Request Demo →

How to Order

Already a current customer?

Have a current subscription?

If you have a current subscription to the recommended solutions, you can order directly within the Venminder platform.

For helpful guides, please see:



Want to add a new subscription?

If you do not have a subscription to one or more of the solutions recommended and you would like to discuss adding it, please contact your Account Manager.

Not yet a customer?

If you are not yet a Venminder customer, we would welcome the opportunity to meet and discuss how we can assist. Simply complete this Talk to Sales form and we'll be in touch.

Welcome to Venminder's
Recommendation Tool

This page is designed for desktop use and does not work on smaller devices.

Welcome to Venminder's
Recommendation Tool

Reveal the risks in your vendor relationships

By answering some questions about your vendor’s product or service, you’ll receive customized solution recommendations. This tool can help you eliminate the guesswork and elevate your vendor review process with ease, enabling you to focus on the risks that matter the most.


Please provide a vendor/product name.

Note: This tool is for reference only; it does not collect or save your submitted answers once you leave the site.

Vendor Name
0 of answered
Type of Organization
1) Are you a financial institution?

  • The sudden loss/disruption of this third party would cause significant disruption or regulatory scrutiny to your business and its critical functions
  • The sudden loss would impact your customers
  • Service disruption would create a negative impact on your operations if the time to restore was more than 24 hours

Please provide an answer

Product Criticality
2) Is this a critical product via any of the following:

  • The sudden loss/disruption of this product would cause significant disruption or regulatory scrutiny to your business and its critical functions
  • The sudden loss would impact your customers
  • Service disruption would create a negative impact on your operations if the time to restore was more than 24 hours

Please provide an answer

Product Profiling
3) Is this a technology-based product?

Examples of technology-based products:

  • Software
  • Web portal
  • Cloud service provider (SaaS, IaaS, PaaS)

Please provide an answer

Risk Profiling
4) Is this a technology-related product that will in any way require system integration and/or have the ability to change system configurations?

Examples of technology-related products which may require integration or make changes to your systems:

  • System management/monitoring tools
  • Fail-over and/or backup infastructure
  • Cloud Infastructure
  • Managed service provider (MSP)
  • Remote access for upgrades/support

Please provide an answer


5) Will the product store/transmit/process sensitive PII or sensitive company data?

Examples of personally identifiable data (PII) and company sensitive data:

  • Electronic protected health information (ePHI)
  • Cardholder data (CHD)
  • Biometric data
  • Race/religion/sexual orientation data
  • Consumer financial data
  • Intellectual property

Please provide an answer


6) Will the vendor store/transmit/process non-sensitive PII or company data?

Examples of non-sensitive PII and company data:

  • Contact Data (name, email address, mailing address, phone number)
  • Company policies
  • Company biographies

Please provide an answer


Instructions: Once you have answered all 9 questions above, select “Submit Answers” to see our recommended due diligence solutions. As this tool is for reference only; it does not collect or save your submitted answers once you leave this website.

Recommended Venminder Solutions Based on Your Answers

ABC IT Cloud Provider

HIGH RISK
Recommended
Highly Recommended
All Solutions

Recommended Solutions

Customers most often choose these Venminder solutions to complete basic due diligence on vendors/products that match the risk profile of the vendor/product that you entered.

Estimated Total

$3,520*

Volume discounts available
    Additional Guidance:
  • Venminder encourages the review of SOC 1 and SOC 2 reports when available, as they provide further attestation and review of the vendor's control environment. Venminder's SOC Assessment provides the most detailed review of a vendor's SOC report. SOC reports are used as evidence for Vendiligence™ when appropriate.
  • Venminder's Information Security and Privacy Assessment (ISPA) does include information about a vendor’s SOC report(s), but does not include the listing of CUECs (if included within the report) or whether the controls were tested, or only mentioned.
  • If your vendor will have PII of any kind, Venminder’s Data Protection Assessment (DPA) or Information Security and Privacy Assessment (ISPA) are recommended due to privacy laws in 19+ US states and many countries. (These assessments address technical and organizational measures as well as privacy requirements.)
  • Venminder’s products do not require being purchased as a package and the above results are for guidance only. You can add and mix to suit your needs. Your organization’s third-party risk management maturity, budget, regulatory requirements, and internal available resources should be taken into account when determining the appropriate due diligence solutions needed.

Highly Recommended Solutions

Customers most often choose these Venminder solutions to complete more comprehensive due diligence on vendors/products that match the risk profile of the vendor/product that you entered.

Estimated Total

$3,520*

Volume discounts available
    Additional Guidance:
  • Venminder encourages the review of SOC 1 and SOC 2 reports when available, as they provide further attestation and review of the vendor's control environment. Venminder's SOC Assessment provides the most detailed review of a vendor's SOC report. SOC reports are used as evidence for Vendiligence™ when appropriate.
  • Venminder's Information Security and Privacy Assessment (ISPA) does include information about a vendor’s SOC report(s), but does not include the listing of CUECs (if included within the report) or whether the controls were tested, or only mentioned.
  • If your vendor will have PII of any kind, Venminder’s Data Protection Assessment (DPA) or Information Security and Privacy Assessment (ISPA) are recommended due to privacy laws in 19+ US states and many countries. (These assessments address technical and organizational measures as well as privacy requirements.)
  • Venminder’s products do not require being purchased as a package and the above results are for guidance only. You can add and mix to suit your needs. Your organization’s third-party risk management maturity, budget, regulatory requirements, and internal available resources should be taken into account when determining the appropriate due diligence solutions needed.

All Solutions

Venminder provides a comprehensive suite of solutions, including completed risk assessments of your vendor’s controls, one-time risk intelligence reports, and continuous monitoring of risk intelligence. Additionally, Venminderoffers a complete software platform for end-to-end lifecycle management.

This symbol indicates where Venminder’s team conduct a deeper more comprehensive look into the specified control area.

* Estimated total is per vendor or product. Volume discounts available.

Where do you go from here?

Step 1

Research our due diligence solutions

Take tours and review samples or our recommended solutions. Review your needs, determine budget and risk factors.

Step 2

How to Order

Schedule time to meet with one of our solution experts who can assist you in reviewing your vendors and making more personalized recommendations.

Step 3

Purchase and make faster business decisions

Leverage Venminder’s solutions to reduce your due diligence workloads, and confidently make informed decisions to address risk.