Understanding Vendor-Related or Third-Party Cyber Risk
ID: 853964b2-b694-56e1-9fcd-71edd5c6bafb
STIX ID: report--853964b2-b694-56e1-9fcd-71edd5c6bafb
Feed Name: CloudSEK Blog
This document explains third-party cyber risk and its implications for organizations, describing common risk categories (data breaches, malware injection, supply chain vulnerabilities, and compliance failures) with illustrative examples such as Target, SolarWinds, Kaseya, and Uber. It outlines best practices for vendor assessment and due diligence, highlights supporting technologies (vendor risk platforms, SIEM, rating services, security awareness training), and promotes CloudSEK’s SVigil for monitoring issues like exposed APIs, leaked credentials, sensitive data exposure, mobile app risks, malware detection, and misconfigurations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
