UVA Health Risk Assessment Process: Guide for Purchasers of IT-Enabled Resources

The status page is available through this link: Status page with attachments for systems processed in the past three years

Interpreting the data

Status Column

  • Open means it is under review now. 
  • Complete means the RAR has been produced. 
  • In bound means that we are waiting on something from either the vendor or the UVA Point of Contact. 
  • On Hold means that we are waiting on a SOC2 Report or update questionnaire or we are seeking additional information / clarification. 
  • Risk Accepted means that management has accepted the risk rating. 
  • Peer Review means that it is in final review within HIT RA team. 
  • Waiting on UVA PoC means that we are waiting on the UVA Point of Contact to complete their questionnaire.

If the Vendor Completion column is blank, we have not received anything from the vendor. 

If the UVA Point of Contact Completion column is blank, we have not received anything from the Point of Contact (their questionnaire). 

Both the vendor questionnaire and the Point of Contact (PoC) questionnaire must be completed for us to proceed with a risk assessment

If you have any other questions about the report, contact UVAHealth-IT-RA@uvahealth.org

 

The status page is available through this link: Status page with attachments for systems processed in the past three years

Filtering is a convenient way to focus your view on the data most important to you.  Create a filter to show or hide data | Smartsheet Learning Center