Archive

Category: Articles

Articles

Vendor Due Diligence in TPRM: The Complete 2026 Step-by-Step Guide

May 6, 2026 8 min read

Vendor due diligence is the structured process risk professionals use to evaluate a new vendor before onboarding. This complete 2026 guide covers every stage — from inherent risk scoring and security questionnaires to financial stability checks and regulatory screening — so you can build a defensible, repeatable process.

Articles

NIS2 Third-Party Risk Management: Complete 2026 TPRM Compliance Guide

May 5, 2026 7 min read

The NIS2 Directive significantly expands third-party risk obligations for organisations across 18 sectors in the EU. This guide explains exactly what NIS2 requires from your vendor risk management programme, which sectors are in scope, and the practical steps compliance teams must take in 2026.

Articles

ISO 27001 Third-Party Risk Management: Complete 2026 Guide

May 3, 2026 8 min read

ISO 27001:2022 places explicit obligations on organisations to manage third-party and supplier risk. This guide walks risk and compliance professionals through every relevant control, how to map them to your TPRM programme, and what auditors will look for in 2026.