How often does procurement include cyber risk assessment requirements in their engagement requests?

Always19%

Often39%

Sometimes25%

Rarely13%

Never1%

Not sure

421 PARTICIPANTS
3.1k viewscircle icon1 Comment
Sort by:
CTO2 years ago

It depends on the size of the business. In my experience, most of the publicly listed companies' procurement team will have this requirement as part of due diligence of vendor onboarding process. 

For private companies, it depends on the size and agility of the business that matters the most. 

Another driver for this requirement comes from regulatory compliance side and that too depends on which sector the company is operating.

Content you might like

Yes35%

Yes, but not enough, we want/need to ramp up38%

No20%

No, but I expect this will change soon5%

View Results

Eliminate Redundancy29%

Re-negotiate with vendors / take advantage of incentives44%

Shut down / pause what has been inactive13%

Update legacy and leverage emerging / more financially advantageous tools12%

View Results