Know your gear
RSA Archer Third Party Risk Management employs a series of risk assessment questionnaires to be completed by a third party to assess the third party's internal control environment and collect relevant supporting documentation for further analysis. The results of these questionnaires are factored into a determination of the organization's residual risk across several risk categories (compliance/litigation, financial, information security, reputation, resiliency, strategic, sustainability, and fourth party risk). Risk results are depicted for each engagement and are rolled up to the third party to depict their overall risk across all of the engagements they deliver to the organization. Risk assessment findings can be automatically captured and managed as exceptions and remediation plans can be established, assigned to accountable individuals, and monitored to resolution.