An organization is assessing a legal services vendor that handles confidential litigation documents. Which due diligence domain is MOST uniquely important for this vendor type compared to a standard IT vendor?
-
A
Network intrusion detection capabilities
-
B
Attorney-client privilege, confidentiality obligations, and bar compliance
-
C
Software development lifecycle (SDLC) security practices
-
D
Cloud infrastructure redundancy metrics