ÌìÃÀ´«Ã½app

Working with external parties

Working with third parties

ÌìÃÀ´«Ã½app relies on a network of suppliers, vendors, and other third parties including international partners to support its operations.

Risks when working with third parties

The following Cyber security risks arise when external parties have access to our systems, networks, or sensitive data:

  • Data breaches of third-party systems which contain ÌìÃÀ´«Ã½app data such as emails and credit card information.
  • Intellectual property theft arising from insecure practices.
  • Business continuity risks where the vendor is unable to provide the required service to ÌìÃÀ´«Ã½app.
  • Foreign Interference where a ÌìÃÀ´«Ã½app insider is providing access to a foreign entity.
  • Supply chain attacks to infiltrate ÌìÃÀ´«Ã½app indirectly.

How we protect our data and systems

  • Safeguard any ÌìÃÀ´«Ã½app data and information shared by reinforcing robust access controls.
  • Prioritise cyber security due diligence.
  • Embed cyber security requirements and standards in contractual agreements.
  • Continuously monitor our environment against potential vulnerabilities arising through the supply chain.
  • Raise a ticket in the if you need to engage the Cyber Security Team when engaging third parties. They can assist with cyber security due diligence.

Report a concern

Report any suspected or actual supply chain risks to the Cyber Security Team at it-security@uow.edu.au.