SlideShare a Scribd company logo
1 of 6
Page 1 of 6
ENTERPRISE BANK, INC. Annex A
OUTSOURCING DUE DILIGENCE – Internal
Instructions:
 Completely fill up this form.
 Do not leave any field blank.
 Put a check mark () on the appropriate box(es).
 Write N/A if the information being asked is not applicable to the subject.
 Use additional sheet if necessary, to sufficiently provide the information being asked.
SERVICE TO BE OUTSOURCED
1. Type of service to be outsourced:
Accounting/Finance Compliance Consulting
Legal Services Administrative Functions
Information Technology Operations/Support Functions
HR Functions Other:___________________
Provide brief description of service to be outsourced.
________________________________________________________________________________
________________________________________________________________________________
________________________________________________________________________________
2. Is this service essential to the operation of the Bank? Yes No
Provide brief explanation.
________________________________________________________________________________
________________________________________________________________________________
________________________________________________________________________________
APPROPRIATENESS OF OUTSOURCING
1. Potential impact on the Bank if Service Provider fails to perform:
High Medium Low N/A
Financial Impact
Reputational Impact
Operational Impact
Customer Service Impact
Potential Losses to Customers
Exposure of Bank to Lawsuits
Exposure of Bank Regulatory Sanctions
Comply with Regulatory Requirements
Costs to Firm
Degree of Difficulty Replacing Service Provider
v
v
v
v
v
v
v
v
v
v
v
v
v
v
v
v
v
v
v
v
v
v
Page 2 of 6
ENTERPRISE BANK, INC. Annex A
OUTSOURCING DUE DILIGENCE – Internal
Comments:
________________________________________________________________________________
________________________________________________________________________________
________________________________________________________________________________
2. Is there an affiliation or other relationship between the Bank and the Service Provider? Yes No
If yes, please describe the relationship and any potential conflicts of interest:
________________________________________________________________________________
________________________________________________________________________________
________________________________________________________________________________
3. Is the Service Provider a regulated entity subject to independent supervision? Yes No
If yes, name of regulator:
________________________________________________________________________________
SERVICE PROVIDER INFORMATION
1. General Information
Business Name:
Business Address:
2. Contact Person(s):
Name Designation Contact No(s). Email/Website
3. Is the Service Provider owned/controlled by a Parent Company? Yes No
If yes, name of parent company:
________________________________________________________________________________
Page 3 of 6
ENTERPRISE BANK, INC. Annex A
OUTSOURCING DUE DILIGENCE – Internal
4. Personnel:
Approximate # of employees: _______
Does the Service Provider hire independent contractors? Yes No
If yes, who is/are the independent contractor(s) and what functions do they perform?
________________________________________________________________________________
________________________________________________________________________________
5. Background Information:
How many years has the Service Provider been in business? _______________________________
How many years has the Service Provider provided the outsourced function? ___________________
6. Is the Service Provider known to the Bank or employees of the Bank? Yes No
If yes, please name the individual(s) and describe any prior experience each had with the Service
Provider:
________________________________________________________________________________
________________________________________________________________________________
________________________________________________________________________________
DUE DILIGENCE
1. What methods did the Bank use to verify the Service Provider’s information? (Choose all that apply.)
SEC Public Disclosure Internet Research Entity Formation Documents (Permits, etc.)
Credit/Background Check Independent Research Media/News Reports
Personal Referral Business Plan Policies and Procedures Manual(s)
Personal Interviews Marketing Materials Financials
Onsite Inspection Sales Materials Other: __________________________
Comments:
________________________________________________________________________________
________________________________________________________________________________
________________________________________________________________________________
2. Does the firm maintain evidence of the above methods used to verify the Service Provider’s
information (i.e. copies of documents reviewed; notes from personal interviews and onsite
inspections; printouts from public disclosure sites etc.)? Yes No
Page 4 of 6
ENTERPRISE BANK, INC. Annex A
OUTSOURCING DUE DILIGENCE – Internal
If yes, please identify where these evidence/documents are maintained:
________________________________________________________________________________
________________________________________________________________________________
________________________________________________________________________________
3. Please list any other Firms/Companies that use this service (if contacted personally, identify the name
of the contact and the result of the contact):
