Investor Presentaiton
Determining Compliance: Regulatory Consideration
Is there evidence that licensee exercised due diligence when
Reputation of the TPSP
selecting the TPSP?
• How long has it been in business?
• What qualifications does the TPSP have?
What relationships does the TPSP have with other vendors?
Access to Sensitive
Information
• Does the TPSP have access to information systems?
• What safeguards are in place to protect licensee's data?
• Who has access to the TPSP's information systems?
Contractual Terms
• What does your contract say about data security?
• Is there a gap between your legal obligations and the
vendor's systems?
• What happens if there is a cybersecurity event involving the
TPSP's systems?
Insurance
• Does the licensee have cyber insurance?
•Does the TPSP have cyber insurance?
• What other risk mitigation policies or procedures does the
licensee have in place?View entire presentation