Back to all articles
Blog · Tag

Tagged Third Party Risk.

Every article we've tagged with "Third Party Risk".

Latest articles

From the team.

SecurityScorecard Alternatives: 7 Platforms Compared for 2026Risk Management

SecurityScorecard Alternatives: 7 Platforms Compared for 2026

Looking beyond SecurityScorecard? We compare seven TPRM platforms for 2026 — RiskXchange, UpGuard, Bitsight, Panorays, Black Kite, ProcessUnity and Prevalent — by buyer type, capability, regulatory depth and pricing transparency.

5 July 20269 min read
Read more
New vendor risk assessment with SIG questionnaire in 2022Risk Management

New vendor risk assessment with SIG questionnaire in 2022

The 2022 SIG questionnaire offers updated tools to streamline third-party risk assessments. Developed by Shared Assessments, the SIG Lite and Core versions provide flexible, control-focused evaluations mapped to major regulations and security standards. Enhancements include reduced questions, new domain categories like ESG and fourth-party risk, and expanded regulatory mappings. RiskXchange leverages these assessments to provide real-time visibility, passive data insights, and automated risk ratings—enabling businesses to manage third-party risk efficiently and proactively.

12 April 20255 min read
Read more
The Cyber Security and Resilience Bill: What It Means for Your SuppliersRisk Management

The Cyber Security and Resilience Bill: What It Means for Your Suppliers

The UK's Cyber Security and Resilience Bill has reached committee stage in the Lords — and for the first time, it brings your suppliers and managed service providers directly into scope. Here's what security and procurement leaders need to do now.

18 July 20266 min read
Read more
Vendor Risk Management Audit ChecklistRisk Management

Vendor Risk Management Audit Checklist

This guide explores the essentials of a Vendor Risk Management (VRM) audit checklist, helping organisations identify, assess, and mitigate third-party risks. It outlines the key components of a successful VRM program—such as an operating model with three lines of defence, vendor risk policies, lifecycle management, and due diligence protocols—ensuring vendors do not become security liabilities. It also highlights how RiskXchange supports organisations with an automated, AI-powered platform to continuously monitor vendors and enforce cybersecurity best practices.

12 April 20256 min read
Read more
The CISO’s Guide to Attack Surface Management: Securing the 2026 Digital PerimeterRisk Management

The CISO’s Guide to Attack Surface Management: Securing the 2026 Digital Perimeter

Most organisations operate with a significant visibility gap across their external assets, leaving critical exposures unnoticed. This guide breaks down how attack surface management provides continuous visibility, reduces blind spots, and enables teams to prioritise risk with precision.

31 March 202614 min read
Read more
The Secure Vendor Offboarding Process: A Strategic Framework for 2026Cybersecurity

The Secure Vendor Offboarding Process: A Strategic Framework for 2026

A secure vendor offboarding process is no longer just an administrative task — it’s a critical defence against ghost access, dormant API keys, and hidden supply chain vulnerabilities. This guide explores how organisations can move beyond manual checklists to implement an AI-driven de-integration framework that eliminates zombie vendors, verifies data destruction, and strengthens operational resilience in 2026.

29 May 202616 min read
Read more