________________________________________________________________________________
________________________________________________________________________________
________________________________________________________________________________
4. Please describe the background and experience of individuals who will be performing the services:
________________________________________________________________________________
________________________________________________________________________________
________________________________________________________________________________
5. Based on your review of the information, has the Service Provider and/or its principals been subject
to any regulatory, criminal or civil disciplinary issues? Yes No
If yes, please describe:
________________________________________________________________________________
________________________________________________________________________________
________________________________________________________________________________
6. Based on your review of the information, please describe the Service Provider’s ability and capacity
to perform the outsourced activities effectively, reliably, and to a high standard (include in your
description relevant technical, financial, human resources, and/or other assets of the Service
Provider):
________________________________________________________________________________
________________________________________________________________________________
________________________________________________________________________________
7. Does the Service Provider have a business continuity plan? Yes No
Page 5 of 6
ENTERPRISE BANK, INC. Annex A
OUTSOURCING DUE DILIGENCE – Internal
If yes, review a copy of the plan and comment on its adequacy:
________________________________________________________________________________
________________________________________________________________________________
8. Is privacy and protection of non-public information a factor in outsourcing? Yes No
If yes, comment on the adequacy of the Service Provider’s for safeguarding non-public information:
________________________________________________________________________________
________________________________________________________________________________
________________________________________________________________________________
9. After reviewing the information, are there any questionable issues or potential conflicts of interest?
Yes No
If yes, please describe:
________________________________________________________________________________
________________________________________________________________________________
________________________________________________________________________________
CONTRACTS AND AGREEMENTS
1. Has (or will) the Bank entered into a written agreement with the Service Provider? Yes No
If yes, please identify the relevant provisions and disclosures in the contract (choose all that apply).
Provides for Bank and regulator access to records Bank and client confidentiality
Limitations on Service Provider’s ability to sub-contract Payment arrangements
Defines responsibilities of all parties subject to contract Provide quality services measures
Defines how responsibilities will be monitored Guarantees and indemnities
Liability for unsatisfactory performance or other breach Information security provisions
Requirement to maintain a disaster recovery plan Disclosure of breaches in security
Time Commitment
Other relevant provision(s): ____________________________________________________________
2. Was the written agreement reviewed by the Firm’s legal counsel? Yes No N/A
If yes, name of legal counsel: _______________________ Date of Review: ___________________
3. Was the written agreement reviewed by the Department Head recommending/requesting the
outsourcing of the functions? Yes No
Page 6 of 6
ENTERPRISE BANK, INC. Annex A
OUTSOURCING DUE DILIGENCE – Internal
If yes, name of Department Head: _______________________ Date of Review: ________________
OVERSIGHT AND PERIODIC REVIEW
1. Who is responsible for the periodic oversight and review of the outsourced service?
________________________________________________________________________________
2. Please identify the individual(s) who will monitor the outsourced service?
________________________________________________________________________________
________________________________________________________________________________
3. Please identify the tools that will be used to monitor the outsourced service (Choose all that apply):
Service delivery reports prepared internally Service delivery reports supplied by the Service Provider
Publicly available resources Performance levels established in written agreement
Internal auditor Onsite inspection
External auditor Attestations by Service Provider
Other: ______________________________________________________________________________
4. Frequency of monitoring: Daily Weekly Monthly Quarterly Annually
Other ______________________________________________
5. If deficiencies are found, are there procedures in place to respond to such deficiencies (i.e.
communicate with the Service Provider; terminate the contract)? Yes No
DOCUMENTATION REVIEW AND APPROVAL
1. Individual(s) responsible for completing this due diligence review:
Name Signature Date Completed
1.1. ___________________________________ _________________ _______________
1.2. ___________________________________ _________________ _______________
1.3. ___________________________________ _________________ _______________
1.4. ___________________________________ _________________ _______________
1.5. ___________________________________ _________________ _______________
Board of Directors Approval:
Board Resolution No.______________________ Date Issued: ________________
v

