News & Analysis as of

Third-Party Risk Management Vendors

Integreon

DORA Compliance Part 1: Proactively Meeting DORA Supply Chain Resilience Obligations

Integreon on

Introduction to DORA and its Implications - As of Jan.17, 2025, the European Union’s Digital Operational Resilience Act (DORA) became enforceable. This new regulatory framework significantly impacts financial institutions and...more

Ankura

Internal Control Lessons Learned from Global Anti-Corruption Enforcement in 2024

Ankura on

2024 saw another strong year of Foreign Corruption Practices Act (FCPA) enforcement actions from the United States Department of Justice (DOJ) and the Securities and Exchange Commission (SEC). There were 15 resolutions with...more

Mitratech Holdings, Inc

Red Flags In Your Vendor’s Business Continuity Plan

Ensure your vendors are crisis-ready by recognizing these key indicators of weak continuity planning. The interconnected nature of modern business means that your vendors’ operational resilience can, and frequently does,...more

Conn Kavanaugh

Three Things You Should Know About Service Level Agreements in SaaS/Cloud Contracts

Conn Kavanaugh on

When a customer purchases software-as-a-service (SaaS)–which is sometimes called a “cloud” service or product–the software is not hosted. It does not reside at the customer’s location or data center. Rather the software is...more

Constangy, Brooks, Smith & Prophete, LLP

Take these steps to safeguard against third-party cyber threats

The ever-increasing privacy and security risks via third-party vendors and service providers were apparent in 2023 with news of large organizations such as MOVEit, Okta and AT&T being affected. Research has shown that 98...more

Balch & Bingham LLP

Joint Cybersecurity Advisory (“CSA”) Issued Regarding IRGC-Affiliated Cyber Threats to Multiple Sectors, including U.S. Water and...

Balch & Bingham LLP on

On December 1, 2023, the Federal Bureau of Investigation (“FBI”), Cybersecurity and Infrastructure Security Agency (“CISA”), National Security Agency (“NSA”), Environmental Protection Agency (“EPA”), and the Israel National...more

Troutman Pepper Locke

New FINRA Guidance Suggests Increased Scrutiny of Member Firms’ Relationships with Third-Party Vendors

Troutman Pepper Locke on

Who Needs to Know FINRA member firms. - Why It Matters On August 13, the Financial Industry Regulatory Authority released a regulatory notice to member firms, clarifying their existing obligations on the supervision of...more

Jackson Lewis P.C.

Data Protection And The Role Of Vendor Management

Jackson Lewis P.C. on

The SolarWinds hack highlights the critical need for organizations of all sizes to include cyber supply chain risk management as part of their information security program. It is also a reminder that privacy and security...more

The Volkov Law Group

Unraveling Beneficial Ownership Risks (Part II of IV)

The Volkov Law Group on

When discussing the importance of beneficial ownership with compliance professionals, there is often a disconnect between the theory and reality.  Everyone understands the legal and compliance risks and how they apply to...more

The Volkov Law Group

Addressing Beneficial Ownership Requirements in Your Compliance Program (Part I of IV)

The Volkov Law Group on

We repeatedly hear about the importance of beneficial ownership, and the requirement that companies confirm beneficial ownership of its third-parties, vendors and suppliers.  At the same time, there is increasing pressure...more

The Volkov Law Group

Episode 120: Interview of NAVEX Global Third-Party Risk Officials: Chris Bailey and Stephen Gooding

The Volkov Law Group on

Global companies face extraordinary risks through their reliance on third-party agents, distributors, consultants and vendors/suppliers. Federal prosecutors and regulators have had a record year in FCPA and sanctions...more

NAVEX

[Webinar] How do I Demonstrate the Advantages of an Automated Third Party Due Diligence System to Senior Leadership? - July 8th,...

NAVEX on

Join NAVEX Global and a group of your peers for a short session where we’ll answer your questions and share solutions about third party due diligence and risk management software....more

NAVEX

Building Your Third Party Due Diligence Checklist: The Right Pieces, Processes and Presumptions

NAVEX on

A comprehensive approach to third party and vendor due diligence management is essential for any company conducting business globally. A strong due diligence program’s purpose is two-fold...more

NAVEX

What To Ask: Assessing Third Party Risk Management Solutions

NAVEX on

The risks posed by third party relationships (vendors, suppliers, agents, distributors, resellers, etc.) are huge – and often unaddressed. Regulations continue to increase as businesses become more global, and more and more...more

14 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide