This chapter turned out to include a lot more content than I expected. This goes to show how important Vendor Risk Management has become recently, especially as it relates to cybersecurity. Unfortunately, cybersecurity Vendor Risk Management is not something any of us can ignore. We continue to be challenged by vendors falling victim to breaches and major cybersecurity incidents. As we have shown, the impact of these breaches can be catastrophic. Examples include your confidential data or user PII being exfiltrated from one of your vendors, your vendor allowing a back door into your organization, or your vendor suffering a breach that prevents them from providing services and/or products for your organizations. This is all realistic in today’s world, and we must hold our vendors accountable to do better because it is only going to get worse before it gets any better.
To begin the chapter, we covered understanding Vendor Risk Management and what is involved within...