More Related Content

Similar to Annex_A_-_Outsourcing_Due_Diligence.docx

Avenue international inc credit app
Avenue international inc credit app Avenue international inc credit app
Avenue international inc credit app
pinkave
 
EmploymentApplicationFillable
EmploymentApplicationFillableEmploymentApplicationFillable
EmploymentApplicationFillable
Jorge Luis Torres
 
Application for employment 2013
Application for employment 2013Application for employment 2013
Application for employment 2013
tlongest
 
EmploymentApplicationFillable
EmploymentApplicationFillableEmploymentApplicationFillable
EmploymentApplicationFillable
Lindsey Forrester
 
Personal data job application
Personal data job applicationPersonal data job application
Personal data job application
Confidential
 
Test your idea questionnaire
Test your idea questionnaireTest your idea questionnaire
Test your idea questionnaire
startupJamaica
 
Hrd Form 24 Personal Data Job Application
Hrd Form 24 Personal Data Job ApplicationHrd Form 24 Personal Data Job Application
Hrd Form 24 Personal Data Job Application
Confidential
 

Similar to Annex_A_-_Outsourcing_Due_Diligence.docx (20)

BH2
BH2BH2
BH2
 
AT1
AT1AT1
AT1
 
AT@
AT@AT@
AT@
 
BH3
BH3BH3
BH3
 
AT2
AT2AT2
AT2
 
Avenue international inc credit app
Avenue international inc credit app Avenue international inc credit app
Avenue international inc credit app
 
EmploymentApplicationFillable
EmploymentApplicationFillableEmploymentApplicationFillable
EmploymentApplicationFillable
 
Lexington Minority and Women Business Training Program Application
Lexington Minority and Women Business Training Program ApplicationLexington Minority and Women Business Training Program Application
Lexington Minority and Women Business Training Program Application
 
DonorBox Nonprofit business plan template
DonorBox Nonprofit business plan templateDonorBox Nonprofit business plan template
DonorBox Nonprofit business plan template
 
Human Resources Need Assessment Tools
Human Resources Need Assessment ToolsHuman Resources Need Assessment Tools
Human Resources Need Assessment Tools
 
Broker application
Broker applicationBroker application
Broker application
 
Bus E M plan
Bus E M planBus E M plan
Bus E M plan
 
Application for employment 2013
Application for employment 2013Application for employment 2013
Application for employment 2013
 
EmploymentApplicationFillable
EmploymentApplicationFillableEmploymentApplicationFillable
EmploymentApplicationFillable
 
Personal data job application
Personal data job applicationPersonal data job application
Personal data job application
 
Test your idea questionnaire
Test your idea questionnaireTest your idea questionnaire
Test your idea questionnaire
 
Hrd Form 24 Personal Data Job Application
Hrd Form 24 Personal Data Job ApplicationHrd Form 24 Personal Data Job Application
Hrd Form 24 Personal Data Job Application
 
Business emergency plan
Business emergency planBusiness emergency plan
Business emergency plan
 
Ready.gov Sample Disaster Planning Template
Ready.gov Sample Disaster Planning TemplateReady.gov Sample Disaster Planning Template
Ready.gov Sample Disaster Planning Template
 
Appendix A
Appendix   AAppendix   A
Appendix A
 

More from richardkimlopez

More from richardkimlopez (17)

Enforcement_of_Warrant.doc
Enforcement_of_Warrant.docEnforcement_of_Warrant.doc
Enforcement_of_Warrant.doc
 
