VENDEFENSE 2.0 Release Notes
Caitlin Fox avatar
Written by Caitlin Fox
Updated over a week ago

New vendor list makes it easier to know at a glance the state of the vendor risk program

  • Tabs break out active vendors by the stages of the evaluation process - Classification, Assessment, and Remediation

  • More information is available from the vendor list providing better functionality

  • New format offers optimal maneuverability, coupling a search bar with extensive filters and sorts

  • To-do items are clearly marked and a counter badge next to each stage designates how many vendors require action on the Risk Manager’s part

New filters for easy sorting 

Sort by stage

  • Users have the option of focusing on vendors within a particular stage

Sort by progress

  • Sort filter provides the ability to narrow in on vendors at a certain progress point within each stage

Sort by outcome

  • Users can quickly filter by “Accepted” and “Rejected” vendors

Sort by relationship owner

  • Risk Managers are able to sort by relationship owner, and quickly determine the standing of each user

Sort by impact level

  • Quickly determine the impact level of each vendor for easy prioritization

Search field on the vendor list page

  • Users have the ability to easily search for vendors from anywhere on the Vendor List screen

Metrics track progress in Vendor List stage

New UI includes metrics that track the overall progress of the organization’s VRM program

Metrics track vendors in the Classification stage

  • UI provides a clear impact breakdown between high, medium, and low risk vendors

  • New UI tracks the number of vendors that are assigned to the Risk Manager for classification

  • Provides a clear count of To-Do items 

Metrics track vendors in the Assessment stage

  • Provides a clear breakdown of vendor FISASCORES

  • Risk Managers are shown the number of vendors waiting approval and overdue assessments

Metrics track vendors in the Remediation stage

  • Risk Managers are able to see items that need approval and are quickly alerted to them

  • Number of overdue items are shown at a glance

Customizable due date options

  • Default dates are chosen automatically 

  • Risk Managers have the option of choosing a customized date for classification questionnaire and assessment

  • Overdue dates show in red

New import features

New easy-to-use import UI screen

  • Option to download the import template

  • Direct access to verbiage to help your team with assembling import list

  • Provides a short list of the required fields for the template

  • Easy to use browse and upload feature

Option to export vendor list

  • The option to export the vendor list provides the Risk Manager the option to share information without necessarily giving admin access to the program

Vendor Information Page replaces the Vendor Information Panel 

Vendor Information Page now accessible via a pencil icon on the vendor list

Takes fewer clicks for the user to access pivotal information about the vendor

  • Information made more functionally available

  • For example, users are now able to quickly add a business unit without navigating to another window

  • Expanded the amount of information captured for each vendor.

  • International addresses supported

  • Service tags can be added

  • Industry selected from dropdown

New UI to invite vendor contacts

In the Vendor Information Page, Risk Managers have the functionality to:

  • Edit vendor contact information

  • Change the primary vendor contact (indicated by a star icon)

  • Remove vendor by clicking on trash icon

  • Add contacts to the vendor organization’s directory

In the evaluation screen, able to choose vendor contacts that should have access to complete the assessment

Can invite for the first time or resend vendor contact invitation email

Confirm Classification without sending invite to complete assessment

  • Change to workflow – now able to confirm classification without automatically sending the vendor an invite to do their assessment

  • Feature is able to be toggled on and off

Ability to end an evaluation without completing it

In certain situations, it makes sense to end an evaluation before it’s completed

  • Risk Manager required to sign off when circumventing the VENDEFENSE process

  • Risk Manager will have to leave an explanation as to why they’re circumventing VENDEFENSE processes

Useful for accommodating vendors that have undergone rigorous assessment via other methods (third party assessment, HITRUST certification, etc)

Quick answer feature

  • Provides the ability to answer all questions either “True,” “False,” or “NA” within a section of the assessment

  • Easier usability for vendors completing the assessment

 

Trust Two Factor Authentication for 30 days

Users have the ability of trusting the device after successfully logging in

Did this answer your question?