Third-Party Risk Management

Articles, news, and research on third-party risk management.

Third-Party Risk Management

Third-Party Risk Management

My Vendor Doesn't Have a SOC Report, How Do I Assess Them?

Learn how to assess a vendor when a SOC 2 report isn't available.
Read more
Third-Party Risk Management

How to Communicate Third-Party Risk to the Board

Learn how to effectively communicate third-party risk and your mitigation efforts to the board.
Read more
Third-Party Risk Management

How to Identify Vulnerable Third-Party Software (Quickly)

Learn how to identify vulnerable third-party software before hackers exploit them to steal your sensitive data.
Read more
Third-Party Risk Management

Comprehensive Guide to Conducting Effective Supplier Risk Assessments

Learn how to assess supplier risk, improve compliance, and reduce disruptions with a practical framework for vendor evaluation and ongoing risk monitoring.
Read more
Third-Party Risk Management

How to Detect Internet-Facing Assets for Cybersecurity

Learn how to detect all of your internet-facing assets and achieve confident control of your entre attack surface.
Read more
Third-Party Risk Management

How Do You Determine Vendor Criticality?

Find out how to determine vendor criticality levels and why they're important for any VRM program.
Read more
Third-Party Risk Management

How to Assess Cyber Risk for Potential Vendors (Complete Guide)

Follow this guide to learn how to assess cyber risk for potential vendors.
Read more
Third-Party Risk Management

Yes, It's Possible to Complete Vendor Questionnaires Faster

Learn how to speed up the completion of vendor security questionnaires and streamline your entire VRM program.
Read more
Third-Party Risk Management

Are Vendor Security Questionnaires Accurate?

Find out if vendor security questionnaires are an accurate reflection of third-party security postures.
Read more
Third-Party Risk Management

Meeting OCC Third-Party Risk Requirements [2026 Edition]

Learn how to meet the third-party risk management requirements outlined by the Office of the Comptroller of the Currency.
Read more
Third-Party Risk Management

Can You Adjust Vendor Security Ratings?

Learn how to adjust vendor security ratings to improve the accuracy of your Vendor Risk Management program.
Read more
Third-Party Risk Management

PRA SS2/21 Third Party Risk Compliance Guide

Learn how to comply with the third-party risk requirements of the Prudential Regulation Authority SS2/21.
Read more
Third-Party Risk Management

4 Ways to Reduce Vendor Risk in Finance

Learn how finance companies can reduce third-party cyber risks through an effective vendor risk management process.
Read more
Compliance and Regulations
Third-Party Risk Management

Meeting the SOC 2 Third-Party Requirements in 2026

Learn how UpGuard can help you comply with SOC 2's third-party requirements.
Read more
Third-Party Risk Management

Reducing Supply Chain Security Risks with Vendor Segmentation

Learn to segment vendors on an impact × security-risk matrix, then apply four methods: tiering, portfolios, labels, custom attributes.
Read more
Third-Party Risk Management

4 Ways Tech Companies Can Better Manage Vendor Risks

Learn why managing vendor risk is crucial in the tech industry and effective security practices for ensuring supply chain security.
Read more
Deliver icon

Sign up for our newsletter

UpGuard's monthly newsletter cuts through the noise and brings you what matters most: our breaking research, in-depth analysis of emerging threats, and actionable strategic insights.
Free instant security score

How secure is your organization?

Request a free cybersecurity report to discover key risks on your website, email, network, and brand.
  • Check icon
    Instant insights you can act on immediately
  • Check icon
    Hundreds of risk factors including email security, SSL, DNS health, open ports and common vulnerabilities
Website Security scan resultsWebsite Security scan rating