Who this service is for
For Australian organisations that rely on China-based suppliers, outsourced technology providers or business partners. An assessment is useful before onboarding a supplier, renewing an agreement or reviewing a partner with access to your systems or information.
China-based partners we assess
- Suppliers & manufacturers
- IT service providers
- Software development teams
- Technology vendors
- Engineering partners
- Cloud & infrastructure providers
Assessment areas
- Identity & Access Management
- Data Protection
- Network Security
- Endpoint Security
- Vulnerability Management
- Security Monitoring & Logging
- Backup & Disaster Recovery
- Third-Party Security Controls
ASSESS → RISK SCORE → REMEDIATE → VERIFY → MONITOR
How we approach the work
- Assess suppliers and review available evidence against the agreed scope.
- Risk score findings to establish a clear supplier risk profile.
- Prioritise and coordinate remediation actions.
- Verify improvements against supporting evidence.
- Monitor agreed controls and follow up on remaining risks.
Deliverables we can agree with you
- A supplier risk summary based on the available evidence
- A record of identified control gaps and evidence limitations
- Prioritised remediation actions with proposed owners
- Follow-up review priorities
Exact deliverables, scope, timing and support arrangements are agreed around your environment, requirements and available information.
Frequently asked questions
Does an assessment guarantee a supplier is secure?
No. Findings reflect the agreed scope and evidence available at the time. Missing evidence and assessment limitations should remain visible in the findings.
Can the work include remediation follow-up?
Yes. Assessment and remediation follow-up can be scoped together so your team can track priorities and review evidence of improvements.
What should we prepare before discussing an assessment?
Prepare a supplier list, the services they provide, the systems or information they access, and any existing assessment material you are authorised to share.