Enforcement_of_Warrant_2.doc
Enforcement_of_Warrant_2.docEnforcement_of_Warrant_2.doc
Enforcement_of_Warrant_2.doc
 
For_HRMD_Personnel_Security.doc
For_HRMD_Personnel_Security.docFor_HRMD_Personnel_Security.doc
For_HRMD_Personnel_Security.doc
 
Incident_Report_fire_alarm_-_Mati.doc
Incident_Report_fire_alarm_-_Mati.docIncident_Report_fire_alarm_-_Mati.doc
Incident_Report_fire_alarm_-_Mati.doc
 
On-boarding_Program.Sheila_Mae_Serra.doc
On-boarding_Program.Sheila_Mae_Serra.docOn-boarding_Program.Sheila_Mae_Serra.doc
On-boarding_Program.Sheila_Mae_Serra.doc
 
Progress_Report_Alma_Jumalon.doc
Progress_Report_Alma_Jumalon.docProgress_Report_Alma_Jumalon.doc
Progress_Report_Alma_Jumalon.doc
 
Investigation_FSTA_Damilag_July_2012.doc
Investigation_FSTA_Damilag_July_2012.docInvestigation_FSTA_Damilag_July_2012.doc
Investigation_FSTA_Damilag_July_2012.doc
 
Enterprise_Bank_Security_Manual_2.doc
Enterprise_Bank_Security_Manual_2.docEnterprise_Bank_Security_Manual_2.doc
Enterprise_Bank_Security_Manual_2.doc
 
Inventory_of_2017_Reports(1).docx
Inventory_of_2017_Reports(1).docxInventory_of_2017_Reports(1).docx
Inventory_of_2017_Reports(1).docx
 
Inventory_of_2017_Reports.docx
Inventory_of_2017_Reports.docxInventory_of_2017_Reports.docx
Inventory_of_2017_Reports.docx
 
Inventory_of_2017_Reports_Security.docx
Inventory_of_2017_Reports_Security.docxInventory_of_2017_Reports_Security.docx
Inventory_of_2017_Reports_Security.docx
 
On-boarding_Program.Mark_Villares.doc
On-boarding_Program.Mark_Villares.docOn-boarding_Program.Mark_Villares.doc
On-boarding_Program.Mark_Villares.doc
 
Security_Awareness.doc
Security_Awareness.docSecurity_Awareness.doc
Security_Awareness.doc
 
Enforcement_of_Warrant.doc
Enforcement_of_Warrant.docEnforcement_of_Warrant.doc
Enforcement_of_Warrant.doc
 
Contingency_101.doc
Contingency_101.docContingency_101.doc
Contingency_101.doc
 
Contact.doc
Contact.docContact.doc
Contact.doc
 
Investigation_Alma_Jumalon.doc
Investigation_Alma_Jumalon.docInvestigation_Alma_Jumalon.doc
Investigation_Alma_Jumalon.doc
 

Recently uploaded

Beyond the Codes_Repositioning towards sustainable development
Beyond the Codes_Repositioning towards sustainable developmentBeyond the Codes_Repositioning towards sustainable development
Beyond the Codes_Repositioning towards sustainable development
Nimot Muili
 
internship thesis pakistan aeronautical complex kamra
internship thesis pakistan aeronautical complex kamrainternship thesis pakistan aeronautical complex kamra
internship thesis pakistan aeronautical complex kamra
AllTops
 
The Psychology Of Motivation - Richard Brown
The Psychology Of Motivation - Richard BrownThe Psychology Of Motivation - Richard Brown
The Psychology Of Motivation - Richard Brown
SandaliGurusinghe2
 
Abortion pills in Jeddah |• +966572737505 ] GET CYTOTEC
Abortion pills in Jeddah |• +966572737505 ] GET CYTOTECAbortion pills in Jeddah |• +966572737505 ] GET CYTOTEC
Abortion pills in Jeddah |• +966572737505 ] GET CYTOTEC
Abortion pills in Riyadh +966572737505 get cytotec
 

