Gartner defines IT vendor risk management (IT VRM) as the discipline of addressing the residual risk that businesses and governments face when working with external service providers, IT vendors and related third parties. The scope typically addresses risks related to data protection, business continuity, security and other risk domains as relevant to laws, regulation and industry practices.
"Great product for initial and ongoing assessments!"
When I first started doing security assessments on third-parties, it would take several hours to do the initial research. BitSight does all the initial work for me and then summarizes it into an overall risk score. I compared this score to a FICO when dealing with other departments and they immediately understood. Furthermore, the reports are kept up-to-date daily and configurable alerts are available for vendor score changes. This is far better than the once-per-year snapshot I was doing.
"Intuitive tool with great customer support"
Overall, we have had a good experience using the tool. Our customer service team is very responsive and prioritizes our relationship. The system is user friendly and the scorecard provides the insight that we are looking for.
"UpGuard VRM: Transforming Cybersecurity with Innovative Features"
UpGuard VRM (Vendor Risk Management) is an excellent tool for identifying vulnerabilities on external surfaces. This solution was purchased recently and customized as per our requirement like, third party & forth party risk monitoring, unlimited vendor domain scanning, Questanaire library setup as per ISO standard. UpGuard implementation ran smoothly for account setup and configuration, multiple training sessions, and communicating product updates regarding rating changes. UpGuard customer support is good for 24X7X365.
"Venminder - From the perspective of a newer Executive Assistant"
I have had a very positive experience with Venminder. I was new to vendor management (and I am still learning) since I started working as our Executive Assistant last July. The Venminder team has been very helpful and willing to suggest ways to improve our risk management program as well as provide training when needed.
"Minimize vendor risk with OneTrust third-party risk software"
OneTrust has some exceptional risk management features like dynamic assessments for vendor risk using inbuilt logics for automation in risk identification and out-of-the-box risk mitigation recommendations
"Harnessing Black Kite for Effective Third-Party Risk Management"
We selected Black Kite to execute on our goals related to Third Party risk. We monitor higher risk vendors and have received regular, meaningful updates that require those vendors to action.
"A useful software service with a lot of ongoing support"
Was a fairly smooth transition and they provide an abundance of follow up support.
"Versndor risk management with serviceNow VRM"
I have worked on VRM Implementation for one of the client engagements in my previous organization for risk mitigation.
"Excellent platform for better Vendor risk governance and controls"
Archer Third party governance tool is a must have solution to manage and govern the vendor risks timely to address the challenges posed to organization well in advance. Methodical assessments for validating and monitoring the risks in real time basis, approval mechanism for exception management and tracking. It quantifies the business risks which is presented on the customizable dashboard on a real time is very useful to take actions. Ability to download the customized reports, transparent workflows, integration capabilities to the other tools is quick and smooth. Automation capabilities can be improved to manage the manual tasks, overall, it's a good tool with customized options.
"Highly configurable Vendor Management tool"
ProcessUnity does a great job of partnering with their clients to configure the tool to do almost anything you need it to do. The ability to configure the tool myself, without the help of IT, is invaluable. The tool contains change control so you can check out Production, make and test your changes in a sandbox environment and then promote those changes to Production. ProcessUnity is continually introducing new features, which typically have to be opted into, which makes their twice-a-year major releases much easier to prepare for. Their customer service is so fast and helpful too!
"An efficient cloud-based IT vendor risk assessment and governance management tool"
Coupa is emerging and expanding the product portfolio quickly, IT vendor governance tool is one among them with greater flexibility and capability this solution must have to manage the risks proactively where it allows to assess, validation and monitor the risk through a defined process with standard templates is very good. Robust functionalities help to assess the methods and avoid the risks in advance. The tool can track the exceptions and remediations. Reports and analytics are good. Overall tool is improving and futuristic to meet the requirements in advance, it has the capability to customize the risk metrics as per the internal requirements, good repository management and support team is good.
"Best End to End Third Party Cyber Risk Management Platform"
Best End to End Third Party Cyber Risk Management Platform.
"Exploring Security Ratings Use Cases in the Enterprise"
The security ratings for both our enterprise, potential new vendors, and our more critical vendors are the use cases we rely on at this time. We are starting to use the solution to push Action Plans to current service providers for remediation.
"Best tool for Automating the audit process."
High bond is very good software, that we have been using it for months now, it is a end to end platform which offers us to take care of risk management, security control, compliance and audits. It drives the innovation, streamlines the collaborations throughout the organization, also automates the repetitive tasks. very simple and easy user interface.
"Leveraging Third-Party Risk Assessment Tool for Efficient Vendor Evaluation"
We are using our client tool for the Third-party Risk assessment for our client vendors. It is a very user-friendly interface which automates and navigates in a proper strategic manner.
"TPRM done right!"
Enhanced our vendor management. The UI is great, it's intuitive, graphs are appealing and helps with enhanced visibility.
"Application for Supply chain management"
Vendor Management software is helping us to manage all our suppliers in a single platform, like placing order, issuing the PO, Adding new supplier all this kind of activities can manage in this software itself. Using this application we can easily handle all our supply chain activities
"A professional, reliable and responsive supplier. "
Very User-friendly, and great flexibility, easy to use, great dashboard.
"Centralized risk assessment platform to mitigate risks and with robust audit process"
Aravo third party management tool is robust and built to assess the risks associated with third party vendors in various methods and report with detailed analysis with exception management, approvals and tracking. Dashboard is visually delightful with different color coding on at supplier level, region and country level risk information in real time basis. It will provide the scorecard as per the predefined guidelines basis the risk factor and course correction. It has exhaustive list of features, simple to use and navigate, Implementation is quick and integration with other tools are seamless. It's reduced the risk through single source of truth with centralized view of risk back by standard process which simplifies to perform the audit trail.
"Insight provides the best customer experience in the industry"
Insight risk management has one of the best customer support and we are extremely happy since we started working with them.