Florida’s inaugural National Cancer Institute- designated Comprehensive Cancer Center, the institution stands among the top 30 elite cancer centers in the U.S. that are part of the National Comprehensive Cancer Network. The research center is a global leader in the fight against cancer. With its integration of world-class researchers and care specialists working collaboratively, the center is uniquely positioned to revolutionize cancer treatment, elevate care, and save more lives.
With a mission to contribute to the prevention and cure of cancer, the center engages in cutting-edge biomedical research and provides comprehensive patient care. It collaborates with a vast network of third-party vendors, including suppliers of biomedical research tools, IT services, HR applications, and other essential services, to support its multifaceted operations. Additionally, the center recognized potential hidden risks from subcontractors or service providers that their third-party vendors rely on, known as fourth parties. [To gain a deeper understanding of the role of Fourth Parties in Third-Party Risk Assessment, download our eBook.] The cancer research center aimed to improve its risk management processes, particularly for third-party and internal IT applications, while considering the added complexity of fourth-party risks. However, the institution faced significant challenges due to the limitations of its two separate legacy systems, which managed vendor and internal IT risks independently. To address these issues, the center implemented IBM OpenPages with the assistance of iTech GRC, an IBM OpenPages certified and premier partner.
The research center faced significant challenges in managing the risks associated with its third-party vendors and internal IT applications due to the limitations of its legacy systems.
Challenge 1: Vendor Risk Management
Challenge 2: Internal IT Risk Management
The team performed annual assessments of internal IT applications, evaluating them based on a set of cybersecurity and risk controls. These assessments were conducted both at the individual application level and across the entire enterprise. For each internal application, the team assessed and rated its risk and control measures manually. They then aggregated these evaluations to assess the overall risk and control environment of the enterprise, using approximately 60 different criteria. After completing the assessments, the team manually generated comprehensive reports.
The cancer research center implemented IBM OpenPages, facilitated by iTech GRC, an IBM OpenPages certified partner. This comprehensive solution addressed their challenges by providing an integrated and automated risk management platform.
Streamlined Third Party Risk Management
Improved Internal IT Risk Management
The implementation of IBM OpenPages resulted in significant improvements for the cancer research center:
Our GRC experts implement a bespoke strategy to effectively manage and monitor your third-party risks.
With the help of our efficient methodology and deep knowledge of IRM best practices, we help you get a rapid return on your project and software investment.
Agile, Waterfall, or a combination of both - we discuss your requirements and suggest the best methodology for implementation.
We work with your development team to make real-time adjustments to the OpenPages in your development environment by doing a gap analysis.
With the help of instructor-led 8-hours long training courses, we guide your implementation team through the OpenPages configurations.