Third-party cyber-risk management helps organisations identify which suppliers can materially affect security or resilience and apply proportionate controls throughout the relationship lifecycle. The service supports procurement, risk, legal, security and business owners that need consistent supplier decisions instead of one-size-fits-all questionnaires.