

What are vendor questionnaires?
In Third-Party Risk Management (TPRM), vendor questionnaires are structured sets of questions sent to third-party vendors to evaluate how they manage risk. They’re used to gather evidence and insight across key risk domains before onboarding a vendor and throughout the vendor lifecycle.
What is the point of tiered questions?
Companies use a tiered approach to vendor questionnaires so the depth of questions matches the level of risk a vendor presents. This ensures low-risk vendors aren’t overburdened, while higher-risk vendors receive more thorough, in-depth questions that drive clearer, higher-quality responses. The result is more efficient reviews and stronger insight for risk teams.
