SaaS Vendor Security Assessment Checklist
1. Company Information
| Item | Details |
| Vendor Name | |
| Contact Name | |
| Contact Email | |
| Service Provided | |
2. Compliance and Certifications
| Requirement | Status / Details |
| SOC 2 Type II Certification | |
| ISO 27001 Certification | |
| GDPR Compliance | |
| Other Certifications | |
3. Data Security
| Requirement | Response |
| Data Encryption In-Transit | |
| Data Encryption At-Rest | |
| Data Segregation | |
| Backup & Data Recovery | |
| Data Retention Policy | |
4. Access Control
| Requirement | Response |
| Role-Based Access Control (RBAC) | |
| Multi-Factor Authentication (MFA) | |
| Logging & Monitoring Access | |
| Employee Background Checks | |
5. Application Security
| Requirement | Response |
| Secure Development Lifecycle | |
| Vulnerability Management | |
| Penetration Testing | |
| Patch Management | |
6. Incident Response
| Item | Details |
| Incident Response Plan | |
| Breach Notification Procedures | |
| Recent Security Incidents | |
7. Additional Comments