Third-Party Risk Management stories
Vendor assessments could be completed faster and with less manual chasing as the new tool verifies evidence rather than self-reported answers.
Recurring checks aim to help regulated firms spot compliance gaps in outsourced and in-house operations before breaches trigger penalties.
Pressure to simplify fragmented security tools is driving BlueVoyant’s leadership shake-up as John Hernandez takes over as Chief Executive Officer.
Finance teams reviewing expense software may now see added assurance, as Weel has secured SOC 2 and ISO 27001 certifications and opened a Trust Centre.
Businesses can now run supplier, tax and sanctions checks through AI tools, as apexanalytix opens access to more than 280 million records.
The new modules aim to quantify supplier exposure in dollars as businesses grapple with tariff shocks, reputational damage and lower-tier blind spots.
Financial firms could cut manual due diligence and RFP work as Broadridge embeds CENTRL's AI tools across asset management and retirement products.
Ransomware hit manufacturers hardest in 2025 as incidents climbed 56 per cent, with ageing factory systems and suppliers widening exposure.
The certifications strengthen customer assurance as AI-driven phishing and impersonation attacks rise, giving buyers clearer proof of Doppel's controls.
Boards in regulated sectors now have firmer assurance after Abacus secured CREST approval for penetration testing, renewed annually.
Smaller defence suppliers risk losing contracts as many underestimate the paperwork and evidence needed to pass new cyber checks.
Enterprises could spot compromised maintainers sooner, as the new tool maps open-source contributors, dependencies and policy breaches across builds.
Audit teams can now trace mobile app controls over time, as the new workspace records policy changes, builds and approvals in one place.
The UK-founded firm will now hunt US customers from Maryland, where supply chain cyber risk is drawing tighter scrutiny from boards and regulators.
UK supply chain cyber firm Risk Ledger opens a Maryland base to build its US team and tap growing demand for third-party risk oversight.
Drata rolls out agentic AI tools to speed third-party risk reviews, automate security questionnaires and rapidly build online trust centres.
Cloud Security Alliance launches new enterprise tiers, offering CISOs analyst-led roadmaps to turn cloud and AI security frameworks into action.
Attackers are now moving fast enough that patching delays, standing privilege and inherited trust leave organisations exposed within minutes.
Only 5% of businesses follow Cyber Essentials, leaving many firms exposed to breaches and looming reporting rules, experts warn.
UK firms face automatic certification failures if any cloud account lacks MFA, as the revised scheme also tightens patching deadlines.