DevOps Articles

Curated articles, resources, tips and trends from the DevOps World.

Meeting ISO Third-Party Risk Management Requirements in 2021 | UpGuard

3 years ago www.upguard.com
Meeting ISO Third-Party Risk Management Requirements in 2021 | UpGuard

Summary: This is a summary of an article originally published by the source. Read the full original article here →

ISO 27001 is the most popular internationally recognized standard for managing information security. However, many organizations struggle with identifying which security controls apply to vendor security and how to successfully map them to a Vendor Risk Management platform.

Establishing the most resilient TPRM program with ISO standards requires the augmentation of three specific frameworks - ISO 27001, ISO 27002, and ISO 27018.

The complete ISO 27018 framework is applicable to vendor risk management, but only the security controls sections 15 of ISO 27001 and ISO 27002 address supply chain relationships.

The UpGuard Third-Party Risk Management platform is capable of monitoring the information systems of both cloud solutions and third-party vendors for security vulnerabilities that could facilitate data breaches.

Made with pure grit © 2024 Jetpack Labs Inc. All rights reserved. www.jetpacklabs.com