There are stories we tell ourselves in third-party risk management (TPRM) to make ourselves feel better about the corners we cut.

One of those stories is that the longer the questionnaire, the better. We’ve got everything covered this way. Except… Who has time to properly review all those answers? And are all those answers really addressing the risks we want addressed by this vendor?

Aaron Nicodemus is the Editor-in-Chief of Compliance Week. He previously worked as a reporter for Bloomberg Law and as business editor at the Telegram & Gazette in Worcester, Mass. Email: aaron.nicodemus@complianceweek.com LinkedIn:...