The original post: /r/cybersecurity by /u/Intrepid_Pear6960 on 2024-11-06 17:05:56.

Hello all, part of our policy includes conducting risk management reviews on any 3rd party software we utilize. Currently i track how many we conduct each quarter, their risk level and importance to the company. Are there any other metrics anyone could recommend collecting on this process? This is something our internal auditors spend alot of time picking at and what to see more data but i cant come up with any more info that’s easy to provide them with.