Risk Management Blog and Articles

May 15, 2020
tprm-buyers-guide-ebook

A Buyer’s Guide to Third-Party Risk Management: Get Our Free eBook

We gathered the questions you might need to ask to find the right tool. Download our Buyer’s Guide to Third-Party Risk Management ebook for free!
May 21, 2020
Why-the-OWASP-Top-10-can-be-an-ally

Why the OWASP Top 10 can be an ally to your organization

The OWASP Top 10 is a good starting point for detecting possible issues around third-party components. So how does it relate to TPRM?
May 28, 2020
communication-with-third-parties

Vendor Communication Best Practices for Successful TPRM

It’s hard to set expectations and discuss findings via email. Here's how to improve communication with third-parties for a successful TPRM program.
June 4, 2020
Obtaining-Executive-Buy-in-To-Your-TPRM-Program

Obtaining and Retaining Executive Buy-in To Your Third-Party Risk Management Program

Tone at the top is critical. Here are seven tips for obtaining and maintaining the support you need from the C-suite
June 12, 2020
5-Common-Mistakes-When-Building-a-TPRM-Program

5 Common Mistakes When Building a Third-Party Risk Management Program

Here are five common mistakes to avoid along with our tips for building the TPRM program in a way that best serves your organization and the people who work within it.
June 18, 2020
NERC-CIP-013-1-Effective-Date

NERC CIP-013 Requirements and CIP-013-1 Implementaiton Guidance

As of October 1st, 2020 energy organizations will have to focus on addressing specific third-party cybersecurity risks. This blog looks at some key points of the standard and how TPRM technology can help complyi.
June 25, 2020
Quantifying-Your-TPRM-Program

Quantifying Your TPRM Program: Business Impact and Vendor Scoring

A consistent scoring system for quantifying your TPRM program will improve decision-making, enhance visibility, and demonstrate the value of your strategy.
July 2, 2020
NERC-CIP-013-and-the-Impact-of-New-Regulations-in-the-Industry

NERC CIP-013 and the Impact of New Regulations in the Industry

In Utilities, there's a saying that “Safety is everybody’s business”. At some level, cybersecurity is becoming a part of everyone’s job too.
July 16, 2020
TPRMaaS-Combining-the-tool-with-the-expertise

TPRMaaS: Is it time to outsource your TPRM?

We explore the benefits of having risk management operations planned, built, and run as a service, through the combination of a purpose-built tool with technical expertise.