Latest Discussions

  • Profile Picture

    RE: Cyber Security Monitoring Tools

    This message was posted by a user wishing to remain anonymous Hi, Panorays is one of the best you dont want to miss evaluating it. It's simple at visualization level but detail oriented upto KEV level.

  • Posted in: Risk Assessments

    Thank you Premika Mishra for your comments. Greatly appreciated.

  • Hello-- I am interested if anyone is utilizing a service for Know-Your-Customer (KYC) and would have any recommendations. Thanks, Aaron Sparks

  • Profile Picture

    Cyber Security Monitoring Tools

    This message was posted by a user wishing to remain anonymous Our company is evaluating the use of cybersecurity monitoring tools. I am looking for pros and cons of the various solutions that people use. Anything that we should be aware of when choosing ...

  • When assessing repossession vendors, consider industry standards specific to the state where they operate. In California, certain requirements must be met, including having proper insurance coverage and a repo license. The type of insurance needed depends ...

  • Posted in: Risk Assessments

    The cadence for also depends on your risk appetite and available resources. In our organization, we have a single risk manager overseeing a growing portfolio of third parties. Risk thresholds are defined by Tiers, with Tier 3 representing moderate risk ...

  • Thank you all for your feedback!

  • Posted in: Risk Assessments

    Thank you Cheryl Turner and the other individual for your timely and helpful responses!

  • Hello, If you are offices in USA then i recommend reaching this company https://rightsourcingsolutions.com/ Lokesh Chandrasekar can help you in vendor management program; they can tailor their services to your needs and flexible. ------------------------------ ...

  • We have worked with a consulting firm out of Des Moines, IA, Seprio, for years. They were formally known as Corporate Contracts. They helped us develop our entire VM program, including assessments and other templates. We continue to use them today ...

  • Posted in: Risk Assessments

    We do the same.

  • I recommend Venminder Enterprise platform and super easy to install, the vendor does most of the work. Best of luck, Greg Schilder Vendor Manager ONE AMERICAN BANK IMPORTANT CONFIDENTIALITY ...

  • Profile Picture

    Vendor Management Consulting Firms

    This message was posted by a user wishing to remain anonymous Hi All - I am interested to know if anyone has experience with a Vendor Management Consulting firm? My company may be interested in engaging a consultant to help us with the implementation ...

  • Profile Picture

    Collateral Recovery/Repossession Companies

    This message was posted by a user wishing to remain anonymous Is anyone willing to share what due diligence documents you from Collateral Recovery/Repossession Companies. I am getting some push back for trying to collect their repo license and a certificate ...

    1 person likes this.
  • Profile Picture

    Low Impact Vendors and Penetration Tests

    Posted in: Risk Assessments

    This message was posted by a user wishing to remain anonymous We are a local entity performing our Third Party Risk Assessments based on the category of the system and information. In a recent review, we had push back from a security manager who ...

  • Music to my ears. We have found different groups that handle due diligence work within a theme for best interest of company, or just the business unit (i.e., within the purview they work). This includes contract review, finance, business associate agreement ...

  • Profile Picture

    RE: Frequency of risk assessments

    Posted in: Risk Assessments

    This message was posted by a user wishing to remain anonymous We determine third-party risk reviews based on the classification we have given to specific third-party. We have High, Medium and Low risk classifications. A classification is given based ...

  • Posted in: Risk Assessments

    We are a financial institution and risk rate our in scope vendors both initially and in an ongoing fashion. We are debating on what cadence we need to reperform the risk assessment as part of our ongoing monitoring, outside of any other consideration ...

  • Profile Picture

    RE: Creating a VM Program

    This message was posted by a user wishing to remain anonymous Hi Graig, Thanks so much for your response, I appreciate it and yes, it's helpful.

  • Profile Picture

    Venmonitor

    Hello, our financial institution recently began using Venmonitor (Daily Refresh and Point in Time) for our critical vendors. I was wondering for those of you who have used it before if you could please share some best practices.