Skip to main content
This guide walks you through the recommended setup sequence for a new VISO TRUST deployment. By the end of week four, you should have a functioning risk program with active relationships, completed assessments, and continuous monitoring in place.

Before You Begin

Make sure you have:
  • An active VISO TRUST account (check your email for your setup link)
  • Org Admin access — you’ll need it for the initial configuration steps
  • A list of your top third-party vendors to start with
If you haven’t received your account setup email, contact your Customer Success Manager or reach out to support@visotrust.com.

Week 1 — Set Up Your Foundation

1. Log in and explore the platform

Navigate to app.visotrust.com and log in. If your organization uses SSO, you’ll be redirected to your identity provider automatically. Take a few minutes to explore the main sections: Relationships, Assessments, Monitoring, and Settings. The Navigating the Platform guide has a quick overview of each area.

2. Configure your organization profile

Go to Settings → Org Profile and fill in your organization name, logo, and primary contact information.

3. Invite your team

Go to Settings → Users and invite the people who will manage your vendor risk program. At minimum, invite your primary risk team members as Contributors and designate any stakeholders who need visibility as Viewers. See Inviting Your Team for step-by-step instructions.

4. Add your first vendors

Go to Third Parties → Relationships and select Add relationship to add your highest-priority vendors. Start with 10–20 vendors so you have enough data to validate your setup without being overwhelmed. For each relationship:
  • Search the VISO TRUST directory for the vendor
  • Assign a Business Owner
  • Leave Predict relationship context and instantly assess selected — VISO TRUST immediately analyzes the vendor using public data
If you have a large vendor list, use Bulk Import to add them all at once via CSV.
Start with vendors you know well — ones where you already have documentation or strong familiarity. It’s easier to validate VISO TRUST’s outputs when you can sanity-check them against what you already know.

Week 2 — Run Your First Assessments

5. Review instant assessment results

By now, your newly added vendors will have instant assessment results. Go to any relationship and review:
  • The predicted inherent and residual risk scores
  • What public artifacts were discovered (certifications, security pages, audit reports)
  • Any risk advisories already surfaced

6. Configure relationship context

For your highest-priority vendors, add business context to each relationship:
  • Business case — how your organization uses the vendor (data they access, systems they touch)
  • Data types — what types of data the vendor handles
This refines the risk score from a predicted estimate to a contextualized one that reflects your actual exposure.

7. Start vendor-involved assessments

For vendors where you need deeper validation, send a collection request. Go to the relationship, select Start Assessment, and choose to involve the vendor. VISO TRUST sends them a secure link to submit documentation. While those are in flight, you can also upload documents directly if you already have them on hand.

Week 3 — Review Results and Act on Risk

8. Review completed assessments

As assessments complete, review the findings in each relationship:
  • Check the risk score and what drove it
  • Read the AI-generated Smart Summary for a quick executive overview
  • Identify any control gaps or findings that need follow-up

9. Accept risk or request remediation

For each completed assessment, take an action:
  • Accept risk — document your decision and the business justification
  • Request remediation — flag specific findings for the vendor to address
  • Send a follow-up questionnaire — ask the vendor for additional information on specific controls

10. Set up notifications

Go to Settings → Org Profile → Notifications and configure alerts for:
  • New risk advisories on your vendors
  • Assessment status changes
  • Upcoming recertifications or expiring documents

Week 4 — Tune Your Program

11. Review your risk model

Go to Settings → Risk Model and review how VISO TRUST is scoring risk for your organization. You can customize risk tolerances to reflect your organization’s specific thresholds.

12. Set up integrations

If your organization uses tools like Slack, Coupa, or ServiceNow, configure the relevant integrations in Settings → Integrations. See Integrations for what’s available.

13. Establish your ongoing cadence

VISO TRUST works best as a continuous program, not a point-in-time exercise. Decide on:
  • How often you’ll reassess vendors (typically annually for critical vendors, every 18–24 months for lower-risk ones)
  • Who reviews risk advisories and on what timeline
  • How you’ll handle new vendor onboarding going forward

What’s Next

Third Parties

Learn how to manage relationships and assessments in depth.

Risk & Monitoring

Understand how risk scores are calculated and how to customize your risk model.

Integrations

Connect VISO TRUST to your existing tools and workflows.

API Reference

Automate your TPRM workflows using the VISO TRUST API.