Safeguard Documentation Center
Third Party Risk Manager

Vendor Management

Organize and track your third-party software vendors

Vendor Management

Maintain a centralized directory of all third-party software vendors with contact information, contracts, and risk categorization.

Vendor Directory

Adding Vendors

  1. Navigate to Vendors
  2. Click Add Vendor
  3. Enter vendor information:
    • Company name
    • Primary contact
    • Contact email
    • Website
    • Products used
  4. Set risk tier
  5. Click Save

Vendor Information

Track comprehensive vendor details:

FieldDescription
Company NameVendor organization name
ProductsSoftware products you use
Primary ContactMain point of contact
Contract StatusActive, pending, expired
Risk TierCritical, High, Medium, Low
SBOM StatusReceived, requested, none
Last AssessmentMost recent risk review

Bulk Import

Import vendors from spreadsheet:

  1. Download the template CSV
  2. Fill in vendor information
  3. Upload the completed file
  4. Review and confirm import

Risk Tiering

Automatic Categorization

TPRM can suggest risk tiers based on:

  • Data access level
  • System criticality
  • User count
  • Compliance requirements

Manual Override

Adjust risk tiers manually:

  1. Select the vendor
  2. Click Edit Risk Tier
  3. Choose new tier
  4. Document justification
  5. Save changes

Vendor Relationships

Track relationships between vendors:

  • Parent companies
  • Subsidiaries
  • Resellers
  • Implementation partners

Contract Management

Link contracts to vendors:

  • Contract documents
  • Start and end dates
  • SLA terms
  • Security requirements
  • SBOM obligations

Vendor Portal

Invite vendors to self-service:

  • Update their own information
  • Submit SBOMs directly
  • Respond to questionnaires
  • View their risk status

On this page