criticality-assessment

Automate third-party vendor risk tiering with JSON schema output.

Updated May 9, 2026
One-click install
npx skills add https://github.com/anotb/second-line-financial-services --skill criticality-assessment
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: criticality-assessment
Source: https://github.com/anotb/second-line-financial-services/tree/main/plugins/capability-plugins/third-party-operational-resilience/skills/criticality-assessment
Command: npx skills add https://github.com/anotb/second-line-financial-services --skill criticality-assessment

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) and assets (resource) components.

What problem does it solve?

This Skill automates the assessment of third-party arrangement criticality, defining the tier that influences vendor diligence, contract gap review, exit planning, concentration risk review, and DORA register entries.

Core Features & Use Cases

  • Third-Party Arrangement Assessment: Determines the criticality tier of third-party arrangements.
  • Business Impact Analysis: Evaluates impact on important business services, recovery objectives, and regulatory profiles.
  • Use Case: Use this Skill to set the tier for a vendor arrangement that supports critical business processes, influencing subsequent vendor diligence activities.

Quick Start

Run the criticality-assessment skill with the following parameters: criticality-assessment vendor_name="vendor_name" business_process="business_process" ibs="important_business_service".

Frequently Asked Questions about criticality-assessment

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate third-party risk assessment and criticality tiering for vendors?

You can automate third-party risk assessment by running the skill with vendor name, business process, and important business service parameters to determine the criticality tier. It processes these inputs using Python and outputs structured JSON data for vendor diligence workflows.

What is third-party arrangement criticality tiering in financial institutions?

Third-party arrangement criticality tiering is the process of evaluating vendor impact on important business services and recovery objectives to assign a risk tier. This tier subsequently influences vendor diligence, contract gap reviews, concentration risk reviews, and DORA register entries.

Does this risk assessment tool support DORA register entries and business impact analysis?

Yes, the risk assessment tool evaluates business impact, recovery objectives, and regulatory compliance to produce structured output. This output directly informs DORA register entries and defines the criticality tier for vendor arrangements.

How do I run a business impact analysis for a vendor supporting critical business processes?

To run a business impact analysis, execute the skill by passing the vendor name, supported business process, and important business service as parameters. The skill evaluates the impact and regulatory profile to output the vendor's criticality tier in JSON schema format.

Can I use this skill for vendor management workflows without external dependencies?

Yes, you can use this skill for vendor management workflows without external dependencies, as it operates independently. It uses internal Python scripts to process vendor data and outputs structured JSON for risk management and diligence activities.