There are stories we tell ourselves in third-party risk management (TPRM) to make ourselves feel better about the corners we cut.

One of those stories is that the longer the questionnaire, the better. Weโ€™ve got everything covered this way. Exceptโ€ฆ Who has time to properly review all those answers? And are all those answers really addressing the risks we want addressed by this vendor?

Aaron Nicodemus is the Editor-in-Chief of Compliance Week. He previously worked as a reporter for Bloomberg Law and as business editor at the Telegram & Gazette in Worcester, Mass. Email: aaron.nicodemus@complianceweek.com LinkedIn:...