This document is on Supplier Security Assessment Questionnaire (SSAQ) (Security self-Assessment and Reporting) (Courtesy Halkyn Consulting).
This includes the following sections –
- Document Control
- Supplier Name & Address
- Assessment Completed by
- Date of assessment
- Additional Documents ProvidedRelevant
- Network Diagram
- Relevant Security Diagram
- Relevant System Architecture
- Technical Interface Design
- Relevant 3rd Party Security
- Assessment(s) (e.g. SAS 70, Pentests, etc.)
- Policy Compliance
- Security Policies
- Policy Coverage
- Policy Provision
- Detailed Security Control Assessment
- Organizational Security
- Asset Classification and Control
- Personnel Security
- Physical and Environmental Security
- Communications and Operations Management
- Access Control
- Development & Maintenance
- Information Security Incident Management
- Business Continuity Management
- Compliance
View Document
Reference Source – click here