Finally, there should be a strong focus on performance measurements through clearly defined service level agreements related to areas such as network scanning, security policy management, antivirus management, and backup and recovery.Conduct continual vendor risk management.