Glossary

Vendor tiering

Vendor tiering is the practice of ranking your third-party vendors by risk — how much sensitive data they touch, how critical they are to operations — and matching the depth of security review to the tier. Critical vendors get full assessments; low-risk tools get a lightweight check. Rigor goes where the risk lives.
Assemble Your GRC Team
Last updated July 26, 2026