You can reset yourself by utilizing the ‘forgot password’ feature on the portal, reach out to TPRM@zoom.us or TPRM_Assessments@zoom.us and we can resend a link with a new temporary password.
The primary vendor contact from your company can add additional contacts in the vendor portal as needed.
All vendors are in scope for an inherent risk questionnaire (IRQ). Based on the results of the IRQ, some vendors may require additional risk assessments. Some services which are identified as low risk, may not require a detailed assessment.
The TPRM team will schedule a kick off meeting with you at the onset of a new engagement. During this time, assessment activities and timelines will be communicated to you. The goal is not to exceed 90 calendar days.
Risk assessments are advisory and assessment services related to regulatory compliance or information security. The goal is to provide guidance to project teams and leadership to manage technology risk introduced by new solutions.
The IRQ consists of questions about the vendor service that are used to determine the potential risk posed to Zoom and the inherent risk tier.
An inherent risk tier refers to the potential risk an engagement presents to Zoom before any controls are applied or taken into account. The risk tier is measured on a scale of low, medium, and high. The inherent risk tier is the driving factor in determining what risk assessment work is required.