RiskRecon Blog

    iconemail-box

    Subscribe to our blog

    Security never sleeps. Get the most up-to-date information by subscribing to the RiskRecon blog.

    Privva Custom Image

    Updated Cybersecurity and Risk Management Regulations from SEC

    Authored by Ishan Girdhar, Founder and CEO of Privva. Cyberattacks and data breaches are becoming more frequent and sophisticated as technology advances and becomes ...

    Breaking the Cybersecurity Insanity Cycle

    I’m joining the Board at RiskRecon because with my 20+ years of experience working in information security, I truly believe their offering solves the failing state that dominates this domain.

    Public Customer Vendor References – Good Partnership but Risky Business

    A public testimonial from a satisfied customer is marketing gold for most any business. Who isn’t proud to display the logos of respected brands on your customer list, or to publish case studies ...

    When the media wrongly implicates you in a third-party data breach

    When your vendor gets breached, you might be dragged into the mess by media even if your data was not compromised. Consider the recent case of [24]7.ai data breach. On April 4, 2018, online ...

    You Can’t Outsource Risk - A regulatory guide to third-party cyber security risk management

    Third parties are integral to the value chain—any given organization can have up to hundreds of vendors, depending on its size. Along with business process, IT bandwidth and application ...

    Fifth Deadly Sin: Not knowing your vendors

    We’re running a blog post series on the “Seven Deadly Sins of Third-Party Cyber Risk Management;” here’s the fifth deadly sin, which is not knowing your vendors.

    Fourth Deadly Sin: Failure to address information security in third-party contracts

    We’re running a blog post series on the “Seven Deadly Sins of Third-Party Cyber Risk Management;” here’s the fourth deadly sin, which is the failure to address information security in third-party ...

    Third Deadly Sin: Not measuring and reporting risk and risk outcomes

    We’re running a blog post series on the “Seven Deadly Sins of Third-Party Cyber Risk Management;” here’s the third deadly sin, which is not measuring and reporting risk and risk outcomes.