Supplier Security and Privacy Assurance (SSPA)

Strong privacy and security practices are the critical keys for building trust between Microsoft and it’s supplier. SSPA is applicable to all suppliers who are registered with Microsoft and handles it’s personal or confidential data on behalf of the Microsoft.

Supplier Security and Privacy Assurance (SSPA) is Microsoft’s corporate program to deliver Microsoft’s data processing instructions to our suppliers in the form of the Microsoft Supplier Data Protection Requirements (DPR). SSPA drives compliance to these requirements through an annual compliance cycle; for new suppliers, work cannot start until this is complete. If a supplier is processing Personal Data and/or Microsoft Confidential Data, they will partner with their business sponsor to enroll in the SSPA program.

As a Microsoft Preferred Assessor, BDO can help existing and potential Microsoft suppliers to meet SSPA compliance requirements as they seek to initiate or renew contracts. We have setup a team of experts which are trained in conducting the SSPA assessments. In collaboration with the Microsoft’s SSPA team, our experts will to advise the clients on every stage to achieve the compliance status.

Leveraging BDO’s deep experience in providing cybersecurity and data privacy services, we can assist you to understand the SSPA program, educate and train on the security and privacy gaps, and support ongoing data protection efforts along with SSPA.

BDO’s Proven Process for SSPA Independent Assessments:

Read the below article on SSPA services provided by BDO UAE :

BDO UAE - Microsoft SSPA Services