Information security questionnaire for suppliers

1. General information on the supplier
2. Certifications and standards
If yes for 2.1, please indicate the year of the last certification and the certifier
3. Information security management system (ISMS)
How often is the ISMS reviewed and audited internally and externally?
4. Risk management
5. Technical and organizational measures
How are security incidents reported and handled in your company?
6. Awareness and training
7. Data protection
How do you ensure the protection of personal data in your company?
8. Supplier management and third parties
9. Conclusion