Information Security Group
|

RARTP

The Risk assessment process would be applicable to all assets owned and managed by TechM and its projects / functions.

All projets in TechMahindra including Application Development Management Services (ADMS). Managed Services (MS), Business Support Group (BSG) services will be covered as part of this process.

Risk assessment is done on the assets like

Tick Electronic Data Tick Software
Tick Hardware Tick Paper
Tick People Tick Services
Tick Infrastructure Tick Connectivity
Tick Building Tick Suppliers
Tick Others

How to Fill RARTP

  • The asset inventory in the RARTP sheet should be filled by the Project Managers along with document history and project details and should be shared with respective compliance SPOCS/managers
  • Based on the inputs, compliance team runs the asset inventory by clicking on 'Run Inventory' button in 'Asset Inventory' sheet.
  • Once the inventory is run, the RARTP sheet populates respective risks and controls in 'Security Risk Assessment and RTP' sheet.
  • Compliance team updates the implementation status by taking corresponding Project Manager on the call.
  • Based on the inputs provided in control implementation status, 'Risk Score', 'Control Implementation summary' and 'Total Summary' will be auto - populated in respective sheets.
  • Compliance team will generate final RARTP report for the project by clicking on 'Generate Report' button in 'Security Risk Assessment and RTP' sheet which will be shared with Project Manager in the PDF format.
  • The RARTP is required for every project in the account. If the account has multiple projects with the same assets, one RARTP should suffice.
  • The RARTP should be completed even in cases where all associates work from onsite (limited information like people and services should be updated in the RARTP)
  • For any other exception scenarios it should be discussed with the respective compliance managers
  • This document should be completed biannually by all PMs and should be shared with the complaince managers (Click the attached link to find the compliance manager for all clusters)
Guidelines to Fill RARTP How to fill RARTP
Download RATRP Template RARTP Template
Copyright © Tech Mahindra Limited. All Rights Reserved