Compass IT Compliance Blog / Vendor Management (4)

Are You Protecting Your Attack Surface?

An empty office with mostly gray tones

Does your organization understand its attack surface? Gartner, Inc., a technological research and consulting firm, recently published the top trends in Cybersecurity for 2022, with attack surface expansion coming in at number one.

Read Story

MSP Breaches Opening the Door to Further Attacks on Clients

A hand stops a row of dominoes from falling

Is your Managed Service Provider (MSP) protecting yours and your client’s data? Are you regularly assessing your MSP and the rest of your vendors? It is no secret that hackers have gained access to more and larger companies over the past few years, but a new malicious tactic is coming …

Read Story

PCI, Service Providers, and You

A man holds a credit card in his hand while scrolling on a laptop

As merchants increasingly utilize trusted partners to maintain and manage critical pieces of their business, information technology, and security infrastructure, it becomes necessary to build a program to manage these vendors.

Read Story

SolarWinds SUNBURST Hack – And You Thought 2020 Couldn’t Get Any Worse

SolarWinds SUNBURST Hack – And You Thought 2020 Couldn’t Get Any Worse

Co-authored by Derek Morris, Senior Information Technology Security Professional SUNBURST – add this to the list of all the wonders this year has brought. Are you one of the 18,000 customers infected by SUNBURST? Have you been ordered by the US Department of Homeland Security to quara …

Read Story

Vendor Risk Management: Third-Party Risk Analysis / Annual Review

Vendor Risk Management: Third-Party Risk Analysis / Annual Review

We live in a world where our interactions with each other are generally benign, observed to be candid at face value, making it easy to take the assurances of success, functionality, and capability of our colleagues and acquaintances as they are meant. Unfortunately, business interacti …

Read Story

Blackbaud Breach – Time to Review Your Vendors

Blackbaud Breach – Time to Review Your Vendors

It has recently been reported that Blackbaud, one of the world’s largest providers of education administration, fundraising, and financial management software for nonprofits suffered a ransomware attack back in May of 2020.

Read Story

Subscribe by email