FAQ
Third-Party Risk Management

What is supplier cyber risk?

Supplier cyber risk is the potential for a supplier’s technology, security practices, disruption or digital connections to affect an organisation. It includes direct compromise, service interruption, data exposure, vulnerable software and concentration in shared infrastructure. A supplier’s general score is only one part of the assessment; the same provider can create different risk for different customers. Supply Chain Intelligence maps the relationship and uses Digital Proximity to show how closely a supplier connects to critical systems. In practice, teams should record the supporting evidence, confirm ownership and business criticality, and connect the finding to an accountable workflow. This prevents a useful observation from becoming another isolated score or dashboard alert. The strongest implementation combines external intelligence with internal knowledge, supplier engagement and documented risk decisions, creating a view that remains useful as the digital ecosystem changes.