Governance
Data & Privacy Governance
Supplier and third-party privacy exposure, delivered via Skydra360.
What this is
Supplier and third-party privacy exposure, delivered via Skydra360.
Visibility of where personal data travels through your third parties, the safeguards in place and the gaps that need closing — delivered through Skydra360 (see the Technology page).
What you get
- Third-party personal-data flow view
- Privacy and data-protection gap assessment
- Supplier safeguards and contractual requirements
- Remediation plan with owners
Best for
Organisations with personal data processed by multiple third parties.
See how an engagement runs →Benchmarked Against
- NIST Cybersecurity Framework (CSF) 2.0
- NIST SP 800-161
- ISO/IEC 27001
- ISO/IEC 27002
- ISO/IEC 27005
- ISO/IEC 27036
- ISO/IEC 27701
- ISO/IEC 42001 (AI management systems)
- ISO 22301 (business continuity)
- NIS2 Directive
- DORA (where applicable)
- UK GDPR & Data Protection Act 2018
- NCSC Cyber Assessment Framework (CAF)
- Cyber Essentials / Cyber Essentials Plus
- CIS Controls
- SOC 2 (Trust Services Criteria)
Talk to us about scoping this service.
A short, no-obligation discovery call to understand your risk profile and where to start.