Episode

Third Party Risk in the Age of AI. A Spotlight on Black Kite

Podcast
Razorwire Cyber Security & InfoSec Insights
Published
Jun 3, 2026
Duration seconds
3016
Processing state
not_requested
Canonical source
https://razorwire.captivate.fm/episode/third-party-risk-in-the-age-of-ai-a-spotlight-on-black-kite
Audio
https://op3.dev/e/episodes.captivate.fm/episode/0ba47c62-e460-4df6-b389-9d0c597487af.mp3
JSON
/v1/public/podcasts/razorwire-cyber-security-infosec-insights-5584923/episodes/third-party-risk-in-the-age-of-ai-a-spotlight-on-black-kite
Markdown
/podcast/razorwire-cyber-security-infosec-insights-5584923/third-party-risk-in-the-age-of-ai-a-spotlight-on-black-kite.md

Actions

  • POST https://stenobird.com/v1/public/podcasts/razorwire-cyber-security-infosec-insights-5584923/episodes/third-party-risk-in-the-age-of-ai-a-spotlight-on-black-kite/transcription-requests
    Idempotently request low-priority transcript generation for this episode.
  • GET https://stenobird.com/podcast/razorwire-cyber-security-infosec-insights-5584923/third-party-risk-in-the-age-of-ai-a-spotlight-on-black-kite.md
    Read the agent-friendly Markdown representation of this episode resource.

Summary

Your vendors are adopting AI faster than you can assess them. What does that mean for your third party risk? Welcome to Razorwire, the podcast where we share our take on the world of cybersecurity with direct, practical advice for professionals and business owners alike. I'm Jim and in this Spotlight on Technology episode, I'm joined by Jeffrey Wheatman, Senior Vice President and Cyber Risk Strategist at Black Kite. Jeffrey previously spent over a decade as an analyst VP at Gartner where he launched their third party cyber risk management coverage. Third party risk management used to be fairly straightforward. If finance was happy and legal had done their redlining, you signed the contract and moved on. That world is gone. Organisations are now dependent on layers of vendors, suppliers and service providers, and the chain goes deeper than most security teams can see. When a logistics company can go from operational to out of business in five months after a ransomware attack, and one incident at Jaguar Land Rover can measurably affect UK GDP, the question isn't whether third party risk matters. It's whether your programme can keep up. This episode covers how the old model of spreadsheets and questionnaires is giving way to intelligence-led continuous monitoring, why AI has made the problem exponentially harder and how Black Kite is helping organisations cut through the complexity, from mapping supply chain connectivity and scoring ransomware susceptibility to cutting a 500-question vendor questionnaire down to 30. Three key talking points: You can't protect what you can't see: Most organisations know who their biggest vendors are. Beyond that, it gets murky fast. This episode gets into why even mature organisations still struggle to see past the first or second layer of…