How well do you know your vendors?

Vendor due diligence and monitoring

Teri Radichel
Cloud Security
Published in
20 min readDec 20, 2019

--

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

🔒 Related Stories: Cybersecurity for Executives | Supply Chain Security

💻 Free Content on Jobs in Cybersecurity | ✉️ Sign up for the Email List

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Next in my series on Cybersecurity for Executives: your vendors. I recommend two primary questions to ask your security team. 1 How are we vetting our vendors? 2. Are we monitoring vendor activity? Those are two broad questions, so let’s break it down a bit more.

Get the full book by Teri Radichel in paperback or ebook format on Amazon: Cybersecurity for Executives in the Age of Cloud

First, a caveat: I wrote this post from the perspective of an organization in the United States. If you live in a different country, the same concepts apply, but you may have a different viewpoint regarding the location vendors create and test products and services. Each country has it’s own political and national security concerns. I reference many news articles because it shows where the data comes from for the points I’m making, but people in different countries may have different perspectives.

--

--

Teri Radichel
Cloud Security

CEO 2nd Sight Lab | Penetration Testing & Assessments | AWS Hero | Masters of Infosec & Software Engineering | GSE 240 etc | IANS | SANS Difference Makers Award