This article is for risk managers building out their vendor directory in Titan AI. It covers how a vendor gets in, how you scope it with the details that matter to your organization, and where you go to see its full risk picture.
Stage 1: Bring the vendor in
Every vendor starts in your Vendor directory. You can add one at a time by searching for the company, import many at once from a CSV file, or let vendors and teammates submit themselves through your organization's self-service vendor intake form. See Add vendors directly in Titan AI and Set up vendor intake in Titan AI.
This stage ends with the vendor appearing in your Vendor directory with a New status. If you added it with monitoring turned on, it also uses one of your available vendor slots.
Stage 2: Scope the vendor with key metadata
Once a vendor is in the Vendor directory, you record the details that describe your relationship with them: risk level, business impact, access type, data types shared, contract details, and assigned contacts. Some of these are built-in system fields; your organization can also define its own custom fields for information specific to your process. See Vendor directory in Titan AI and Vendor details fields in Titan AI.
You can also assign risk levels automatically for vendors who come through vendor intake, based on rules you define. See Set risk level rules for vendor intake in Titan AI.
This stage ends with the vendor record carrying enough context (risk, access, data sensitivity) to inform prioritization and analysis elsewhere in Titan AI.
Stage 3: See the vendor's full risk picture
Once you scope a vendor, its profile page brings together its identity, security score, findings, security events, and detected product footprint into a single view. See View a company's profile in Titan AI.
This stage ends when you have enough visibility into the vendor's risk and footprint to decide how to assess them.
What Titan AI does automatically
Titan AI connects each vendor record to SecurityScorecard's repository of legal entities, so risk intelligence and scorecards surface automatically when you add a vendor. As you take action on a vendor, its status moves automatically between New, Initial assessment, and Onboarded. When you import vendors from a CSV file, Titan AI validates every row and separates what's ready to import from what has errors, so you can fix and re-upload just the failures.
When this journey is complete
This journey is complete when a vendor's directory record and profile are fully populated with the metadata your organization tracks, and you're ready to send them an assessment.
What happens next
With the vendor scoped, the next step is assessing them. See How vendor assessment works in Titan AI.