Contract Review Checklist
Intake and Classification
Add the agreement to the firm's vendor / contract register with counterparty name, effective date, term, renewal type (auto-renew vs. evergreen vs. fixed), and contract owner. The CCO uses this register at annual vendor due diligence and ADV update.
Classification drives the rest of the review. Critical vendor contracts (custodian, portfolio accounting, CRM, archiving) and any agreement that touches client NPI trigger enhanced diligence under Reg S-P and the firm's vendor management policy.
Verify the legal entity name matches the firm's ADV Part 1 filing — common error is signing as the dba rather than the registered RIA. For the counterparty, confirm the signer has authority (officer, member, or authorized representative) and pull a recent good-standing certificate for entity counterparties.
Legal and Regulatory Review
For client IAAs and solicitor agreements: confirm fee schedule, services, and conflicts described in the contract match Form ADV Part 2A Items 4, 5, and 10. Mismatch is a common SEC exam finding and forces an ADV amendment.
Solicitor and subadvisor agreements require the counterparty to be appropriately registered (Series 65/66 IAR or RIA registration in client states). Insurance-linked agreements require state producer licensing. Pull CRD / IARD or NIPR before signing.
Any vendor with NPI access needs a written information security agreement, breach notification SLA (typically 72 hours), and a return / destruction clause at termination. SEC's amended Reg S-P (effective 2025-2026) requires written incident-response procedures with vendors.
For vendors with NPI access, request the most recent SOC 2 Type II report (not Type I, not older than 12 months) and review the bridge letter covering any gap. File alongside the executed contract for annual vendor due diligence.
Financial Terms Review
For client IAAs, confirm AUM tiers, householding rules, and billing frequency match the fee schedule disclosed in ADV Part 2A Item 5. For vendor agreements, validate per-account or per-user pricing against the budgeted run-rate before sign-off.
Watch for travel, implementation, data feed, and integration fees buried in exhibits. Confirm whether the firm or the client absorbs custodian transaction costs, ACATS fees, and wire fees — ambiguity here drives client-billing disputes.
Net-30 vs. advance, ACH vs. invoice, and the auto-renewal notice window. Multi-year evergreen agreements with 90-day notice windows are the most common reason firms get locked into vendors past usefulness — flag and add a calendar reminder 120 days before renewal.
Performance and Service Levels
Match the statement of work to what operations actually expects — data feeds, reconciliation cadence, reporting deliverables, support hours. Vague scope ("portfolio reporting services") leads to scope-creep arguments at renewal.
For trading, custody connectivity, and archiving vendors, confirm uptime SLA (99.9% minimum for critical), incident response time, and remedies. Email archiving outages are exam-reportable — the SLA needs teeth, not just credits.
Identify dependencies: data conversion from incumbent vendor, custodian feed setup, single sign-on integration. Most portfolio management or CRM migrations slip — bake in milestone-based payment rather than full upfront.
Termination-for-cause should be available without penalty for SLA breach, regulatory issue, or change of control. Termination-for-convenience usually carries a fee — negotiate down for any agreement over 12 months.
Risk and Liability Review
Confirm the counterparty represents authority to contract, regulatory good standing, no pending enforcement actions, and IP ownership of any deliverables. For data vendors, look for accuracy / fitness representations — most vendors disclaim them, which is a flag for downstream client reporting risk.
Mutual indemnification is the floor. For vendors with NPI access, push for a data-breach carve-out from the liability cap (typical caps of 12 months' fees do not cover a real breach). Confirm cyber and E&O insurance coverage amounts in the insurance exhibit.
Confirm governing law and venue are workable — out-of-state arbitration in a vendor-friendly jurisdiction is common boilerplate. For client IAAs, FINRA / state arbitration provisions must be disclosed in ADV Part 2A Item 9 if applicable.
Summarize unresolved issues for CCO review. High-risk findings (uncapped liability, no breach notification, no SOC 2, missing licensure) trigger escalation rather than counter-signature.
Approval and Execution
Document the specific concerns, proposed redlines, and counterparty position. CCO and managing principal sign off jointly before re-engaging counsel or counterparty.
Send through DocuSign or the firm's e-signature platform. Confirm the signer is the authorized officer per the firm's authority matrix — bind decisions over the matrix threshold require board or managing-member resolution.
Save the fully-executed PDF, all exhibits, SOC 2, and COI in the contract folder. Update the vendor register with the renewal-notice calendar reminder. Books and records under Rule 204-2 require retention for 5 years (first 2 in an easily accessible place).
