Third-party Risk Management Fundamentals
ServiceNow CIS-TPRM Study Guide
Overview
Third-party Risk Management (TPRM) helps organizations identify, assess, and manage risks associated with vendors, suppliers, and other third parties. It provides a structured approach to vendor risk assessment and ongoing monitoring.
Why It Matters for the Exam
Fundamentals covers 23% of the CIS-TPRM exam. This foundational knowledge is essential for understanding all other TPRM concepts.
Key Concepts to Master
1TPRM data model
2Vendor records
3Engagement management
4Risk tiers
5Risk factors
6Vendor lifecycle
7TPRM roles and responsibilities
8Compliance frameworks
💡 Exam Tips & Strategy
Focus on the relationship between vendors, engagements, and assessments. Know the different risk tiers and what they mean for assessment requirements.
14
Practice Questions
23%
Exam Weight
CIS-TPRM
Certification