CONTACT US
Third Party Risk Management - Consultancy, Assessment & Advisory

Newsroom

Nth Party Risk Concepts – How Low Should You Limbo?

The recent Shared Assessments “Taking the Pulse of Nth Parties in a Post-COVID World” webinar brought together a capable panel of risk experts to discuss Nth Party Risk concepts. With close to 100 combined years of experience in the Third Party Risk Management field, speakers included Brad Keller (SVP & CSO, Shared Assessments), Sean O’Brien (Managing Director, DVV Solutions), James…

LEARN MORE

Understanding The Frailty Of The Software Supply Chain

In December 2020, the cybersecurity industry faced its latest attack – SolarWinds. This hack reinforces the frailty of not only the software supply chain but the third-party vendor ecosystem. As more information is uncovered, it is becoming clear that this extensive ecosystem of vendors is the gateway for attackers to move laterally from network-to-network. Tackling…

LEARN MORE

Register Now: Automating Supply Chain Risk Incident Actions and Response Webinar

Automating Supply Chain Risk Incident Actions and Response Many companies are increasing risk budgets in response to COVID-19’s wide-scale disruptions in 2020 and expanding their Risk Intelligence programs. Unfortunately, many widely used third-party risk management practices such as point-in-time assessments and one-time health reviews were ineffective as the situation and risks continued to change and…

LEARN MORE

Webinar Replay – Generate Real Scale & Results in your Third Party Cyber Risk Management Feb 2021

Generate Real Scale & Results in your Third Party Cyber Risk Management Whether it is the availability of resources, time or necessary skills, delivering both assessment and remediation of cyber risk within Third Party Risk Management programs is a constant challenge. Focus is naturally placed on assessing and monitoring higher tier suppliers and more valuable…

LEARN MORE

NIST publishes Key Practices in Cyber Supply Chain Risk Management: Observations from Industry

As part of the The National Institute of Standards and Technology (NIST) cyber supply chain risk management (C-SCRM) program’s output this latest publication has been created to provide the ever-increasing community of digital businesses a set of Key Practices that any organisation can use to manage cybersecurity risks associated with their supply chains. The Key…

LEARN MORE

Download: The 8 Reports You Need for Effective and Efficient Vendor Risk Management

8 Reports You Need for Effective and Efficient Vendor Risk Management Reporting is a critical, yet often overlooked, aspect of a successful Vendor Risk Management program. The right reports give you instant insight into program performance, quickly highlight problem areas and help you prioritise where to spend your precious time. They also help you assess more vendors,…

LEARN MORE

Assure Supply Chain Transparency: Ethical Sourcing and Nth Party Providers

Supply chains are critical to business, but the lack of transparency across the links in your chain can lead to unwanted consequences. The Shared Assessments Financial Services Vertical Strategy Group has been discussing how to ensure ethical sourcing and protect for human rights issues in the supply chain. Almost every business walks a fine line between the…

LEARN MORE

Are Security Ratings Services Really Worth It For SMBs?

Let’s be honest: SMBs haven’t made the big breach headlines over the past few years. However, when we look at the statistics, the numbers tell a different story. SMBs make a critical portion of these breaches.  With their valuable position in the economy and growing risk of attacks on their ecosystems, we put SMBs under the…

LEARN MORE

The Cost of Faulty Risk Management – and How to Avoid It

Fines resulting from poor risk management controls are becoming commonplace in the financial industry – and this new trend is just as expensive as it is avoidable. Recently JPMorgan was charged $250 million over inadequate risk management in its wealth management business. This follows the news that Citigroup was fined for major deficiencies with their risk program, and USAA faced a…

LEARN MORE

Go Beyond Cyber and Financial Assessments: Here’s How to Enhance Your TPRM Program for 2021 and Beyond

Financial and cyber threats are rightfully a top concern for businesses today, but third-party and global business disruption risks go far beyond cyber and financial concerns. When you compound financial and cyber risks with the ever-changing business environment, geopolitical events and increasingly frequent severe weather events, a TPRM program that only periodically assesses financial and…

LEARN MORE