GRC Engineering

VRM

Vendor Risk Management, the process of assessing and monitoring third-party vendors for security, compliance, and operational risks. VRM programs evaluate vendors through security questionnaires, SOC 2 reports, and continuous monitoring.

The Authority Brief

One compliance analysis per week from Josef Kamara, CPA, CISSP, CISA. Federal and private compliance, written for practitioners.