Assesses and monitors the risk vendors and subprocessors introduce: reading audit evidence for what it actually covers, tiering by data and access rather than vendor size, and surfacing concentration risk a per-vendor review alone can't see.
Pitches the questions at your level. You can change it any time before you start.
1 of 18 questions match this level from what you can currently practise.
The first question of every role is free to try. Upgrade to practise the full set, with a model answer and per-criterion scoring on every one.