Community

Supply Chain Management for Critical National Infrastructure

Risk Ledger is being used across multiple critical infrastructure companies including 80% of the UK water companies, many of the major rail network providers and telecoms companies.

Make staying on top of regulations easy. We maintain our own standardised framework that is updated every 6 months - it adheres to the major security standards (including EBA, DORA, NIS, ISO etc.)

Canvas
Average Compliance
Network

Be part of something bigger

When you join Risk Ledger you’re not only gaining access a supply chain management tools, you’re joining the Risk Ledger community. Collaborate with other CISOs, benchmark, learn and grow, understand what are best practices, exchange experience and knowledge and strengthen the community.

Join our defend as one network

Southern Water
United Utilities
UK Health Security Agency
National Health Service
Yorkshire Water
Portsmouth Water
BAE Systems
Pennon
Thames Link
Case Study

How the Civil Aviation Society utilised Risk Ledger to build trust in their third party risk programme.

Civil Aviation Authority
Civil Aviation Authority

“The interface and dashboard exceeded initial expectations — it was great to have the ability to have a snapshot of all suppliers. The ability to pull a quick report is very useful, and gives me a lot of confidence when people ask how we’re managing supply chains.”

David Malkin
Divisional Information Security Officer (DISO) for UKHSA

Make staying on top of regulations easy

We maintain our own standardised framework that is updated every 6 months - it adheres to the major security standards (including EBA, DORA, NIS, ISO etc.)

Canvas
Certifications

See the security of your suppliers in real time

Profiles on Risk Ledger are owned by the supplier and are updated regularly so you’re confident in the risk data you’re being given

Canvas
Dashboard

Automate your risk assurance tasks

Risk ledger automates all the boring manual tasks in addition it acts as a centralised hub for when you have auditors/need to evidence something

Canvas
Start reassessment
Pattern Trapezoid Mesh
Share of your suppliers already on Risk Ledger
from 20%
Reduction in time spent reviewing vendors
from 75%
Time for a new supplier to complete security assessment
up to 10 days
Network Trace
FAQ

Frequently asked questions

Is Risk Ledger compliant with regulatory standards for CNI sectors?

How does Risk Ledger help manage risks specific to CNI sectors?

Can Risk Ledger help with compliance audits for critical infrastructure?

Network Trace
Report

Wondering where the greatest gap in your supply chain is?

Our latest report provides access to benchmarking data for your suppliers, quick wins for busy CISOs and a set of practical recommendations

Canvas
Report
Trapezoid
Reviews

“As a user, the tool is already indispensible.”

Excellent service from initial enquiry through the post-onboarding support

“The Risk Ledger Platform is easy to implement and includes a number of features to improve efficiency when monitoring supplier compliance”.

Verified User in Hospital & Health Care
Mid-Market(51-1000 emp.)

A single source of information to share with multiple clients

“Once you’ve taken the time to answer all the questions, it is easy to share with all potential clients who require similar information”.

Verified User in Utilities
Small-Business(50 or fewer emp.)

Easy to use, collaborative and efficient

"It was easy to add colleagues to complete the different sections! Say goodbye to spreadsheets. It also had links if you were unsure of where to head with the questions which helped a lot".

Verified User in Outsourcing/Offshoring
Enterprise(> 1000 emp.)

Supply chain assurance made easy

"One of the main advantages of Risk Ledger is that suppliers complete a single profile which they can then share with their clients on request. Suppliers benefit as they only have to do it once (besides regular updates obviously). Clients benefit too as other companies on Risk Ledger may have previously invited the same supplier which means it is already available as soon as they accept the connection requests".

Verified User in Financial Services
Mid-Market(51-1000 emp.)

Great tool, that has transformed the way we cyber assess suppliers

"Easy to use and maintain cyber assessment tool, lots of great features including dashboards, reports, supplier discussions and notifications. Little push back from suppliers to complete assessments".

Verified User in Public Safety
Enterprise(> 1000 emp.)

A simple-to-use and comprehensive tool to secure your supply chain

"It provides a single place to maintain and share your business security profile".

Director of Managed IT Services
Small-Business(50 or fewer emp.)

Clean, Clear and Organised Risk Management

"There are no messy emails to track or Excel Spreadsheets to revision control. It clearly tracks progress and the action owners against each key point".

Lifecycle & Programmes Strategy Manager
Enterprise(> 1000 emp.)

Ease of use and frictionless experience

"AI capability that saves time makes a real difference. Often enough, there is a lot of repeat work going on with InfoSec which can be frustrating".

Managing Director
Small-Business(50 or fewer emp.)

Excellent for Suppliers assessment management

"The supplier risk map is great for supply chain visualisation, as well as the emergin threat section, especially with the coverage of the MS/Crowstrike global issues. The team were so quick in getting this deployed on the same day and allowed us to start tracking supplier responses very quickly".

IT Security Analyst
Enterprise(> 1000 emp.)

Comprehensive Review and Analysis of Risk Ledger

"It consolidates risk information in one place, making it easier to identify, assess, and manage risks across the organization".

Verified User in Computer & Network Security
Mid-Market(51-1000 emp.)
Pattern Trapezoid Mesh

Defend against supply chain attacks with Defend-As-One.

No organisation is an island.