{"product_id":"9781806708116","title":"TPRM-Driven Supply Chain Cybersecurity : Connecting TPRM and supply chain security for operational resilience","description":"\u003cp\u003eIntegrate cybersecurity into TPRM to reduce vendor breach impact, meet DORA and NIST C-SCRM expectations, and monitor fourth-party exposure using SBOM-driven diligence, threat intelligence, and automation.\u003c\/p\u003e\n\n\u003cp\u003eKey Features\u003c\/p\u003e\n\n\u003cp\u003eDesign TPRM lifecycle linking vendor risk to cyber -outcomes\n\u003cbr\u003eMap NIST, ISO 27036, DORA, GDPR to audit-ready controls\n\u003cbr\u003eEnforce contracts, SLAs, due diligence across 3rd\/4th parties\n\u003cbr\u003eImplement continuous monitoring beyond questionnaires\n\u003cbr\u003e-Develop breach response playbooks with SBOM\u003c\/p\u003e\n\n\u003cp\u003eBook DescriptionModern organizations rely on complex vendor ecosystems, but third-party risk management (TPRM) and cybersecurity often operate in silos. This book shows how to connect vendor risk management with supply chain cybersecurity using a practical, lifecycle-driven approach.\n\u003cbr\u003eYou'll design a program covering onboarding, vendor risk assessment, continuous monitoring, and offboarding. Instead of static questionnaires, you'll use threat intelligence, security ratings, and real-world signals to strengthen third-party security and improve decisions across procurement, legal, and security teams.\n\u003cbr\u003eThe book aligns practices with NIST supply chain risk management (C-SCRM), ISO 27036, DORA compliance, and GDPR, translating them into audit-ready controls and governance.\n\u003cbr\u003eYou'll learn how to embed vendor due diligence into contracts, manage fourth-party risk, and extend security requirements across suppliers. It also covers SBOM (Software Bill of Materials) standards such as SPDX and CycloneDX to improve software supply chain transparency.\n\u003cbr\u003eFinally, you'll develop vendor breach response playbooks and apply automation and AI-driven risk scoring to scale your program. By the end, you can build a resilient, intelligence-led TPRM capability.What you will learn\u003c\/p\u003e\n\n\u003cp\u003eBuild a TPRM lifecycle for supply chain cybersecurity\n\u003cbr\u003ePerform vendor risk assessment and tiering\n\u003cbr\u003eAlign with NIST C-SCRM, ISO 27036, and DORA\n\u003cbr\u003eEmbed vendor due diligence into contracts and SLAs\n\u003cbr\u003eIdentify and manage fourth-party risk exposure\n\u003cbr\u003eApply SBOM (SPDX, CycloneDX) to supplier security\n\u003cbr\u003eRun vendor breach response for supply chain incidents\n\u003cbr\u003eUse AI and automation to scale vendor risk management\u003c\/p\u003e\n\n\u003cp\u003eWho this book is forThis book is for cybersecurity leaders, TPRM\/VRM practitioners, risk managers, and procurement professionals who need a repeatable way to evaluate and monitor vendors and critical suppliers. Compliance teams and in-house counsel working with DORA, GDPR, HIPAA, and related requirements will also benefit. Basic familiarity with security principles and vendor management helps.\u003c\/p\u003e","brand":"Packt Publishing Limited","offers":[{"title":"Default Title","offer_id":48872050524395,"sku":"EB_CP1400_F24-01_SIMS","price":43.05,"currency_code":"SGD","in_stock":true}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/0758\/4484\/5803\/files\/9781806708116-1.jpg?v=1785900866","url":"https:\/\/kinokuniya.com.sg\/products\/9781806708116","provider":"Books Kinokuniya Singapore","version":"1.0","type":"link"}