Law Firm Data Security Risk Assessment Questionnaire
1. Firm Information
Firm Name
Contact Person
Email Address
Phone Number
2. Data Management
What types of sensitive data does your firm handle?
How is client data stored?
On-premises servers
Cloud storage
Physical files
Who has access to client data?
3. Security Practices
Does your firm use multi-factor authentication?
Yes
No
Are employees trained on data security policies?
Yes
No
How often are passwords changed?
Monthly
Quarterly
Annually
Other
4. Incident Response
Do you have a data breach response plan?
Yes
No
Have any data breaches occurred in the past 12 months?
Yes
No
If yes, please provide details:
5. Additional Comments
Other risks, concerns, or relevant details