Privacy, data protection & cybersecurity compliance · Working
Vendor privacy risk
Also called: third-party privacy risk
ELI5
Privacy exposure created by suppliers or service providers handling data.
Used in conversation
“Counsel wants vendor privacy risk clarified before anyone signs.”
Pitch context
You will see “Vendor privacy risk” in board papers, contracts, policies, risk registers and compliance reports when the discussion reaches privacy, data protection & cybersecurity compliance.
Why it matters: In privacy, data protection & cybersecurity compliance, a loose definition can change rights, obligations, approval, disclosure or enforceability.
Caution
Meaning, enforceability and required process vary by jurisdiction and agreement; this definition is not legal advice.
Sources & evidence · 3
Direct term-level sources and supporting source families.
- National Institute of Standards and Technology — Computer Security Resource Center GlossaryDirect source · primary · checked 2026-08-16
- OECD — G20/OECD Principles of Corporate Governance 2023Supporting source family · institutional · checked 2026-08-16
- U.S. Securities and Exchange Commission — EDGAR and filing resourcesSupporting source family · primary · checked 2026-08-16