Skip to content
#

third-party-management

Here are 4 public repositories matching this topic...

Language: All
Filter by language

Third-party and software supply chain risk assessment of the 2026 open-source compromise wave (Trivy, Bitwarden, Checkmarx → OpenAI/Vercel downstream). Full GRC workflow: methodology, risk register, NIST CSF 2.0 / ISO 27001 / SP 800-161 control mapping, TPRM program response, KRIs, and board briefing. OSFI B-10/B-13 context.

  • Updated Jul 18, 2026

Add this topic to your repo

To associate your repository with the third-party-management topic, visit your repo's landing page and select "manage topics."

Learn more