Vendor Management Services

Vendor management can be an overwhelming obligation. The many complicated tasks associated with collecting, evaluating, and maintaining third party information can quickly become overwhelming.

Boost Consulting can streamline the process by helping you determine which vendors need the most attention, evaluating which services should be associated with those vendors, and collecting and reviewing your vendors' information security documentation.

Our consultants know and understand the ever-changing regulatory landscape affecting your business, and have the expertise and experience to help you maintain your vendor management program in the best way possible.

Boost VM—Vendor Management Services

We will assist with your vendor management program by importing vendors and services, including facilitating determination of vendor significance, into a framework that streamlines the process of collecting, reviewing, and documenting third-party vendor information.

Vendor Management Importing

Your Boost consultant will import all of your vendors and services into Tandem Vendor Management, and will assist with associating services with vendors and determining needed document types and their renewal dates. Additionally, your Boost consultant will provide assistance with:

  • Determining critical and non-critical vendors
  • Determining which vendor documentation is required based on significance question answers
  • Delegating responsibility to appropriate staff
  • Setting email reminders
  • Importing new vendors, documents, and contracts.
  • Creating appropriate review templates

Document Collection

Your Boost consultant will assist with the collection of third-party documents. This service includes:

  • Creating custom request templates for document collection
  • Importing documents as they are received from vendors
  • Establishing document expiration/renewal dates
  • Two collection periods per year (unless otherwise requested)

Document Analysis

Your Boost consultant will analyze documents as part of the compliance process for vendor management. This service includes:

  • Document review and analysis (not including vendor financials and contracts)
  • Reviewing SOC reports and other information-security-specific documentation
  • Periodic vendor monitoring review

Additional details:

  • Engagements may be structured on an annual, semi-annual, or quarterly basis
  • Vendor management consulting is normally conducted via conference calls or other telephone-based meeting services. However, on-site consulting is available.
  • Boost consultants can provide training regarding vendor management in general, and on how to use the Tandem Vendor Management module in particular.
  • Extensive reporting is available, including summary reports of your Vendor Management program as well as individual vendor oversight reports.
  • We can assist with your vendor risk assessment as part of Boost Risk Assessment Services.
"You've been wonderful in assisting us to get started, and I appreciate how responsive you've been on everything I've requested of you."

Boost + Tandem

This engagement requires a subscription to Tandem Vendor Management.

Tandem software provides an easy-to-use tool for vendor management. Benefits include:

  • All your vendors in one place
  • Email reminders
  • Conduct and document regular reviews
  • Responsibility delegation
  • Vendor documentation requests through Tandem

As a part of Boost Consulting, we will provide training and assistance with using the software.

The Tandem Vendor Management module interfaces with the Tandem Business Continuity Planning module. By purchasing and using both modules, vendor contact information can be directly populated into Tandem BCP. Ask your account representative about business continuity planning services.

Ready to hand off vendor management?

Start the conversation