I was asked by a journalist to answer a bunch of supply chain security questions today and I have to say, I am just a bit exasperated at this point.
Nothing wrong with the questions, but the expectation that there is a template for how you assess risk for your business or a protocol you need to follow is deeply frustrating.
Knowing how your business works and what data you must protect is your job. No one else can figure this out for you. There isn't a service, a survey, or a AI agent that can do this for you.
Risk management is hard. In a field that changes at the pace of #InfoSec it often feels impossible, but looking for shortcuts or copying your friends answers isn't going to get the job done.
Dedication, diligence and determination are the way forward.