Remove Acceptable Risk Remove Audit Remove Security Remove Strategic
article thumbnail

Important KPIs for Successful Vendor Management

Reciprocity

Begin by determining your organization’s tolerance for cybersecurity risk. After acceptable risk levels have been established, evaluate vendors’ security performance — and if a vendor’s cybersecurity is too lax for your tastes, require that vendor to make improvements as necessary. Compliance. Staff training.

article thumbnail

The Difference Between Strategic and Operational Risk

Reciprocity

On the other hand, confusion about risks – and especially about strategic and operational risks – undermines an organization’s ability to manage risk well. This article addresses common questions about strategic and operational risk, such as: What are strategic risks and operational risks?