Third-Party Risk, End to End
The whole supplier lifecycle, not the questionnaire. Finding the suppliers nobody told you about, deciding how much diligence each one is worth, getting the few clauses that matter, reading the evidence that keeps arriving, finding the four suppliers who turn out to be one, and getting out cleanly.
- trending_upIntermediate
- schedule7h 21m
- menu_bookLekcje: 12
- publicEnglish
- workspace_premiumBasic
Odprawa
Somebody in your organisation has bought something this month that holds customer data, and procurement has never heard of it. It was thirty pounds on a card, it was signed up for with a work email address, and there is no contract. That supplier is now inside your risk position and outside your register. Most third-party risk work fails there, before any questionnaire is sent. This segment is the lifecycle. You build a register from the card statement and the sign-in logs rather than from procurement, because those two sources know things procurement does not. You write a tiering rule that decides for you, so the level of diligence a supplier gets is not negotiated afresh every time somebody is in a hurry. You cut a question set down until it is short enough to actually come back, and you learn what a returned questionnaire is: a statement of intent, written by somebody who wants the deal, about a state of affairs nobody independent has checked. You get the handful of contract clauses that change what happens on a bad day, and you leave the rest to counsel, because contracts are legal territory and this segment says so in every lesson that touches one. You then handle nine months of evidence arriving at a mailbox nobody reads. Finally you map what is behind your suppliers, discover that four of them stop at the same moment for the same reason, and write an exit plan for the one you are leaving, whose administrator account is still active five months after the contract ended. A programme that produces a two-hundred-question spreadsheet has failed. It has externalised weeks of work onto suppliers who cannot afford it, selected for the ones with a compliance team rather than the ones with good practice, and produced no decision anybody changed. The test applied throughout this segment is narrower and harder: what would this question, if answered honestly, change about what we do? If the answer is nothing, the question comes out. You finish with five artefacts: a supplier register with owners and review dates, a written tiering rule, a question set of fifteen with a closing artefact against each one, a clause list with what each clause buys you, and an exit plan. None of them is long. All of them are the sort of thing that has to survive somebody else picking it up while you are on holiday. Every money figure, count and date in this segment is illustrative. The numbers are shaped so the arithmetic behaves realistically; none of them is a claim about what anything costs or how long anything takes in the real world. Nothing in this segment is legal advice: contract and data-protection content is legal territory, and the learner's own counsel decides.
Program kursu · Moduły: 4
lockOdblokowuje się z dostępem- 01 Rejestr, Zbudowany z Tego, Co WidziszLekcje: 3·1h 36m
Jeśli poprosisz dział zakupów o listę dostawców, otrzymasz listę rzeczy kupowanych przez dział zakupów. To nie jest ten sam zbiór. Wyciąg z karty wie o trzydziestu funtach opłat cyklicznych.…
- 02 Ile Due Diligence Warte JestLekcje: 3·1h 59m
Czteroosobowa firma dostawcy nie może odpowiedzieć na dwieście pytań. Będzie próbować, poświęci siedem tygodni, odpowie na sześćdziesiąt, a ty i tak ich zatwierdzisz, bo projekt potrzebował ich w…
- 03 Umowa i dowody, które wciąż przychodząLekcje: 3·1h 40m
Klauzula nie zatrzymuje incydentu. To, co ci kupuje, to zawiadomienie, prawo do dowodów i wyjście. To warto mieć i warto wiedzieć, co to jest, bo prawo audytu, które nikt nigdy nie będzie wykonywać,…
- 04 Czwarte strony, skoncentrowanie i wyjścieLekcje: 3·2h 6m
Masz czterech dostawców w czterech funkcjach i czujesz się spokojnie, bo to jest dywersyfikacja. Następnie czytasz cztery listy podwykonawców i trzech z nich znajduje się w tym samym miejscu.…
Najczęściej zadawane pytania
- Czego się nauczę w Third-Party Risk, End to End?
- The whole supplier lifecycle, not the questionnaire. Finding the suppliers nobody told you about, deciding how much diligence each one is worth, getting the few clauses that matter, reading the evidence that keeps arriving, finding the four suppliers who turn out to be one, and getting out cleanly.
- Czy potrzebuję wcześniejszego doświadczenia?
- Przed rozpoczęciem Third-Party Risk, End to End zaleca się wcześniejszą wiedzę.
- Ile czasu zajmuje Third-Party Risk, End to End?
- Third-Party Risk, End to End obejmuje 4 modułów i 12 lekcji. Uczysz się we własnym tempie.
- Jak uzyskać dostęp?
- Third-Party Risk, End to End jest wliczony w każdą płatną subskrypcję.