Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Create New Third party engagement form

On the Create New Third-party engagement form, fill in the fields.

FieldDescription
NameUnique name for the engagement. Ideally, mention the product or service that is the subject of the engagement.
Third partyThird-party for whom you're creating this engagement record.
TypeType of product or service to be provided by the engagement organization.
Start dateEnter start and end dates to define how long the engagement is valid.
End datePreferred dates for the beginning and end of interactions with the third-party.
Status

Select the current status of the engagement. Available options are:

  • Active
  • Onboarding
  • Prospect
  • Active unauthorized
  • Terminated
  • Onboarding rejected
Risk ratingDisplays the risk rating assigned to the engagement after an assessment has been performed.
Engagement tierTier used for this engagement.
Annual spendThe annual monetary spend associated with this engagement's services.
Engagement managerSpecify the person who will monitor, prioritize, and act on responses to external questionnaires, issues, and tasks. Select the lock to lock/unlock the field.
Business ownerSpecify the person who is familiar with the engagement organization and the product or services that will be engaged. Click the lock to lock/unlock the field.
NotesEnter text that describe the engagement to other users.
Third-party engagement: Contact
Street, City, State/Province, ZIP/Postal code, Country, Phone, FaxStandard contact information for the engagement organization.
Latitude and LongitudeThe Latitude and Longitude values are used to mark the location on the Risk concentration map. See TPRM Risk concentration map.
Risk ratings
Computed risk rating

Calculated Computed risk rating. This field is auto-filled.

The value is overall risk rating for the third-party, calculated after the assessment by rolling up all of the TPR assessors' risk ratings.

Override risk ratingOption to override the computed rating. If you select the check box, then specify the following values: - Overridden risk rating: Select the new risk rating. - Overridden on: Date that overridden risk rating or justification is updated. - Justification: Enter the reason for overriding the value.
Overridden risk ratingRating that has been manually changed by a user, overriding the rating that was calculated by a system. Available options are:- 1 - Very High - 2 - High - 3 - Moderate - 4 - Low - 5 - Very Low
Overridden onDate that overridden risk rating or justification is updated.
JustificationReason for overriding the value.
Assessment risk ratingRisk rating for the assessment. This field is auto-filled.
Engagement risk ratingRisk rating for the engagement. This field is auto-filled.
Subsidiary risk ratingRisk rating for the subsidiary. This field is auto-filled.
Risk intelligence ratingScore that corresponds to the likelihood and consequence of a risk event. This field is auto-filled.
Related lists on the form
Engagement contactsEngagement contacts for the third-party engagement.
Business servicesBusiness services related to the third-party engagement.
Tiering assessmentsTiering assessments for the third-party engagement.
Repeating assessmentsRepeating assessments for the third-party engagement.
AssessmentsAssessments for the third-party engagement.
Third-party risk areasRisk areas related to the third-party engagement.
IssuesIssues related to the third-party engagement.
TasksTasks related to the third-party engagement.
Entity typesEntity types related to the third-party engagement.
Digital resilience informationDigital resilience information for the third-party engagement. You can add the following parameters:- Name - Third party - Identification code of ICT third-party service provider - Type of code to identify the ICT third-party service provider - Name of the ICT third-party service provider

Parent Topic:Create a third-party engagement and enhance digital resilience data