CONTACT US
Third Party Risk Management - Consultancy, Assessment & Advisory

What is “Cyber Risk” in Third-Party Cyber Risk Management?

Continuing NormShield’s blog series on third-party cyber risk management, this article’s topic is Cyber Risk. In a digital world, organisations are exposed to a range of risks resulting from cyber events like phishing, data theft, ransomware, corporate espionage, etc… What’s more, these events might happen beyond the company’s knowledge. Within a company ecosystem, the effect…

LEARN MORE

What is “Third-Party” in Third-Party Risk Management?

Businesses rely on Third-Parties to deliver a service or product to their customers. In a tightly-linked digital world, Third-Parties are indispensable and inherently risky elements of a digital ecosystem. Before going deep into the risks they pose to the business, we need to understand the definition and be able to identify the ones critical to…

LEARN MORE

Monitoring Third-Parties Continuously – A NIST Perspective

NIST released two industry standards to drive security requirements around supply-chain (a.k.a third-party) management. Here’s an overview of the NIST guidelines regarding continuous third-party risk monitoring. NIST 800-53 NIST 800-53 Security and Privacy Controls for Federal Information Systems and Organisations sets out guidelines and controls for protecting the government’s sensitive information as well as citizens’ personal information…

LEARN MORE

ProcessUnity Expands Vendor Risk Management Software with New Best Practices Configuration

New Out-of-the-Box Configuration Provides Quick-to-Deploy, Comprehensive Solution for Third-Party Risk Management DVV Solutions automation partner ProcessUnity has launched a new pre-built configuration of its award-winning Vendor Risk Management solution. Best Practices Configuration for ProcessUnity Vendor Risk Management (VRM) is a pre-configured Third-Party Risk Management program with turn-key workflows, assessments, calculations, risk analysis and reporting, allowing…

LEARN MORE

Dynamic Due Diligence – The Shared Assessments TPRM Framework Module 6

While at first glance the topic of due diligence may appear to be a stodgy one, the reality of a rapidly changing risk landscape and the evolution of due diligence techniques suggests that the opposite is true. The latest section of the Shared Assessments Third Party Risk Management (TPRM) Framework has just been released, providing…

LEARN MORE

Monitoring Third-Parties Continuously: A NIST Perspective

NIST released two industry standards to drive security requirements around supply-chain (a.k.a Third-Party) management. Here’s an overview of the NIST guidelines regarding continuous Third-Party risk monitoring.   NIST 800-53 NIST 800-53 Security and Privacy Controls for Federal Information Systems and Organisations sets out guidelines and controls for protecting the government’s sensitive information as well as…

LEARN MORE

Driving Operational Resilience through better Third Party Risk Management @ New Generation Operational Risk Europe 2020

Delivering A Comprehensive Approach to TPRM DVV Solutions, specialists in Third Party Risk Management, are proud to announce our co-sponsorship with ProcessUnity and BitSight of CeFPro’s 6th Annual New Generation Operational Risk European seminar. “We’ll be bringing valuable insight into innovative approaches to launch, grow and optimise Third-Party risk management (TPRM) programs, improving both the…

LEARN MORE