🛡️
IT & Product
Vendor Security Questionnaire
A three-page vendor security assessment — company scope, security practices, and compliance evidence.
Use this template14 fields · Free · Customize before publishing
What this form looks like
Preview · not interactiveVendor Security Questionnaire
A three-page vendor security assessment — company scope, security practices, and compliance evidence.
Company & scope
Company name*
Acme Inc.
Security contact name*
Jane Doe
Security contact email*
What service will you provide, and what data will you handle?*
Security practices
Customer data is encrypted at rest and in transit
Customer data is encrypted at rest and in transit
SSO (SAML / OIDC) is supported
SSO (SAML / OIDC) is supported
MFA is enforced for employee access to production systems
MFA is enforced for employee access to production systems
How often do you run third-party penetration tests?*
At least annually
Every 1–2 years
Ad hoc / on major releases
We have not run one yet
Describe your incident response process*
Compliance
Which certifications or attestations do you hold?*
ISO 27001
SOC 2
GDPR-ready
None of these
Compliance reports
⬆ Drop a file or click to upload
Optional — SOC 2 report, ISO certificate, or pentest summary (max 5 files, 25 MB each).
Submit