Entries Tagged as 'vendor risk'
by Jay Heiser | July 5, 2011 | 1 Comment
I get a never-ending stream of questions that usually amounts to something like “What control tasks do I need to do to be sure that this SaaS service we are going to use will be adequately secure?” Unfortunately, at this point in time, SaaS providers offer relatively little support for enterprise control over anything. Assuming that the [...]
Category: Applications Cloud IAM IT Governance risk management security Vendor Contracts Tags: backups, BCP/DR, Cloud, cloud security, continuity, disaster recovery, information security, malware, phishing, Trojan horse, vendor risk
by Jay Heiser | May 23, 2011 | 1 Comment
Its not surprising that as a technology approaches the top of the Hype Cycle, some of the vendors turn their Spin Cycle up to 11, which means there are going to be some disappointed buyers, especially those with high expectations for data encryption, and data recovery.
Category: Cloud IT Governance risk management security Vendor Contracts Tags: Cloud, cloud security, continuity, disaster recovery, information security, infosec, outsourcing, risk management, security, Security-Summit-NA, vendor risk
by Jay Heiser | May 11, 2011 | Comments Off
Your company will usually do whatever it needs to do to survive—so will your supplier. They are not marching to your music, they are not heading towards the same goal line, they are not thinking your thoughts, and their ultimate loyalty is to themselves, not to you.
Category: Cloud risk management Vendor Contracts Tags: contracts, outsourcing, Security-Summit-NA, service providers, sourcing, vendor lockin, vendor risk
by Jay Heiser | April 19, 2010 | 1 Comment
Once upon a time, a pair of peddlars arrived at the Enterprise. Explaining that they were leading providers, they were immediately granted a meeting with King Cio. They explained to Cio that he was wearing outdated garments. He could not only dramatically increase his flexibility, but he could also fire some of his most annoyingly [...]
Category: Cloud risk management Tags: Cloud, cloud computing risk, Hans Christian Andersen, IT risk, market mania, risk, vendor risk