PLAY PODCASTS
Third Party Risk vs. Third Party Trust

Third Party Risk vs. Third Party Trust

Defense in Depth · David Spark

March 2, 202328m 40s

Audio is streamed directly from the publisher (traffic.libsyn.com) as published in their RSS feed. Play Podcasts does not host this file. Rights-holders can request removal through the copyright & takedown page.

Show Notes

All links and images for this episode can be found on CISO Series.

Businesses grow based on trust, but they have to operate in a world of risk. Even cybersecurity operates this way, but when it comes to third party analysis, what if we leaned on trust more than trying to calculate risk?

Check out this post for the discussion that is the basis of our conversation on this week's episode co-hosted by me, David Spark (@dspark), the producer of CISO Series, and our guest co-host is Yaron Levi (@0xL3v1), CISO, Dolby. Yaron and I welcome Dan Walsh, CISO, VillageMD.

Thanks to our podcast sponsor, TrustCloud

TrustCloud is the all-in-one platform to accelerate sales and security reviews, automate compliance efforts, and map contractual liability across your business. Connect with us to learn how you can transform security from a cost center into a profit driver with TrustCloud's programmatic risk and compliance verification tools.

In this episode:

  • When it comes to third party analysis, what if we leaned on trust more than trying to calculate risk?
  • Should we have a "glass half empty" or a "glass half full" attitude towards third party risk?
  • Wouldn't it be better to measure the level of how much we can TRUST the 3rd party?
  • Is it vitally important to assess how resilient the organization is to failure caused by each third party?