Signed in as:
filler@godaddy.com
Signed in as:
filler@godaddy.com
TPRM is evolving space with uneven maturity levels around the globe. Some industries are leading the path due to more strict regulatory requirements whereas others are lagging behind for number of reasons i.e. massive legacy digital footprint, late digital transformation or simply competing priorities with TPRM being pushed down the list.
2025 marks pivotal change with TPRM gaining attention of C-suite executives, why? The answer is riding the shock waves of recently disclosed data breaches by Oracle and Microsoft an many more others, which had major consequences for most of the businesses irrespective of the size, regional representation or industry.
Today's spot light is on Japan🇯🇵, where i had a privilege to present TPRM topic at Risk Management Summit organized by Gartner. Here's briefing notes i took as result of engagements with the participants:
-all discussion parties acknowledged at least one data breach took place in their company's ecosystem in 2024. The lack of visibility of the rapidly changing cyber risk vectors within supply chains is one of the core concerns for CISO organizations in 2025.
- Cyber hygiene topic is standing agenda item at a board level - at least once per year, whereas in the past was not considered as important enough for C-suit. There is rapidly increasing demand within C-suit for more stringent oversight of cyber hygiene native to supplier ecosystem.
- Regulatory requirements are becoming more stringent i.e. Active Cyber Defense Bill introduces more stringent data breach reporting requirements (incl supplier ecosystem) for operators of critical infrastructure from 2027.
all discussion parties confirmed fragmented supply chain risk management practices within Contract&Procurement org not factoring cyber risks or capturing those incompletely when considering sourcing. Not to say those are not kept up to date during contract/service lifecycle
Summary:
TPRM is heading towards mindful maturity level in Japan, with higher demand for robust multifaceted programs to istil sufficient controls across supplier ecosystem, there is high demand for skilled professionals in TPRM space, who can bring to the table expertise combined with the delivery expertise which spans across procurement, compliance, risk and governance/regulatory domains.
Copyright © 2025 Oleg Stryzhak - All Rights Reserved
Powered by Supply Chain Avengers