workflow

System and Third-Party Risk Review

Runs on the existing system item. Review system and provider dependencies, assess current risk and control evidence, select response actions, and approve the review record. Deliver the reviewed result and open actions to the responsible register owner and the named companion procedure.

In catalog since 2026-09-17T22:28:00Z · Last changed 2026-10-04T21:48:26Z (791ff2dd3a45)

Record JSON · Open in map · Data retrieval guide

Catalog revision: 791ff2dd3a45707290badee660f185e514d15f1cf518908628f425c2f2c56ee4. A connection does not establish full coverage.

Attributes

domain
grc
department
risk-management
lineOfDefense
monitor

Details

teams
  • risk-management
  • it
  • procurement
domains
  • grc
standards
  • iso-27001
  • nist-800-53
  • soc2
sourceTemplateId
workflow-library:grc-system-third-party-risk-review
releaseId
sha256:038cb7c0b21ca22b0f35110ec6014ec4996dbf593bf829ef1f88c5c72ca15bff
canonicalUrl
https://evidenceflows.com/workflows/all/?w=grc-system-third-party-risk-review
capabilities
  • system-third-party-risk-review
mappingStatus
mapped
lineOfDefense
monitor
controls
  • UC-RISK-18
  • UC-CONFIG-10
  • UC-TPRM-02
  • UC-TPRM-04
  • UC-TPRM-08
roleIntegrity
activityCount
0
ermPhases
    lineRoles
      serviceModes
        warnings

          Source

          No record-specific source URL is provided.

          Download workflow template · Release: sha256:038cb7c0b21ca22b0f35110ec6014ec4996dbf593bf829ef1f88c5c72ca15bff

          Connections