The GRC Podcast’s Post

View organization page for The GRC Podcast, graphic

1,240 followers

Sometimes we need to lead with the taboo statement. Traditional VRM as practiced by most businesses today amounts to little more than an elaborate "cover your ass" ritual. The notion that questionnaires and compliance reports alone can significantly reduce risk is misleading at best and willfully ignorant at worst. The most effective way to reduce vendor risk is by proactively insulating your business, your customers, and your data from inevitable issues, rather than relying solely on "industry best practice" VRM method.

Traditional (Passive) Vendor Risk Management is Bullsh*t - The GRC Podcast

Traditional (Passive) Vendor Risk Management is Bullsh*t - The GRC Podcast

buzzsprout.com

To view or add a comment, sign in

Explore topics