Skip to content

Service

Third-Party & Supply Chain Risk

Supplier assurance processes that are proportionate, repeatable and useful — so third-party risk is understood before contracts are signed.

What's included

  • Supplier inventory and risk tiering
  • Due-diligence questionnaire design
  • Supplier assessment and review cycles
  • Contractual security requirement guidance
  • Fourth-party and concentration risk considerations
  • Ongoing monitoring approach

Outcomes

  • A tiered, current view of supplier risk
  • Consistent due-diligence at onboarding
  • Contractual security requirements that are enforceable

Best suited to

Organisations dependent on outsourced or SaaS providers.

Benefits

Why organisations choose this service

Reduced exposure through the supply chain
Faster onboarding of low-risk suppliers
Documented assurance for regulators and clients

Related

Other services

Ready to move from zero to one?

Book an introductory consultation and we'll help you identify where your organisation's real cyber risk sits.