CompliSun

Vendor Checklist – Dwello

Vendor Name
Question 1: Would failure of this vendor significantly disrupt Dwello's operations, regulatory compliance, or customer experience?
Examples: KYC provider, Core payment processor, AI underwriting/decisioning, Vendor with access to customer financial data. If YES, Tier 1. Tier 1- Critical – and quarterly reviews required. If NO, Continue.
Question 2: Does this vendor support core infrastructure or sensitive but non-critical functions where disruption would impact operations but not immediately threaten compliance or customer trust?
Examples: Cloud service provider (AWS, Azure), Data analytics platform, Workflow automation tools. If YES, Tier 2. Tier 2- Moderate, semi-annual reviews required. If NO, Continue.
Question 3: Does the vendor have no access to sensitive customer data or regulated systems and would have only limited operational impact if it failed?
Examples: Graphic design services, Email marketing consultant, Administrative support platforms. If YES, Tier 3. If NO, DEFAULT TO TIER 2 to avoid under-classification.

Scroll to Top