EBA Narrows Third-Party Risk Rules to Critical Functions

The European Banking Authority (EBA) is moving towards a more targeted approach to third-party risk management, with regulatory attention increasingly focused on outsourcing arrangements involving critical or important functions. The approach is intended to reduce unnecessary compliance burdens while ensuring Read More …

Commonwealth Bank of Australia Upgrades Third-Party Risk Management Framework

Commonwealth Bank of Australia (CBA) has strengthened its third-party risk management capabilities as financial institutions face increasing challenges from technology dependencies, outsourcing arrangements and interconnected digital ecosystems. The upgrade reflects the growing importance of managing risks arising from external vendors, Read More …

Continuous Monitoring for Vendor and Privileged Access Risk in Banking

Continuous Monitoring for Vendor and Privileged Access Risk in Banking

The modern digital banking ecosystem has expanded far beyond the traditional boundaries of internal IT parameters. With financial institutions increasingly relying on complex cloud architecture, core banking application programming interfaces (APIs), and third party FinTech vendor pipelines, the corporate threat Read More …

GuidePoint launches supply chain detection and response service

GuidePoint Security has launched a new Supply Chain Detection and Response (SCDR) service aimed at helping organisations identify, monitor and mitigate cybersecurity threats originating from third-party vendors and supply chain partners. The service is designed to address the growing concern Read More …

Banking industry body outlines recommendations for third-party risk management

The Consumer Bankers Association has released recommendations aimed at strengthening third-party risk management practices as financial institutions face increasing reliance on external vendors, technology providers and outsourcing partners. The recommendations emphasise the need for a more risk-based and proportionate approach Read More …

VendRespect launches cybersecurity scoring system for digital risk assessment

Cybersecurity solutions provider VendRespect has introduced an advanced cybersecurity scoring system designed to help organisations assess and manage digital risk more effectively in an increasingly complex threat environment. The new platform aims to provide businesses with a measurable view of Read More …

Aravo Launches ‘Aravo AI’ to Automate Third-Party Risk Workflows

Aravo has introduced ‘Aravo AI’, a new solution designed to automate third-party risk management workflows and enhance enterprise risk oversight. According to the report, the platform leverages artificial intelligence to streamline vendor risk assessment, due diligence, and ongoing monitoring processes. Read More …

HSCC Issues Guidance to Address Third-Party AI Risk in Healthcare

The Health Sector Coordinating Council (HSCC) has released new guidance aimed at helping healthcare organisations manage risks associated with third-party artificial intelligence (AI) solutions. According to the report, the guidance focuses on strengthening oversight of external vendors providing AI-driven tools Read More …

Black Kite Expands Cyber Risk Platform with Financial Risk Modelling

Black Kite has enhanced its third-party cyber risk assessment platform by introducing financial risk modelling capabilities, marking a significant step towards quantifying cyber risk in monetary terms. The development aims to help organisations better understand the potential financial impact of Read More …

AI Blind Spots Raise New Concerns in Vendor Risk Management

Emerging risks linked to artificial intelligence are creating new blind spots in vendor risk management, particularly as organisations increasingly depend on third-party technology providers. The evolving threat landscape is making it more challenging for firms to maintain visibility and control Read More …