Use this template in Manifestly
- Business Continuity Checklist
- KYC Checklist
- Employee Termination Checklist
- Accounts Receivable Checklist
- Employee Performance Review Checklist
- Quarterly Operations and Compliance QA Review
- Quarterly Financial Reporting Checklist
- RIA Acquisition Due Diligence Checklist
- Credit Risk Checklist
- Daily Operations Checklist
- Client Satisfaction Survey Checklist
- Operational Risk Checklist
- Know Your Customer (KYC) Checklist
- Anti-Money Laundering (AML) Checklist
- Litigation Preparation Checklist
- New Hire Onboarding Checklist
- Client Onboarding Checklist
- Contract Review Checklist
- AML / BSA Compliance Checklist
- Regulatory Compliance Checklist
- Monthly Financial Reporting Checklist
- Regulatory Reporting Checklist
- Practice Process Improvement Review
- Internal Audit Checklist
- Lead Generation Checklist
- Annual Financial Reporting Checklist
- Annual Compliance Program Review
- Month-End Close Checklist
- Disaster Recovery Checklist
- Annual Risk Assessment Checklist
- Advisory Firm Operational Efficiency Review
- Data Security Review Checklist
- Client Risk Profile Checklist
- Quarterly Performance Measurement Checklist
- Financial Services Project Initiation Checklist
- Client Retention Checklist
- Vendor Management Checklist
- Sales Pipeline Checklist
- Campaign Performance Checklist
- Data Protection Checklist
- Investment Due Diligence Checklist
- Asset Allocation Checklist
- Portfolio Management Checklist
- Project Execution Checklist
- Project Planning Checklist
- Project Monitoring Checklist
- Financial Statement Review Checklist
- Cybersecurity Risk Assessment Checklist
- Project Closure Checklist
- Financial Services IT Security Audit Checklist
- Advisor and Staff Onboarding Checklist
- Annual Budget Planning Checklist
- Business Continuity Plan Checklist
- Annual Risk Management Review Checklist
- Internal Controls Checklist
- Client Onboarding Checklist
- Client Communication Checklist
- Annual Client Review Checklist
- Market Risk Checklist
- Marketing Strategy Checklist
- Risk Management Checklist
- Regulatory Compliance Checklist
- Quarterly Internal Control Review Checklist
- Sales Tax Reporting Checklist
- Legal Entity Management Checklist
- Employee File Audit Checklist
- Anti-Money Laundering Compliance Checklist
- SOX Compliance Checklist
- GDPR Compliance Review Checklist
- IT Security Audit Checklist
- HR Compliance Checklist
- Payroll Processing Checklist
- Building Code Compliance Checklist
- Employee Records Management Checklist
- Legal Document Storage Checklist
- Security Audit Checklist
- Property Risk Assessment Checklist
- Property Safety Inspection Checklist
- Cybersecurity Protocol Checklist
- Fair Housing Compliance Checklist
- Legal Compliance Checklist for New Properties
- Lease Agreement Checklist
- Software Licensing Compliance Checklist
- PCI DSS Compliance Checklist
- Real Estate Legal Compliance Checklist
- HIPAA Compliance Checklist
- MLS Listing Review Checklist
- Real Estate License Renewal Checklist
- GDPR Compliance Checklist
- Real Estate Contract Review Checklist
- Fair Housing Compliance Audit
- Listing Agreement Intake Checklist
- ISO/IEC 27001 Compliance Checklist
- HR Compliance Checklist
- Real Estate Ethics & Compliance Review
- Brokerage Trust Account Management Checklist
- Real Estate Professional Development Checklist
- Brokerage Technology Inventory Audit
- Real Estate Website Audit Checklist
- Continuing Education Checklist
- Employee Termination Checklist
- Employee Records File Audit
- Regulatory Compliance Checklist
- Brokerage HR Policy Compliance Checklist
- Employee Handbook Annual Review
- Employee Termination Checklist
- Data Privacy Compliance Checklist
- Risk Management Checklist
- Insurance Compliance Checklist
- Complaint Resolution Checklist
- Financial Audit Checklist
- Data Security Checklist
- Risk Mitigation Checklist
- Claims Auditing Checklist
- Quarterly Industry Standards Compliance Review
- Insurance Training and Development Checklist
- Anti-Money Laundering Checklist
- Training Evaluation Checklist
- Manufacturing Regulatory Compliance Checklist
