Blog

Explore our blogs for the latest insights, tips, and best practices in third-party risk management. Stay informed and protect your organization by navigating the complexities of third-party relationships with confidence. Read on to enhance your risk management strategy!

Best Practices

It’s Game Time – Be Your Own Compliance Umpire

Managing your suite of regulatory compliance programs today requires a game day strategy to keep all the moving parts working together to achieve the end goal of meeting the external regulators expectations. While financial institutions can prepare for examination reviews...

Read More
Risk Landscape

2013 Financial Services Cyber Risk Trends

Booz Allen Hamilton released their Top 10 Financial Services Cyber Risk Trends for 2013. They did a great job on identifying trends and provide a bit of insight into what is happening in the field, while providing some advice and...

Read More
Best Practices, Risk Landscape

Vendor Risk Assessment: How Often is Often Enough?

The need to go beyond calendar based assessments. The frequency of vendor risk assessments is generally driven by the level of risk associated with the type of services provided by the vendor. A good approach for companies to follow is...

Read More
Framework, Industry Guidance, and Regulations

Regulatory Compliance – How Can it be Used to Your Advantage?

Compliance regulations are increasingly dictating the choices that businesses are making regarding revenue generation strategies across all sectors. As a result, strategies that focus on revenue streams are being directly impacted by the cumbersome technicalities of meeting the legal and...

Read More
Shared Assessments

Annie Searle Reports on the 2013 DHS Conference

The Department of Homeland Security (DHS) presented its 3rd Annual “Building Resilience through Public-Private Partnerships”,conference on July 30-31, in Washington D.C.  Third party risk issues were discussed in depth around three themes:  emergency management/preparedness, campus resilience, and cybersecurity. Welcoming remarks...

Read More
Tools and Products

The SIG – The Swiss Army Knife of Risk Assessment

In 2005, the Shared Assessments program was born to serve the financial services industry and its major service providers. The intent was to achieve economies of scale by sharing the expense and time in conducting on-site assessments.  A group representing...

Read More
Framework, Industry Guidance, and Regulations

CFPB Ups the Ante on Third Party Risk Management

With its broad focus on consumer protection, the Consumer Financial Protection Bureau ("CFPB") is holding companies directly responsible for the actions of their service providers. Responding to consumer complaints about unfair and/or deceptive practices the CFPB has handed out over...

Read More
Risk Landscape

Consumer Protection and 3rd Parties

Why should a Third Party Service Provider (TPSP) care about consumer protection regulatory issues? Because your client cares and your client’s examiner and regulator cares. Examiners and regulators are holding financial institutions accountable for the actions of their TPSPs through...

Read More
Framework, Industry Guidance, and Regulations

How Shared Assessment Is Helpful If You’re ISO-27001 Certified

I find it interesting that most people look at security frameworks as an either/or proposition. Should I use SOC2 or ISO-27001 or FedRAMP? I think the better question is how can I use multiple different security frameworks to my advantage?...

Read More
Risk Landscape

The NSA, Snowden and Third-Party Risk: Preliminary Lessons Learned

Remember this: Edward Snowden Worked for a Third-Party Vendor. While it remains uncertain what exactly Mr. Snowden shared with other nations, we do know this: he wasn’t authorized to disclose classified information. Some may believe he is a hero, others...

Read More
Framework, Industry Guidance, and Regulations

Information Security in the Financial Industry. More Regulation or Better Regulation

Santa Fe Group Consultant and Shared Assessments Program Director, Brad Keller, was recently interviewed by John DiMaria, Product Marketing Manager, BSI Management Systems. Brad, along with members from BITS and the Financial Services Roundtable, share their perspective on the recent...

Read More
Shared Assessments

Shared Assessments member Prevalent Networks, announced the release of the Prevalent Vendor Risk Manager (PVRM)

Shared Assessments member Prevalent Networks, announced the release of their flagship solution, Prevalent Vendor Risk Manager (PVRM), which leverages Shared Assessment content for controls-based assessment, schedule regular vendor risk evaluations, and obtain risk scoring per vendor against a set standard....

Read More
1 48 49 50 51 52