Vendor Risk Management Insights

    iconemail-box

    Subscribe to our blog

    Security never sleeps. Get the most up-to-date information by subscribing to the RiskRecon blog.

    Unsafe Network Services Exposures Across Industries and the World

    In early September we released a new research report with

    Prevalence of Unsafe Services

    You might wonder just how widespread the problem of unsafe services is. “Unsafe” refers to instances where companies ...

    Part 1:  Incorporating Continuous Monitoring into Your Third-Party Risk Program

    Continuous monitoring is a valuable tool for organizations seeking to improve their cyber third-party risk ...

    When TLS Problems Signal Broader Security Hygiene Flaws

    As organizations examine their vendor relationships with an eye toward cyber risk, there's rarely a single factor that would tell a decision-maker that any given third-party is too risky to do ...

    Understanding AWS Core Security Essentials

    Amazon Web Services provides a mind-boggling expanse of systems, services, and applications. An all-encompassing AWS security assessment guide would fill ...

    In Cybersecurity it’s Not Good Enough to Simply Trust

    Unfortunately, too many enterprises today are completely blindsided by down-stream impact from

    You Can't Abstract Away Risk

    The fundamental truth about third-party risk is that an organization can abstract away IT complexity and outsource IT work, but it can never outsource the cyber ...

    Third-Party Technical Relationships: More Present Than You Think

    Many organizations realize that they need to do a better job at managing third-party risk, but they don’t prioritize the problem because they don’t realize the true scope of the ...
    ISO 20071

    Third-Party Risk Management and ISO 20071

    In mid-2019, a medical testing company was informed by one of its vendors that the vendor had experienced a significant data breach. This data breach involved ...

    How to Start Thinking About Nth Party Risk - Part 2

    If you're starting to explore the issue of Nth-party risk, our first piece of advice is to have some serious talks with your insurers and your lawyers. Frank discussions with insurers over ...