Recently uploaded (14)

Gautam Buddh Nagar Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Gautam Buddh Nagar Call Girls 🥰 8617370543 Service Offer VIP Hot ModelGautam Buddh Nagar Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Gautam Buddh Nagar Call Girls 🥰 8617370543 Service Offer VIP Hot Model
 
digital Human resource management presentation.pdf
digital Human resource management presentation.pdfdigital Human resource management presentation.pdf
digital Human resource management presentation.pdf
 
Beyond the Codes_Repositioning towards sustainable development
Beyond the Codes_Repositioning towards sustainable developmentBeyond the Codes_Repositioning towards sustainable development
Beyond the Codes_Repositioning towards sustainable development
 
Persuasive and Communication is the art of negotiation.
Persuasive and Communication is the art of negotiation.Persuasive and Communication is the art of negotiation.
Persuasive and Communication is the art of negotiation.
 
W.H.Bender Quote 62 - Always strive to be a Hospitality Service professional
W.H.Bender Quote 62 - Always strive to be a Hospitality Service professionalW.H.Bender Quote 62 - Always strive to be a Hospitality Service professional
W.H.Bender Quote 62 - Always strive to be a Hospitality Service professional
 
Siliguri Escorts Service Girl ^ 9332606886, WhatsApp Anytime Siliguri
Siliguri Escorts Service Girl ^ 9332606886, WhatsApp Anytime SiliguriSiliguri Escorts Service Girl ^ 9332606886, WhatsApp Anytime Siliguri
Siliguri Escorts Service Girl ^ 9332606886, WhatsApp Anytime Siliguri
 
Safety T fire missions army field Artillery
Safety T fire missions army field ArtillerySafety T fire missions army field Artillery
Safety T fire missions army field Artillery
 
internship thesis pakistan aeronautical complex kamra
internship thesis pakistan aeronautical complex kamrainternship thesis pakistan aeronautical complex kamra
internship thesis pakistan aeronautical complex kamra
 
Marketing Management 16th edition by Philip Kotler test bank.docx
Marketing Management 16th edition by Philip Kotler test bank.docxMarketing Management 16th edition by Philip Kotler test bank.docx
Marketing Management 16th edition by Philip Kotler test bank.docx
 
Information Technology Project Management, Revised 7th edition test bank.docx
Information Technology Project Management, Revised 7th edition test bank.docxInformation Technology Project Management, Revised 7th edition test bank.docx
Information Technology Project Management, Revised 7th edition test bank.docx
 
International Ocean Transportation p.pdf
International Ocean Transportation p.pdfInternational Ocean Transportation p.pdf
International Ocean Transportation p.pdf
 
How Software Developers Destroy Business Value.pptx
How Software Developers Destroy Business Value.pptxHow Software Developers Destroy Business Value.pptx
How Software Developers Destroy Business Value.pptx
 
The Psychology Of Motivation - Richard Brown
The Psychology Of Motivation - Richard BrownThe Psychology Of Motivation - Richard Brown
The Psychology Of Motivation - Richard Brown
 
Abortion pills in Jeddah |• +966572737505 ] GET CYTOTEC
Abortion pills in Jeddah |• +966572737505 ] GET CYTOTECAbortion pills in Jeddah |• +966572737505 ] GET CYTOTEC
Abortion pills in Jeddah |• +966572737505 ] GET CYTOTEC
 

