Supply Chain & Third Party Risk
TL;DR. ISACA has effectively called time on the supplier security questionnaire, and Australia’s regulators have moved the same way. Under CPS 230, CPS 234, the SOCI…
September 2, 2026
6 min read
Read the article →
Supply Chain & Third Party Risk
On 19 August, the Australian Signals Directorate’s Cyber Security Centre issued a high alert titled, without much ceremony, “Act quickly.” Most of the organisations who should…
August 27, 2026
6 min read
Read the article →
Supply Chain & Third Party Risk
TL;DR. ISACA, the global professional body for governance, risk and assurance, has published a blueprint for modern third-party risk built on five shifts: a contextual risk…
August 24, 2026
8 min read
Read the article →
Supply Chain & Third Party Risk
AUSTRAC's Operation Claw fraud was legible in the network of intermediaries the whole time. A questionnaire was never going to see it there. Here is where it actually lived.
August 19, 2026
9 min read
Read the article →
Supply Chain & Third Party Risk
Somewhere in your organisation this morning, a spreadsheet is on its way to a supplier who will spend the better part of a week answering three…
August 12, 2026
8 min read
Read the article →