreement restricting your vendor from using vendors, this often only works for the biggest of organizations. An avenue for smaller companies is to request that your vendors provide a material list of the vendors they use and the security controls implemented by those vendors. This will help you analyze the level of risk associated with your vendor and determine if you are in compliance with regulations applicable to your organization. In addition, the risk level will dictate the frequency of security audits and on-site visits. They key to managing the risk of using vendors is reducing the number of unknowns!
©1994-2013 Mintz, Levin, Cohn, Ferris, Glovsky and Popeo, P.C. All Rights Reserved.Know thy vendor’s vendor…..
Boost: AJAX core statistics
- Primary menu
- Home
- Publish With Us
- Contributors
- About Us
- Contact Us
- Advertise
- Sign Up For NLR Bulletins
- QUICK LINKS
- Antitrust Law
- |
- Bankruptcy & Restructuring
- |
- Biotech & Cleantech
- |
- Business of Law
- |
- Election
- Construction & Real Estate
- |
- Environmental, Energy & Resources
- |
- Financial, Securities & Banking
- Health Care
- |
- Immigration
- |
- IP Law
- |
- Insurance
- |
- Labor & Employment
- |
- Litigation
- |
- Media & FCC
- |
- Tax
Related Articles
- Dr. Oz Fights Back Against False Advertising
- U.S. Patent and Trademark Office (USPTO) Adopts New Professional Conduct Rules
- U.S. Federal Trade Commission (FTC) Updates Guidelines for Making Proper Disclosures in Digital Advertising
- First-Ever Criminal Consumer Product Safety Improvement Act (CPSIA) Charges Brought for the Importation and Sale of Hazardous Toys
- By the Numbers: 7-Eleven Files 2 Trademark Lawsuits in Middle District of Georgia against 9 Total Defendants Regarding 6 Accused Sites
- Canonical Form of Patent Claims
- Setback for Apple in iPhone Multi-District Litigation (MDL)
- Plain Language in Patent Claim Applications
From This Author
Advertisement
Advertisement
Recent Contributions to the National Law Review
Allen Matkins Leck Gamble Mallory & Natsis LLP
Drinker Biddle & Reath LLP
Katten Muchin Rosenman LLP
Michael Best & Friedrich LLP
Barnes & Thornburg LLP
Greenberg Traurig, LLP
Allen Matkins Leck Gamble Mallory & Natsis LLP
Katten Muchin Rosenman LLP
Morgan, Lewis & Bockius LLP
Greenberg Traurig, LLP
Schwegman, Lundberg & Woessner, P.A.
McBrayer, McGinnis, Leslie and Kirkland, PLLC
Drinker Biddle & Reath LLP
Womble Carlyle Sandridge & Rice, PLLC
Morgan, Lewis & Bockius LLP
Greenberg Traurig, LLP
Barnes & Thornburg LLP
Katten Muchin Rosenman LLP
Mintz, Levin, Cohn, Ferris, Glovsky and Popeo, P.C.






