The process of identifying, assessing, and mitigating security risks posed by vendors, suppliers, and partners who have access to an organization's systems or data. Includes due diligence assessments, contract requirements, and ongoing monitoring.
Related Terms
Compliance
complianceThe practice of adhering to laws, regulations, industry standards, and internal policies related to information security...
Risk Assessment
complianceThe systematic process of identifying, analyzing, and evaluating security risks to an organization's assets. Risk assess...
Supply Chain Attack
generalAn attack that targets an organization by compromising a trusted third-party vendor, supplier, or software component in...