Reporting

 View Only

Welcome to the Reporting Community. Here you will find the latest discussions and resources that can help you in this area. This area is dedicated to discussions around what to report on, how often, and any other challenges related to third-party risk reporting. Note: You will need to Sign In to join in the discussions and access resources. 

About Third-Party Risk Reporting: Vendor management reporting to senior management and the board is a regulatory requirement. In fact, it’s a pillar of vendor management. You don’t want to be too specific or too general, so understanding the frequency, format, and what to include in your reports is all important.

Latest Discussion Posts

  • Profile Picture

    Key Risk Indicators

    This message was posted by a user wishing to remain anonymous Please is anyone willing to share the Key Risk Indicators (KRIs) they use-particularly those reported to leadership-to evaluate the effectiveness of their Third Party Risk Management (TPRM) ... More

    1 person likes this.
  • Profile Picture

    Law Firm Metrics

    This message was posted by a user wishing to remain anonymous Hello everyone, What metrics are you all tracking for law firms in your high-level reporting? Trying to figure out what would be most useful beyond inherent right or due diligence status. ... More

  • Profile Picture

    RE: 4th party reporting

    I'm not aware of any open source intelligence, but I am aware of a product offered by one of the insurance brokers, Marsh, that works well for manufacturing organizations. The solution they offer is called Sentrisk. ------------------------------ Mark ... More

  • Has anyone found any decent Open Source Intelligence (OSINT) tools for fourth-party tracking/discovery? I feel like I've been looking forever and it probably doesn't exist, but always nice to hear from others what they may have found or tried. ------------------------------ ... More

  • In my experience, reporting on fourth-party vendors can be challenging due to the inherent lack of visibility into those relationships. These entities are often excluded from the formal third-party risk management program, and there's typically no direct ... More

Polls