Caveat Emptor: My talk on managing vendor risk via contracts
I was invited to speak at the ongoing 1st Data Privacy and Cybersecurity Professionals' Summit at the Sheraton Manila Bay Hotel. Since I was unable to join the event in person, I sent in this video for my presentation. In this video, I share practical tips for managing vendor risk via contract.
Key takeways are:
The Privacy Impact Assessment is essential to managing vendor risk, even at the stage of contract negotiations.
Do not be afraid to negotiate, even with tech giants. There have been instances where they do accept proposed contractual language based on the requirements of the Data Privacy Act. Remember, you will be accountable for any unaddressed privacy risk so do not be afraid to stand your ground and advocate for your position.