25 Oct Third Party Risk Management Don’t Mistake a SOC 2 Attestation for Proof of Security January 12, 2024 By Richard Barrus A SOC 2 attestation is a report from an independent auditor, which states his or her opinion of a company’s internal security and finan... Continue reading
24 Oct Third Party Risk Management 3 Reasons Why It’s Getting Harder to Respond to Security Questionnaires June 17, 2024 By Richard Barrus In our practice we’re seeing a big uptick in client stress levels with respect to security questionnaires, especially among software-as... Continue reading
24 Sep Third Party Risk Management Don’t Lose a Deal Because of a Security Questionnaire January 12, 2024 By Richard Barrus You’re a salesperson. You’ve spent untold hours cultivating an awesome prospect: wining and dining, arranging presentations, making sit... Continue reading
15 Aug Third Party Risk Management 5 Reasons to Kickstart Your Vendor Risk Management Program with a Vendor Risk Assessment Template June 20, 2024 By Richard Barrus With the average cost of a vendor data breach reaching $3.92 million, organizations are looking for stronger vendor risk management (VR... Continue reading
28 Jun Third Party Risk Management Hiring Security Talent? Give Professional Certifications the Weight They Deserve (Not More) January 13, 2024 By Richard Barrus Recently I earned a Certified Third Party Risk Assessor (CTPRA) designation from the Shared Assessments Program. This certification int... Continue reading