Regulations

 View Only

Welcome to the Regulations Community. Here you will find the latest discussions and resources that can help you in this area. Use this community to stay abreast third-party risk industry guidance, updates, ask questions, discuss pending regulatory changes, or seek advice. Note: You will need to Sign In to join in the discussions and access resources. 

About Industry Regulations: It’s always a good idea to keep any eye on the most recent and stringent regulatory guidance to stay compliant and ensure you're doing everything you should in third-party risk management. Regulatory guidance and best practices evolve regularly. Therefore, not only should you be reviewing your own prudential regulator’s guidance, but you should also review other regulatory guidance. This will help ensure you meet industry standards and best practices in third-party risk management.

Latest Discussion Posts

  • Profile Picture

    RE: CCPA

    Most of the time if the supplier has access to your data, the contract includes something like this. Days can be changed based on your risk appetite. More

    1 person likes this.
  • Profile Picture

    RE: CCPA

    This message was posted by a user wishing to remain anonymous We are currently in the middle of an NCUA audit and the required documents regarding cyber security is: Documentation demonstrating contracts with critical service providers address ... More

  • Profile Picture

    CCPA

    This message was posted by a user wishing to remain anonymous With the new CCPA regulation that now requires credit unions to conduct annual cybersecurity audits, Vendor Management/Third Party Risk Management will also be responsible for "overseeing ... More

    1 person likes this.
  • With the many individual state privacy laws enacted that we need to ensure vendors are abiding by, I am looking for any best practices that anyone is using within the venminder platform to track their vendors to confirm they are abiding by them. In the ... More

  • Profile Picture

    Vendor Mgmt. Office (VMO) - Org. Reporting Vertical

    This message was posted by a user wishing to remain anonymous Greetings, A mid-level bank is trying to stand up/redesign their VMO, but within an administrative reporting vertical. My experiences with large financial services organizations had TPRM ... More

Polls