Skip to main content
Product Level Answers (PLA) for Suppliers

This article explains what Product Level Answers are and how you can use them to answer controls at the product/service level.

Ish Ladak avatar
Written by Ish Ladak
Updated this week

Overview

Product Level Answers (PLA) allow suppliers to provide security information for specific products or services within their Risk Ledger profile. Instead of answering all assessment questions at solely the organisational level, you can now tailor control responses for specific products or services, ensuring clients receive the most accurate and relevant security details.

Key Benefits

  • Maintain organisational-level answers as the baseline while customising product-specific security controls.

  • Provide clients with accurate, product-level security data for better risk assessment.

  • Assess security controls of all products from one profile removing the need to set up multiple profiles for different products.


How to set up a product

To use PLA, you first need to define the products or services within your organisation’s profile:

  1. Log in to Risk Ledger and navigate to the Settings section.

  2. Select Products and Services to add new products or edit existing ones.

  3. Click Add Product or Service, then enter the product name and description.

  4. There is also an option to choose which Clients use a specific product or service.

  5. Click Add - this will now be available for product-level answers.

  6. There is also an option to add a product or service from within an Assessment. Just navigate to the control you'd like to add a PLA to and click Select a product > Add another product button to open the editor window

Adding a product/service via Settings:

Adding a product/service from within the Assessment:

Product/Service editor window:


How to add Product Level Answers within an Assessment

  1. Navigate to the Assessments section.

  2. Select a question where product-specific differences apply.

  3. Click Select a product and select the relevant product(s).

  4. Provide the security control details specific to that product.

  5. Save your answer—clients viewing your profile will now see product-level responses alongside your organisational-level answers.


Manage products in Settings

  1. Navigate to Settings > Products and Services

  2. Select a product to edit its details or update associated answers.

  3. If a product is no longer offered, you can archive it to prevent future edits while retaining historical data.


Where to see Client notifications about Product Level Answers

Clients connected to your profile will be notified when:

  • You add or update a Product Level Answer.

  • A product-specific security control changes.

You can review client notifications in My Notifications within your Settings.


Frequently Asked Questions

  1. Should I answer YES or NO at the organisational level control? There is no right or wrong answer here and we recommend to answer to the best of your knowledge. Once you've answered Yes or No, provide any context required in the notes for that org-level control, and any product level answers you provide will show the actual difference.

  2. Can I use Quick Answer alongside PLA? Currently, you can only use Quick Answer for organisational level answers, not product level answers. But you can use Quick Answer for the main assessment questions and then add a PLA within specific controls manually.

  3. My organisation has multiple profiles for different products, can I merge them? Yes! You'll first need to decide which profile you'd like to keep as the main one, and manually add products into your profile and the assessment. Once you've done this, let your clients know and send any connection requests, if required. Then reach out to support@riskledger.com for a profile merge.

  4. How are compliance scores affected by PLAs? Compliance scores are affected at the product level. So if you have a control with multiple response levels, these will individually affect your compliance score rather than altogether.


💡 If there is anything we haven't covered, please feel free to contact us at support@riskledger.com or alternatively, select the Chat icon in the bottom right corner.

Did this answer your question?