Third-party risk assessments

Identifies documents containing references to third-party risk assessments in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Engine
boost_regex
Confidence
medium
Confidence justification
category-aware structural regex with anchor and context constraints replaces phrase-only detection. Added context gating and exclusion rules improve precision and reduce incidental matches.
Detection quality
Mixed
Jurisdictions
global
Regulations
GDPR
Data categories
pii
Scope
wide
Platform compatibility
Purview: Compatible, GCP DLP: Compatible, Macie: Compatible, Zscaler: Compatible, Palo Alto: Degraded, Netskope: Unsupported

Pattern

(?is)\b(?:third[\s-]+party\s+risk|risk\s+assessment|vendor\s+risk|supplier\s+risk\s+rating|third[\s-]+party\s+due\s+diligence|risk\s+score|inherent\s+risk|residual\s+risk|risk\s+mitigation|vendor\s+assessment|cybersecurity\s+risk|compliance\s+assessment)\b

Corroborative evidence keywords

third-party risk assessments, third, party, risk, assessments, procurement, supplier, management

Proximity: 300 characters

Should match

Should not match

Known false positives

References