Third Party Risk Management (TPRM) program, governed by Information Security Office ... providing a "risk rating" and summarizing risk findings with security recommendations in a formal Vendor Risk ...
The ITRAP will be a cooperative process combining efforts from the vendor, business unit, and security engineers ... As part of RIT’s annual Enterprise Risk Management (ERM) process, senior leadership ...