Resources

TPRM Academy

TPRM introduction

TPRM - How to approach a Third-Party Risk Management project?

TPRM (Third-Party Risk Management) is part of a proactive approach to monitoring and controlling risks associated with supplier failure. In a context where companies and government agencies rely heavily on external partners (IT service providers, SaaS publishers, HR firms, etc.),…
ARTICLE
Compliance & regulation

Board of Cyber joins the Forum des Compétences plenary session

Banks, insurers, and financial institutions are facing unprecedented cyber pressure. With the DORA regulation coming into force in January 2025, the NIS2 directive, and the growing wave of supply chain attacks, CISOs in the financial world are looking for benchmarks, methodologie…
ARTICLE
Methodology & best practices

10 questions a CISO should ask their SaaS suppliers

Our dependence on service providers and SaaS applications increases every year: HR, payroll, project management, business processes... Third-party risks directly threaten business operations. The approach is now fairly well established for CISOs. For all new suppliers, it is nece…
ARTICLE

10 Errors Undermining Your TPRM Strategy

In a digital landscape where corporate boundaries are dissolving into interconnected ecosystems, your organization's security no longer depends solely on your own ramparts, but on the strength of every link in your supply chain. Third-Party Risk Management (TPRM) has shifted from…
ARTICLE

External Attack Surface Management: assess, prioritise, remediate

External Attack Surface Management (EASM): assess, prioritize, remediate External Attack Surface Management (EASM) encompasses the practices, procedures, and tools aimed at mapping, monitoring, and securing all of a company’s digital assets exposed on the Internet. It provides or…
ARTICLE
TPRM trends

TPRM Observatory 2025

Managing cyber risk associated with suppliers is now a strategic issue for all organisations. In this third edition of the Supplier Cyber Risk Observatory, Board of Cyber and CESIN give a voice to more than 170 CISOs, CIOs, CTOs and compliance directors based in France. Their fee…
E-BOOK
TPRM trends

TPRM Observatory 2025

Managing cyber risk associated with suppliers is now a strategic issue for all organisations. In this third edition of the Supplier Cyber Risk Observatory, Board of Cyber and CESIN give a voice to more than 170 CISOs, CIOs, CTOs and compliance directors based in France. Their fee…
E-BOOK