All articles
Topic
Third-Party Risk
2 guides on Third-Party Risk — practical, audit-tested, and honest about the hard parts.
DORAThird-Party RiskFinancial Services
DORA for Suppliers: What ICT Providers to EU Financial Firms Must Do
DORA’s sharpest effect lands on the software companies that sell to banks, not on the banks. The contract terms your customer is obliged to extract, the register of information they will ask you to fill, and what to have ready first.
9 min read · 25 September 2026
Vendor RiskThird-Party RiskTPRM
Vendor Tiering: Stop Assessing Every Supplier the Same Way
A practical model for tiering vendors by data access and criticality, matching due-diligence depth to tier, and scoring third-party risk — so your team stops drowning in questionnaires.
2 min read · 11 September 2026