As best practice, being able to address security requirements with your critical service providers is consistently included in all of the major cyber security standards.
Why is this? Paul Traill, our Head of Risk and Compliance has produced an article for In-procurement Magazine on the topic of ensuring your supply chain is secure and the ways in which organisations can achieve this precisely and effectively.
The article includes overviews into the security risks that a business could be currently facing, the ways in which these can be mitigated and an in-depth explanation into specific practices to be undertaken with the assistance of key tabular data illustrating the security/data protection standards and suppliers assurance.
How PGI can help secure your supply chain
Of course, cyber security should be a key consideration in any decision on new partnerships/collaborations or decisions on suppliers, providers, mergers and acquisitions, but we know you know that. However, sometimes it’s a matter of getting started and that’s often the hardest part.
We offer a range of services to help you gain a deeper understanding and more control over your supply chain management, including our Cyber Assurance as a Service offering, which enables you to call on a full team with specialist expertise for your information and cyber security requirements. This knowledge includes creating and implementing risk assessment processes, creating supplier assurance policies and procedures (such as security-related contract clauses, and due diligence questionnaires), and carrying out onsite supply chain audits.
If you’re ready to take more control of your supply chain, talk to us.
Insights
MEDIA RELEASE: PGI partners with CREST to make official, standardised cyber security training materials available
Protection Group International (PGI) is pleased to be the Official Training Material Developer to CREST, the global not-for-profit body supporting the cyber security industry.
Guidelines for the 2025 changes to Cyber Essentials requirements in the education sector
The Department for Education (DfE) is changing its IT security requirements to improve resilience against cyber threats in the education sector.
Manual vs. automated penetration testing: Which offers more value?
Rapid developments in AI have seen more companies adopting automated penetration testing to identify IT infrastructure vulnerabilities.