Access "Vendor risk management and the CISO"
This article is part of the February 2011 issue of Handle with care: Calculating and managing risk is tricky business
Every business today depends to some extent on third parties -- it's a reality that's becoming even more pronounced as companies move to more cloud-based services. And in order to effectively provide a product or service, a certain percentage of those third parties will require access to confidential corporate and/or customer information. Obviously, it is incumbent on management to ensure that not only is the third party capable, but also in the course of its operations can ensure that the data entrusted to it remains secure. Traditional vendor management programs have tended to focus to a large degree on "ability to deliver" with data security being an almost secondary consideration. What managers often fail to fully appreciate, especially for large or very visible companies, is that while a third party's failure to deliver would in all likelihood be operationally disruptive, a massive data breach could be devastating. The challenge for companies is how to ensure protection when they often have little ability to monitor day-to-day operations, evaluate the ... Access >>>
Access TechTarget
Premium Content for Free.
What's Inside
Features
-
-
Uneasy feeling: Risk management for emerging types of security threats
by Ron Condon, UK Bureau Chief
Calculating risk is never an exact science, particularly when new threat vectors are constantly emerging.
-
Vendor risk management and the CISO
by Eric Holmquist
The CISO has a key role in reducing the risk of sharing sensitive corporate data with third parties.
-
Uneasy feeling: Risk management for emerging types of security threats
by Ron Condon, UK Bureau Chief
-
-
Security trends 2011: Making sense of predictions
by Ron Condon, UK Bureau Chief
While vendors have never been known to underestimate security threats, the job of the information security pro is, nevertheless, getting harder, says UK Bureau Chief Ron Condon.
-
Ranking the global cyberthreat, IT infrastructure risks
by Ron Condon, UK Bureau Chief
What's the real threat of global cyberwar, and how vulnerable are IT infrastructures?
-
Security trends 2011: Making sense of predictions
by Ron Condon, UK Bureau Chief
More Premium Content Accessible For Free
Computer Weekly Buyer's Guide to context-aware security
E-Handbook
In this 11-page buyer’s guide, Computer Weekly looks at how organisations should approach context-aware security technologies and what business ...
Computer Weekly Buyer's Guide to software as a service
E-Handbook
In this nine-page buyer’s guide, Computer Weekly looks at how a CIO can best integrate it with existing on-premise software, the restrictions behind ...
Computer Weekly Buyer's Guide to infrastructure on demand
E-Handbook
Working out how to make infrastructure on demand work for your company is a challenge. In this 10-page buyer's guide, Computer Weekly looks at ...