SAMMY UI is optimized for resolutions with a width 1024px and higher.
GV.SC-07.1
GV.SC-07.1: The risks posed by a supplier, its products and services and other third parties shall be identified, documented, prioritised, mitigated and assessed at least annually and when changes occur during the relationship.

The risks posed by a supplier, its products and services and other third parties shall be identified, documented, prioritised, mitigated and assessed at least annually and when changes occur during the relationship.

Documentation Maturity
Implementation Maturity
Description

The risks posed by a supplier, its products and services and other third parties shall be identified, documented, prioritised, mitigated and assessed at least annually and when changes occur during the relationship.

GV.SC-07.2
GV.SC-07.2: A documented list of all critical suppliers, vendors and partners of the organisation that may be involved in a major incident shall be established, kept up-to-date and made available online and off-line with due regard to confidentiality and security.

A documented list of all critical suppliers, vendors and partners of the organisation that may be involved in a major incident shall be established, kept up-to-date and made available online and off-line with due regard to confidentiality and security.

Documentation Maturity
Implementation Maturity
Description

A documented list of all critical suppliers, vendors and partners of the organisation that may be involved in a major incident shall be established, kept up-to-date and made available online and off-line with due regard to confidentiality and security.

GV.SC-07.3
GV.SC-07.3: The organisation shall audit business-critical third-party service providers for security compliance.

The organisation shall audit business-critical third-party service providers for security compliance.

Documentation Maturity
Implementation Maturity
Description

The organisation shall audit business-critical third-party service providers for security compliance.

GV.SC-07.4
GV.SC-07.4: The organisation shall ensure conformity with information/cybersecurity contractual obligations by suppliers and third-party partners through regular reviews of independent audits, assessments, and third party evaluations.

The organisation shall ensure conformity with information/cybersecurity contractual obligations by suppliers and third-party partners through regular reviews of independent audits, assessments, and third party evaluations.

Documentation Maturity
Implementation Maturity
Description

The organisation shall ensure conformity with information/cybersecurity contractual obligations by suppliers and third-party partners through regular reviews of independent audits, assessments, and third party evaluations.