What is the Committed to Security (CTS) Program?
Developed specifically for the creditors' rights and the financial services industry, the Committed to Security (CTS) program provides a standardized, practical approach to third-party cybersecurity due diligence.
CTS enables vendors to complete one annual assessment and securely share the resulting report with an unlimited number of participating law firms and clients, eliminating repetitive questionnaires and reducing administrative burden for everyone involved.
Powered by Sanctum, the platform centralizes:
- Security assessments
- Evidence collection
- Executive reporting
- Remediation tracking
- Secure report sharing
Why Vendors Should Choose CTS:
- Approximately 75% less expensive than a SOC 2 Type II assessment
- Assessment fees range from $2,500–$5,500
- Complete one assessment and share it unlimited times
-
Demonstrate a credible commitment to protecting consumer data while satisfying clients' security requirements
How Law Firms Benefit from CTS:
- CTS addresses 80% or more of vendor security requirements clients expect - plus you can easily incorporate custom questions to address your firm’s specific compliance requirements.
- NCBA Law firms can request vendor reports at no cost
- Clear, audit ready reports that can be shared with clients
- The CTS assessment qualifies as an RMAi pre-certification audit
How do I get started?
- Schedule a one-on-one call to learn more about the CTS program and participation requirements. Email membership@creditorsbar.org to get started.
- Law Firm Members can arrange introductory discussions with vendors, and our team can support those conversations as needed.
- Law Firm Members can log in to Sanctum and invite vendors to participate in the program. https://cts.sanctumhub.io/
login?organization=ncba - Vendors can access Sanctum to begin the CTS assessment process. Just go to https://cts.sanctumhub.io/
register and use access code ZQVIVHAF to get started.
Additional Resources and Information
-
Contact membership@creditorsbar.org
with any questions























