Refocusing Vendor Security on Risk Reduction(engseclabs.com) |
Refocusing Vendor Security on Risk Reduction(engseclabs.com) |
There's a startup vendorsec playbook that mostly revolves around SOC2 and security people increasingly call out how performative it is. This piece is about non-performative stuff.
† vendorsec: the part of your security program where you do something about all your third-party vendors