Risk Profile Questionnaire

Complete applicable sections. Select Yes, No, or Unsure. Provide context where appropriate.
Organization
1. Regulatory & Compliance Context
List certifications line by line (e.g., SOC 2 Type II, ISO 27001, PCI SAQ A).
2. Identity & Access Management
3. Data Protection
4. Endpoint & Network Security
5. Monitoring & Incident Response
6. Vendor & Third-Party Risk
7. Physical & Environmental Security
8. Asset & Change Management
9. Policies, Awareness & Training
10. Business Continuity
11. Privacy & Data Handling
12. Final Notes & Submission