This document is about providing tips for plan sponsors to select service providers with strong cybersecurity practices. It covers areas such as evaluating the service provider's information security standards, audits, track record, insurance coverage, and contractual provisions to ensure the protection of plan data and participant information. The guidance aims to help plan sponsors meet their ERISA responsibilities in prudently selecting and monitoring service providers.