BitSight: Effectively Managing Cyber Risk In Supply Chains

By Jack Grimshaw
The increasingly interconnected global supply chain has opened the door to new risks, including the threat of seriously damaging cyber attacks...

Organisations must begin the process of becoming more resilient and capable of defending themselves against unseen threats, with cybersecurity becoming such a prominent matter in all industries globally in the last few years. Supply chain risk management strategies must include cybersecurity now, or face losing significant amounts of money and business through damages.

A BitSight report has explored McKinsey & Company research to take a closer look into how organisations around the world have dealt with the growing threat of cybercrime.

Knowing what needs to be dealt with is key to success when creating a risk management strategy, but the issue throughout the industry tends to be a widespread failure to understand where to begin. 

Achieving true transparency throughout an entire supply chain network is very difficult to achieve, with many different points of contact involved. Proprietary data restrictions and the scope and scale of risk also needs to be considered. It can be very easy to overwhelm and overwork IT or cybersecurity teams when creating and working to risk mitigation plans.

It is clearly very easy to make it impossible for teams to address, quantify and mitigate cyber risks, but without these insights that transparency can provide, supply chains will be under constant threat of attack.

Security ratings are significantly effective to organisations in their bid to identify risky vendors and vulnerabilities in the supply chain. The ratings provide the ability to effectively streamline contingency planning and helps to put procedures in place to protect organisations from attacks and breaches in their networks.

Security ratings work similarly for businesses as credit scores do for individuals. CISOs can use these ratings to quickly and effectively communicate the size and severity of the risks posed to supply chains to members of the C-suite, the boardroom, or with any vendors in question. The data provided by these can simplify conversations and drive easier decision making for everyone.

Rated on a scoring system that ranges between 250 and 900, the ranking is higher for vendors who pose less threat. BitSight research discovered that vendors with a security rating of 500 are five times more likely to be breached by cyber attacks than those with a score that is 700 or higher.

59% of breaches currently take place with third-party vendors, managing supply chains and the risks that cybercrime can bring with speed and conviction is the key to not only success, but survival for global supply chain networks.

Share

Featured Articles

P&SC LIVE New York 2024 Virutal - SAVE THE DATE

Don’t miss out on your chance to attend Procurement & Supply Chain LIVE New York in 2024 Virtually, 5-6 June

Charities & NGOs Submit to The Global P&SC Awards for FREE

The Global Procurement & Supply Chain Awards hosted at P&SC LIVE London Sept 2024 welcomes charities and NGOs to submit for FREE

Procurement & Supply Chain LIVE: 2024 Dates to Remember

Don’t miss out on your chance to network with peers and leading global C-suite executives from the procurement and supply chain industry

Gartner Unveils Top Supply Chain Technology Trends for 2024

Technology

What the Latest CSDDD Milestone Means for Supply Chains

Sustainability

Aniebo Etudor from Baker Hughes to speak at P&SC LIVE Dubai

Digital Supply Chain