Driving Greater Prioritization In Vendor Risk Management

Noah Simon | December 13, 2016 | tag: BitSight

With third parties becoming a major attack vector into organizations, BitSight is focused on enabling security and vendor risk professionals to better prioritize their efforts when it comes to identifying and monitoring cyber security risks across their vendor ecosystem.  BitSight Security Ratings customers can now prioritize issues and receive customized alerts when the aggregate performance of multiple companies change.

Remediation Strategy

The BitSight Security Ratings portal now features a Remediation Strategy section to help risk and security stakeholders focus on improving their organization’s security posture. As we have shown, organizations with a higher security rating are less likely to experience a publicly-disclosed data breach. This new capability highlights the risk vectors that have the highest Rating Impact and quantitatively identifies where organizations should focus remediation efforts. Strategies are presented from most to least Rating Impact.

remediation strategy.pngThe strategy is available for all companies in a customer's portfolio and provides information to prioritize remediation efforts, enhance security effectiveness, and guide security conversations with third parties and business associates. Companies who take advantage of this feature can strengthen their security posture and drive security progress across their entire supply chain.

Want to see how your security posture could be improved? Schedule an appointment today!

Folder Level Alerting

Customers can now set folder-level alerts to be notified when the aggregate security posture of multiple companies changes. Many customers are already using folders to segment their third parties into different buckets based off the business function they provide and risk they pose. Folder level alerts provide the ability for customers to set specific rating alerts for each folder, allowing the customer to set more stringent alert preferences for Tier 1 vendors and looserDemo Request - Third Party preferences for Tier 2 or 3 vendors. Alerts deliver critical information right to your inbox and provide  the insight that you need to manage third party risk.

Customers can use folder level alerting as an important reporting mechanism on the health of their vendor risk program. If organizations are frequently getting alerts for rating drops, it’s possible their vendor risk management strategy needs to be revisited.

Suggested Posts

Celebrating 10 Years of BitSight: A Co-Founder Looks Back

It’s hard to believe, but BitSight is celebrating our 10 year anniversary this week! I co-founded BitSight in 2011 with my friend and grad school classmate, Nagarjuna Venna. When I think back at our original idea of creating a global...


Meet Our Customer Success Team: Ashley Ritrovato

Check out this Q&A with a US-based member of BitSight's Customer Success team to learn about her role as an BitSight Advisor & Customer Success Manager, her experience, and more.


Meet Our Customer Success Team: Alessandra Pilloni

Check out this Q&A with a London-based member of BitSight's Customer Success team to learn about her role as an Customer Success Manager, her experience, and more.


Get the Weekly Cybersecurity Newsletter.