- Training Needs Assessment Checklist
- Skills Development Checklist
- Audit Preparation Checklist
- Network Security Checklist
- Employee Offboarding Checklist
- IT Asset Inventory Management Checklist
- Regulatory Reporting Checklist
- Compliance Audit Checklist
- Insurance Program Initiation Checklist
- Insurance Program Launch Project Monitoring Checklist
- Training Materials Checklist
- Quarterly Risk Monitoring Checklist
- System Backup Checklist
- Employee Benefits Checklist
- Insurance Program Launch Execution Checklist
- Insurance Marketing Campaign Checklist
- Email Compliance Checklist
- Law Firm Compliance Checklist
- Anti-Money Laundering Compliance Checklist
- Law Firm Compliance Checklist
- Professional Responsibility Compliance Review
- Data Privacy Compliance Checklist
- Law Firm Risk Management Checklist
- HR Audit Checklist
- HR Compliance Checklist
- Email Deliverability Checklist
- Law Firm Ethics Compliance Review
- Document Retention Policy Checklist
- Employee File Audit Checklist
- Law Firm Risk Management Checklist
- Cloud Security Checklist
- User Access Review Checklist
- IT Regulatory Compliance Review
- Compliance Audit Checklist
- Security Audit Checklist
- Business Continuity Checklist
- Employee Termination Checklist
- Quarterly Operations and Compliance QA Review
- Expense Management Checklist
- Advisor and Employee Onboarding Checklist
- Client Satisfaction Survey Checklist
- Operational Risk Checklist
- Know Your Customer (KYC) Checklist
- Litigation Preparation Checklist
- New Hire Onboarding Checklist
- Client Onboarding Checklist
- Contract Review Checklist
- Regulatory Compliance Checklist
- Monthly Financial Reporting Checklist
- Regulatory Reporting Checklist
- Intellectual Property Management Checklist
- Internal Audit Checklist
- Lead Generation Checklist
- Annual Financial Reporting Checklist
- Annual Compliance Program Review
- Annual Risk Assessment Checklist
- Data Security Review Checklist
- Quarterly Performance Measurement Checklist
- Financial Services Project Initiation Checklist
- IT Policy Review Checklist
- Data Protection Checklist
- E-commerce Sales Tax Reporting Checklist
- Project Execution Checklist
- Project Planning Checklist
- Project Monitoring Checklist
- Financial Statement Review Checklist
- Quarterly Compliance Monitoring Checklist
- Cybersecurity Risk Assessment Checklist
- Project Closure Checklist
- Financial Services IT Security Audit Checklist
- PCI DSS Compliance Checklist
- Advisor and Staff Onboarding Checklist
- Cybersecurity Incident Response Checklist
- E-commerce Risk Management Checklist
- CRM Data Entry Checklist
- Business Continuity Plan Checklist
- E-commerce Legal Compliance Checklist
- Vendor Contract Review Checklist
- Annual Risk Management Review Checklist
- Risk Assessment Checklist
- Agency Compliance and Risk Management Checklist
- Annual School Compliance Audit
- School First Aid and Emergency Medication Audit
- Motor Carrier TSA Security Compliance Checklist
- Internal Controls Checklist
- Client Communication Checklist
- Restaurant Permit and Licensing Renewal Checklist
- New Hire Paperwork Checklist
- Restaurant Policy Update Checklist
- Restaurant New Hire Checklist
- Annual Attorney Professional Conduct Review
- International Fuel Tax Agreement (IFTA) Quarterly Filing Checklist
- Restaurant Licensing Renewal Checklist
- Marketing Strategy Checklist
- Department of Transportation (DOT) Audit Checklist
- Retail Policy Update and Compliance Checklist
- Vendor Contract Negotiation Checklist
- Vendor Setup and Maintenance Checklist
- Vendor Performance Evaluation Checklist
- Service Contract Renewal Checklist
- Vendor Onboarding Checklist
- Contractor Management Checklist
- New Vendor Onboarding Checklist
- Vendor Management Checklist
- Contract Review Checklist
- IT Vendor Management Checklist
- Vendor Management Checklist
- Vendor Onboarding Checklist
- Vendor Contract Review Checklist
- Supplier and Vendor Evaluation Checklist
- Supplier Onboarding Checklist
Ready to take control of your recurring tasks?
Start Free 14-Day TrialUse Slack? Sign up with one click
