jason
cd ~ cd posts_ cd learn_ man jason_

visitor@thefish.nz:~$ grep -r third-party-risk

#third-party-risk

all account-compromise analyst-methodology authentication beginner betrayal blue-team career cis-controls cloud-security control-mapping control-testing ctf dark-waters dark-web detection detection-engineering dfir dkim dmarc email-security entra-id field-guide google-dorking governance http-server identity incident-response interview investigation iso-27001 kase-scenarios kql lolbins microsoft-365 networking nist-csf nzism orkla osi-model osint penetration-testing phishing physical-security powershell proxmark3 qilin ransomware research rfid risk-management risk-reporting scoping security-assurance security-frameworks security-metrics siem skills soc soc-2 social-media socmint spf spiderfoot splunk supplier-assurance third-party-risk threat-actors threat-hunting tools trace-labs try-hack-me verification vulnerability-management windows windows-event-logs
  • Inherent Risk Comes First: Supplier Security Assurance for Analysts 28 September 2026 socsupplier-assurancethird-party-risksecurity-assurancerisk-managementfield-guide

← all posts

The Fish has probably gone down another rabbit hole.

© 2026 Jason Hill. Built with Eleventy.