{"type":"rich","version":"1.0","provider_name":"Transistor","provider_url":"https://transistor.fm","author_name":"Certified: The CISSP Audio Course","title":"Episode 17: Third-Party Risk Management","html":"<iframe width=\"100%\" height=\"180\" frameborder=\"no\" scrolling=\"no\" seamless src=\"https://share.transistor.fm/e/9c20bfe1\"></iframe>","width":"100%","height":180,"duration":824,"description":"Today’s organizations rely heavily on vendors, contractors, and service providers—but each relationship introduces potential risks. In this episode, we cover the principles of third-party risk management, including due diligence, contractual controls, and ongoing monitoring. You’ll learn how to assess a vendor’s security posture, enforce security requirements through service-level agreements (SLAs), and respond when third-party weaknesses are discovered. This topic is increasingly important as supply chain attacks and vendor-based breaches become more common. Managing third-party risk is a core responsibility for any CISSP-certified leader.","thumbnail_url":"https://img.transistorcdn.com/d9_nCZ6FAcJZtI40GlZDxiFNpL1AiC2sOYG0iuIcKxk/rs:fill:0:0:1/w:400/h:400/q:60/mb:500000/aHR0cHM6Ly9pbWct/dXBsb2FkLXByb2R1/Y3Rpb24udHJhbnNp/c3Rvci5mbS9jZDBj/ZTAwNjliNTFjY2Ez/NTk1MTI1YmE2YWIx/OTY0NS5wbmc.webp","thumbnail_width":300,"thumbnail_height":300}