Annex_A_-_Outsourcing_Due_Diligence.docx

  • 1. Page 1 of 6 ENTERPRISE BANK, INC. Annex A OUTSOURCING DUE DILIGENCE – Internal Instructions:  Completely fill up this form.  Do not leave any field blank.  Put a check mark () on the appropriate box(es).  Write N/A if the information being asked is not applicable to the subject.  Use additional sheet if necessary, to sufficiently provide the information being asked. SERVICE TO BE OUTSOURCED 1. Type of service to be outsourced: Accounting/Finance Compliance Consulting Legal Services Administrative Functions Information Technology Operations/Support Functions HR Functions Other:___________________ Provide brief description of service to be outsourced. ________________________________________________________________________________ ________________________________________________________________________________ ________________________________________________________________________________ 2. Is this service essential to the operation of the Bank? Yes No Provide brief explanation. ________________________________________________________________________________ ________________________________________________________________________________ ________________________________________________________________________________ APPROPRIATENESS OF OUTSOURCING 1. Potential impact on the Bank if Service Provider fails to perform: High Medium Low N/A Financial Impact Reputational Impact Operational Impact Customer Service Impact Potential Losses to Customers Exposure of Bank to Lawsuits Exposure of Bank Regulatory Sanctions Comply with Regulatory Requirements Costs to Firm Degree of Difficulty Replacing Service Provider v v v v v v v v v v v v v v v v v v v v v v
  • 2. Page 2 of 6 ENTERPRISE BANK, INC. Annex A OUTSOURCING DUE DILIGENCE – Internal Comments: ________________________________________________________________________________ ________________________________________________________________________________ ________________________________________________________________________________ 2. Is there an affiliation or other relationship between the Bank and the Service Provider? Yes No If yes, please describe the relationship and any potential conflicts of interest: ________________________________________________________________________________ ________________________________________________________________________________ ________________________________________________________________________________ 3. Is the Service Provider a regulated entity subject to independent supervision? Yes No If yes, name of regulator: ________________________________________________________________________________ SERVICE PROVIDER INFORMATION 1. General Information Business Name: Business Address: 2. Contact Person(s): Name Designation Contact No(s). Email/Website 3. Is the Service Provider owned/controlled by a Parent Company? Yes No If yes, name of parent company: ________________________________________________________________________________
  • 3. Page 3 of 6 ENTERPRISE BANK, INC. Annex A OUTSOURCING DUE DILIGENCE – Internal 4. Personnel: Approximate # of employees: _______ Does the Service Provider hire independent contractors? Yes No If yes, who is/are the independent contractor(s) and what functions do they perform? ________________________________________________________________________________ ________________________________________________________________________________ 5. Background Information: How many years has the Service Provider been in business? _______________________________ How many years has the Service Provider provided the outsourced function? ___________________ 6. Is the Service Provider known to the Bank or employees of the Bank? Yes No If yes, please name the individual(s) and describe any prior experience each had with the Service Provider: ________________________________________________________________________________ ________________________________________________________________________________ ________________________________________________________________________________ DUE DILIGENCE 1. What methods did the Bank use to verify the Service Provider’s information? (Choose all that apply.) SEC Public Disclosure Internet Research Entity Formation Documents (Permits, etc.) Credit/Background Check Independent Research Media/News Reports Personal Referral Business Plan Policies and Procedures Manual(s) Personal Interviews Marketing Materials Financials Onsite Inspection Sales Materials Other: __________________________ Comments: ________________________________________________________________________________ ________________________________________________________________________________ ________________________________________________________________________________ 2. Does the firm maintain evidence of the above methods used to verify the Service Provider’s information (i.e. copies of documents reviewed; notes from personal interviews and onsite inspections; printouts from public disclosure sites etc.)? Yes No
