Your organization’s third party risk assessment process has likely come under increased scrutiny. Fortunately, new methods have emerged to help control and manage third party security risks. We will present techniques for measuring the information security quality of any company just by making a simple examination. No hacking. No insider information. No laws broken. The art is in knowing where to look and how to read what you see. We will explore the breadth and depth of security program information captured using this method and describe how it can be done. To provide context, we will include representative analyses of several large organizations.
Topics covered in this session included:
- How vendors expose their security decisions on the internet
- How this information can be captured and analyzed
- What actionable intelligence and conclusions can be gleaned from this information
Categories: 2016 Fall - Carlsbad, Summit Presentations
SRC Type: Sourcing Management, Third Party Management