"> Vendors Management – APO10 (COBIT2019) – Process-Symphony – ITSM Knowledge Orchestrators

Search Knowledge

Vendors Management – APO10 (COBIT2019)

Managed Vendors

Manage I&T-related products and services provided by all types of vendors to meet enterprise requirements. This includes the search for and selection of vendors, management of relationships, management of contracts, and reviewing and monitoring of vendor performance and vendor ecosystem (including upstream supply chain) for effectiveness and compliance.


Optimize available I&T capabilities to support the I&T strategy and road map, minimize the risk associated with nonperforming or noncompliant vendors, and ensure competitive pricing.

Management Practices

APO10.01 Identify and evaluate vendor relationships and contracts.

Continuously search for and identify vendors and categorize them into type, significance and criticality. Establish criteria to evaluate vendors and contracts. Review the overall portfolio of existing and alternative vendors and contracts.

APO10.02 Select vendors.

Select suppliers according to a fair and formal practice to ensure a viable best fit based on specified requirements. Requirements should be optimized with input from potential suppliers.

APO10.03 Manage vendor relationships and contracts.

Formalize and manage the supplier relationship for each supplier. Manage, maintain and monitor contracts and service delivery. Ensure that new or changed contracts conform to enterprise standards and legal and regulatory requirements. Deal with contractual disputes.

APO10.04 Manage vendor risk.

Identify and manage risk relating to vendors’ ability to continually provide secure, efficient and effective service delivery. This also includes the subcontractors or upstream vendors that are relevant in the service delivery of the direct vendor.

APO10.05 Monitor vendor performance and compliance.

Periodically review overall vendor performance, compliance to contract requirements and value for money. Address identified issues.


Contract management ITCM

The overall management and control of the operation of formal contracts for supply of products and services.


{{ reviewsOverall }} / 5 Users (0 votes)
What people say... Login to rate
Order by:

Be the first to leave a review.

/ 5
{{{review.rating_comment | nl2br}}}

Show more
{{ pageNumber+1 }}