  • 4. Page 4 of 6 ENTERPRISE BANK, INC. Annex A OUTSOURCING DUE DILIGENCE – Internal If yes, please identify where these evidence/documents are maintained: ________________________________________________________________________________ ________________________________________________________________________________ ________________________________________________________________________________ 3. Please list any other Firms/Companies that use this service (if contacted personally, identify the name of the contact and the result of the contact): ________________________________________________________________________________ ________________________________________________________________________________ ________________________________________________________________________________ 4. Please describe the background and experience of individuals who will be performing the services: ________________________________________________________________________________ ________________________________________________________________________________ ________________________________________________________________________________ 5. Based on your review of the information, has the Service Provider and/or its principals been subject to any regulatory, criminal or civil disciplinary issues? Yes No If yes, please describe: ________________________________________________________________________________ ________________________________________________________________________________ ________________________________________________________________________________ 6. Based on your review of the information, please describe the Service Provider’s ability and capacity to perform the outsourced activities effectively, reliably, and to a high standard (include in your description relevant technical, financial, human resources, and/or other assets of the Service Provider): ________________________________________________________________________________ ________________________________________________________________________________ ________________________________________________________________________________ 7. Does the Service Provider have a business continuity plan? Yes No
  • 5. Page 5 of 6 ENTERPRISE BANK, INC. Annex A OUTSOURCING DUE DILIGENCE – Internal If yes, review a copy of the plan and comment on its adequacy: ________________________________________________________________________________ ________________________________________________________________________________ 8. Is privacy and protection of non-public information a factor in outsourcing? Yes No If yes, comment on the adequacy of the Service Provider’s for safeguarding non-public information: ________________________________________________________________________________ ________________________________________________________________________________ ________________________________________________________________________________ 9. After reviewing the information, are there any questionable issues or potential conflicts of interest? Yes No If yes, please describe: ________________________________________________________________________________ ________________________________________________________________________________ ________________________________________________________________________________ CONTRACTS AND AGREEMENTS 1. Has (or will) the Bank entered into a written agreement with the Service Provider? Yes No If yes, please identify the relevant provisions and disclosures in the contract (choose all that apply). Provides for Bank and regulator access to records Bank and client confidentiality Limitations on Service Provider’s ability to sub-contract Payment arrangements Defines responsibilities of all parties subject to contract Provide quality services measures Defines how responsibilities will be monitored Guarantees and indemnities Liability for unsatisfactory performance or other breach Information security provisions Requirement to maintain a disaster recovery plan Disclosure of breaches in security Time Commitment Other relevant provision(s): ____________________________________________________________ 2. Was the written agreement reviewed by the Firm’s legal counsel? Yes No N/A If yes, name of legal counsel: _______________________ Date of Review: ___________________ 3. Was the written agreement reviewed by the Department Head recommending/requesting the outsourcing of the functions? Yes No
  • 6. Page 6 of 6 ENTERPRISE BANK, INC. Annex A OUTSOURCING DUE DILIGENCE – Internal If yes, name of Department Head: _______________________ Date of Review: ________________ OVERSIGHT AND PERIODIC REVIEW 1. Who is responsible for the periodic oversight and review of the outsourced service? ________________________________________________________________________________ 2. Please identify the individual(s) who will monitor the outsourced service? ________________________________________________________________________________ ________________________________________________________________________________ 3. Please identify the tools that will be used to monitor the outsourced service (Choose all that apply): Service delivery reports prepared internally Service delivery reports supplied by the Service Provider Publicly available resources Performance levels established in written agreement Internal auditor Onsite inspection External auditor Attestations by Service Provider Other: ______________________________________________________________________________ 4. Frequency of monitoring: Daily Weekly Monthly Quarterly Annually Other ______________________________________________ 5. If deficiencies are found, are there procedures in place to respond to such deficiencies (i.e. communicate with the Service Provider; terminate the contract)? Yes No DOCUMENTATION REVIEW AND APPROVAL 1. Individual(s) responsible for completing this due diligence review: Name Signature Date Completed 1.1. ___________________________________ _________________ _______________ 1.2. ___________________________________ _________________ _______________ 1.3. ___________________________________ _________________ _______________ 1.4. ___________________________________ _________________ _______________ 1.5. ___________________________________ _________________ _______________ Board of Directors Approval: Board Resolution No.______________________ Date Issued: ________________ v