Third-Party Risk Management stories
Security buyers get a stronger benchmark as CREST-certified testers gain faster access to Synack's vetted red team for client engagements.
Personal-device access to production systems prompted DrillDocs to tighten oversight of offshore engineers and contractors across time zones.
Growing supplier cyber risk is pushing businesses towards continuous monitoring, as Factor joins a crowded market focused on better response.
The move gives the cyber risk provider closer access to EMEA customers as demand rises for better oversight of supplier vulnerabilities.
Security teams can now fold supplier risk alerts into incident response as GuidePoint's new service targets breaches from third-party tools.
Reco COO Zoe Hillenmeyer says enterprises typically underestimate their AI agent exposure by a factor of ten and that gap is widening.
The certification should ease procurement concerns for finance teams handling sensitive planning data, as buyers demand tougher proof of security controls.
Only a small fraction of disclosed flaws are likely to hit suppliers, leaving security teams to focus on the 58 highest-risk CVEs.
The tie-up could help regulated firms move AI agents from pilots to live workflows, using trusted data for checks, approvals and governance.
Threat alerts have fallen by 98% for Europe's largest cinema operator after it overhauled security across eight countries.
Vendor assessments could be completed faster and with less manual chasing as the new tool verifies evidence rather than self-reported answers.
Recurring checks aim to help regulated firms spot compliance gaps in outsourced and in-house operations before breaches trigger penalties.
Pressure to simplify fragmented security tools is driving BlueVoyant’s leadership shake-up as John Hernandez takes over as Chief Executive Officer.
Attackers targeting weaker suppliers are pushing enterprises to move from periodic reviews to continuous monitoring and response across vendor networks.
Thousands of schools faced disruption after a vendor breach exposed how learning platforms and cloud services can halt teaching and assessments.
Finance teams need to know whether ERP AI queries cross borders, because model routing can affect sovereignty, compliance and audit trails.
Federal contractors face rising scrutiny as speakers warned CMMC and AI are becoming central to procurement, resilience and national security.
Prime defence contractors face fresh contract risks as CMMC checks move into solicitations, threatening supplier delays and award disqualification.
Australian businesses face sharper reporting deadlines as Rapid7 opens early access to software that ties compliance to live security risk.
Attackers are now moving fast enough that patching delays, standing privilege and inherited trust leave organisations exposed within minutes.