Not all suppliers are equal: Taking a risk-based approach to third party risk management
Registration takes place on another website
Organisations are increasingly dependent on third parties to deliver critical services, yet many still lack a consistent approach for identifying and managing the cyber risks those suppliers introduce. For organisations starting out, establishing a Third-Party Risk Management (TPRM) programme can appear complex. However, effective TPRM does not need to be complicated from the outset: this webinar looks at the practical steps organisations can take to establish a proportionate supplier risk programme, build consistency into their assessments and move towards a more centralised and scalable approach.
Join ISF’s Ryan Hides, Senior Consultant, Nick Frost, Principal Consultant and Francesca Williamson, Senior Analyst to:
- Understand the core components of a TPRM programme and the practical steps for getting started
- Explore how to identify, categorise and prioritise suppliers based on the level of cyber risk they present
- Consider how organisations can move beyond Excel-based processes towards a more consistent and centralised approach
- Understand the ISFs existing supplier security guides and how the ISF Security Supplier Tool (SST) can help organisations establish and mature their TPRM capability through a centralised SaaS platform.
Meet the Speaker
Ryan Hides
Nick Frost
Francesca Williamson
Cyber Awareness Webinar Showcase
5-15 October 2026
This webinar is part of our Cyber Awareness Webinar Showcase, a series of sessions exploring the latest trends and critical topics in information security.
Don’t miss out on our other engaging webinars.
More Insights
Discover moreRegistration takes place on another website