乐鱼(Leyu)体育官网

Industries

Helping clients meet their business challenges begins with an in-depth understanding of the industries in which they work. That鈥檚 why 乐鱼(Leyu)体育官网 LLP established its industry-driven structure. In fact, 乐鱼(Leyu)体育官网 LLP was the first of the Big Four firms to organize itself along the same industry lines as clients.

How We Work

We bring together passionate problem-solvers, innovative technologies, and full-service capabilities to create opportunity with every insight.

Learn more

Careers & Culture

What is culture? Culture is how we do things around here. It is the combination of a predominant mindset, actions (both big and small) that we all commit to every day, and the underlying processes, programs and systems supporting how work gets done.

Learn more

Third-party security assessments

Modern thinking towards assessments

The current model in assessing third-party security/third-party risk is time consuming, resource intensive, and often not well correlated to actual risk. Even with an ever-changing cybersecurity landscape, companies often use static questionnaires that provide only a snapshot of the third party鈥檚 cybersecurity posture. What鈥檚 the fix? How do we design a risk-based approach that allows us to focus on the most critical third parties and not view every third party through the same lens?

Most third-party risk management programs require a due diligence questionnaire that can be quite lengthy and cumbersome. These questionnaires are often a one-size-fits-all approach and, in many cases, do not accurately or adequately assess the third party.

Adding to the difficulty of these questionnaires is the time it takes to review and follow up with any items that are not in line with the company鈥檚 expectations. Corners are cut and data is needlessly exposed using unencrypted files and unsecure email clients.

In addition, the questionnaire process is static. It is nothing more than a point-in-time snapshot of a third-party鈥檚 cybersecurity posture. Questionnaires are not well correlated with current cyber incidents because they are not updated frequently enough to keep up with the changing landscape. Often these questionnaires are simply a compliance measure and in the case of cyber insurance are rarely used by underwriters to determine premiums and coverages.

Using a combination of expected business impact in the case of a cyber incident to define overall third-party cyber risk and the criticality of a supplier鈥檚 role within your organization, it is possible to greatly decrease the number of third parties that receive a questionnaire. Explore our latest publication that covers modern thinking towards assessments.

Dive into our thinking:

Third-party security assessments

Download PDF

Meet our team

Image of Chetan Gavankar
Chetan Gavankar
Principal, Advisory, Cyber Security, 乐鱼(Leyu)体育官网 US

Thank you!

Thank you for contacting 乐鱼(Leyu)体育官网.聽We will respond to you as soon as possible.

Contact 乐鱼(Leyu)体育官网

Use this form to submit general inquiries to 乐鱼(Leyu)体育官网. We will respond to you as soon as possible.

By submitting, you agree that 乐鱼(Leyu)体育官网 LLP may process any personal information you provide pursuant to 乐鱼(Leyu)体育官网 LLP\'s .聽

An error occurred. Please contact customer support.

Job seekers

Visit our careers section or search our jobs database.

Submit RFP

Use the RFP submission form to detail the services 乐鱼(Leyu)体育官网 can help assist you with.

Office locations

International hotline

You can confidentially report concerns to the 乐鱼(Leyu)体育官网 International hotline

Press contacts

Do you need to speak with our Press Office? Here's how to get in touch.

Headline