Security Assessment Questionnaires

Overview

A Security Assessment Questionnaire (SAQ) is a tool used by organizations to evaluate the security posture of their vendors, partners, or internal departments. It typically consists of a structured set of questions designed to assess how well the entity adheres to security policies, controls, and best practices, including data protection, access management, incident response, and compliance with relevant regulations. The goal of an SAQ is to identify potential security risks, gaps, or vulnerabilities before entering into business partnerships or adopting new services, ensuring that sensitive information remains protected.


Navigate to the Module:


How to Add a Questionnaire:

In the Security Assessment Questionnaires, click on Create Template to add a questionnaire.

For demonstration purposes, we will be using a sample questionnaire to fill in information on the SAQ.

image.png


Add Questionnaire Title:

To edit the title, click on the image.png icon.

image.png

Once a title has been filled out, click on the saveimage.png icon to save any changes.


Add Questionnaire Section:

To add a section, first add a section title. Click on theimage.png icon to add a section title.

To save the section title, click add section.

image.png


Add Section Contents

For this example, we will add a sample question for the questionnaire.

To save the question in the section, click Add Question as shown in the figure above.

image.png

This will then save the question and will add another question form to be added by the user.


Add Multiple Sections:

To add multiple sections for a questionnaire, click on the section title

Type in the section title you want to add, then click the Add Section button.

The newly added section will be added to the table of contents and questions can be added to it.

image.png


How to Delete a Section:

If, for example, you accidentally create a section that you didn’t intend to, or if there is a typo when creating a section, you can easily remove it. Simply click the delete button next to the section, and it will be removed immediately. This allows you to quickly correct mistakes and maintain a clean, organized questionnaire.

In this example, a section called 'wasd' was created and we want to delete it. Simply click on the trash icon where the arrow is pointing to delete the section.


How to Save a Questionnaire:

Once all questions and sections of the questionnaire are complete, you can save your progress by clicking the green "Save" button, as shown in the figure above. This ensures all your changes are recorded and the questionnaire is ready for future use or distribution.

The newly created questionnaire will then be saved and shown on the Security Assessment Questionnaires Dashboard as shown above.


Types of Questions:

image.png

image.png

image.png

Conditional Questions:

For questions that have two parts, it's important to divide them into distinct sections for clarity and ease of response. As seen in the example below:

image.png

This method ensures that respondents are not overwhelmed by unnecessary fields unless their answer requires additional input. The main question gathers high-level information, while the follow-up captures detailed specifics only when relevant.

 

If you need further assistance, kindly contact our support at info@cytechint.com for prompt assistance and guidance.


Revision #2
Created 17 September 2024 02:58:26 by David Napoleon Romanillos
Updated 17 September 2024 07:36:50 by David Napoleon Romanillos