Build credibility. Find opportunity. Advance in cybersecurity.
  Saturday, 04 April 2026
  1 Replies
  1 Visits
0
Votes
Undo
How should a team validate Third-party risk management in practice?SecurityTalent knowledge answer. Members may add responsible, source-based context; do not post secrets, personal data, exam dumps or recalled live exam questions.
4 months ago
·
#2267
Accepted Answer
0
Votes
Undo
Define the expected outcome—evaluates and monitors supplier security obligations throughout the relationship—and test it with realistic scenarios. Record the owner, scope, evidence, exceptions and review date. Combine technical testing with operational confirmation so a configured control is not mistaken for an effective control.NIST Cybersecurity Framework 2.0: https://www.nist.gov/cyberframework
4 months ago
·
#2267
Accepted Answer
0
Votes
Undo
Define the expected outcome—evaluates and monitors supplier security obligations throughout the relationship—and test it with realistic scenarios. Record the owner, scope, evidence, exceptions and review date. Combine technical testing with operational confirmation so a configured control is not mistaken for an effective control.NIST Cybersecurity Framework 2.0: https://www.nist.gov/cyberframework
There are no replies made for this post yet.