After receiving the service request, ISG will evaluate vendor details provided in the service request raised by the PM. If assessment is needed, ISG will share the appropriate template based on the supplier category, with the PM for capturing additional details. If the supplier has access to personal data, then ISG will also share the Privacy Impact Assessment (PIA) and Record of Processing Activity (RoPA) templates with the PM. PM needs to update project specific information and connect with the supplier to get supplier related information, required policy documents and other artifacts for validation.