Vendor Risk Management Insights

    iconemail-box

    Subscribe to our blog

    Security never sleeps. Get the most up-to-date information by subscribing to the RiskRecon blog.

    shahadat-shemul-1532385-unsplash

    Why Third-Party Security Risk Matters

    Big Impact Enterprises entrust the protection of their crown jewels—their customer data, their reputation, their finances, and their business availability—with third parties. ...
    jeshoots-com-632498-unsplash

    Managing Third-Party Meltdown & Spectre Risk Exposure Strategic Recommendations Beyond Patching

    Summary The Meltdown and Spectre vulnerabilities represent an ...
    annie-spratt-450567-unsplash

    Principles for Fair and Accurate Security Ratings

    The U.S. Chamber of Commerce just issued “Principles for Fair and Accurate Security ...
    matthew-henry-87142-unsplash

    Extending GRC with Continuous Vendor Security Monitoring

    We speak with many clients that already have some form of governance, risk management, and compliance (GRC) program in place to assist with managing their enterprise programs. And some have ...
    octav-cado-508490-unsplash-1

    When Apache Struts2 Hits the Fan, Respond with Data and Collaboration

    Mitigating your third-party exposure to Apache Struts2 requires accurate, actionable data -- and fast. If you can apply automated techniques to rapidly identify which of your vendors are most ...
    adi-goldstein-1384102-unsplash

    Using Threat Intelligence to Manage Third Party Risk: The Boy Who Cried Wolf

    More and more enterprises are increasing their budgets for threat intelligence in order to stay on top of the latest security risks. The dramatic increase in third party cyber security risk ...
    kaleidico-754517-unsplash-1

    2017 Outlook: Vendor Risk Continues as a Top Challenge Faced by CISOs

    CISOs know that security risks abound. But objectively measuring risk and balancing it against the needs of the business is essential. Third-party risk provides a perfect ...
    bram-naus-221602-unsplash

    Part 2: Are Your Vendors Walking the Walk? Confronting Risk Realities: Your Control Processes are Broken

    In the second part of this two-part blog series, we look at the reality of your risk processes. The complex, extensive vendor ecosystems in today’s enterprises ...
    nigel-tadyanehondo-196596-unsplash

    Part 1: Are Your Vendors Walking the Walk? Confronting Risk Realities: Your Measurements Are Incomplete

    You just received an updated security attestation from your third-party provider, but the hair on your arms stands straight up when news of the latest hack appears on your screen. Your vendors ...