
Sign up to save your podcasts
Or
In this episode of the Procurement Software Podcast, host James discusses the critical topic of cybersecurity in procurement with expert Jano Bermudes from CyXcel.
They explore the importance of cybersecurity in vendor selection, the regulatory landscape, and the necessary precautions organisations must take to protect their data.
The conversation covers security questions procurement professionals should ask when evaluating software vendors, the importance of security certifications like ISO 27001 and SOC 2, and how companies—big and small—can mitigate cyber risks in their supply chains.
Jano shares insights into regulatory requirements such as GDPR and DORA, the complexities of supplier compliance, and the critical contract clauses buyers should insist on to protect their businesses.
Other topics covered include:
[00:48] Guest introduction: Jano Bermudes
[02:02] Key cybersecurity questions
[07:53] Important regulations & compliance
[11:44] Cloud security misconceptions
[14:29] Security certifications explained
[19:25] Due diligence importance
[24:16] Essential contract clauses
[30:00] Negotiating liability limits
[34:56] Where to learn more
And that wraps up another episode of The Procurement Software Podcast!
Thanks again for listening, and do please leave us a review on Apple Podcasts or rate us on Spotify. Every one helps!
We'll be back at the same time next month, so see you there.
If you want to learn more about Procurement Software, check out the useful links below.
Stay in touch!
5
55 ratings
In this episode of the Procurement Software Podcast, host James discusses the critical topic of cybersecurity in procurement with expert Jano Bermudes from CyXcel.
They explore the importance of cybersecurity in vendor selection, the regulatory landscape, and the necessary precautions organisations must take to protect their data.
The conversation covers security questions procurement professionals should ask when evaluating software vendors, the importance of security certifications like ISO 27001 and SOC 2, and how companies—big and small—can mitigate cyber risks in their supply chains.
Jano shares insights into regulatory requirements such as GDPR and DORA, the complexities of supplier compliance, and the critical contract clauses buyers should insist on to protect their businesses.
Other topics covered include:
[00:48] Guest introduction: Jano Bermudes
[02:02] Key cybersecurity questions
[07:53] Important regulations & compliance
[11:44] Cloud security misconceptions
[14:29] Security certifications explained
[19:25] Due diligence importance
[24:16] Essential contract clauses
[30:00] Negotiating liability limits
[34:56] Where to learn more
And that wraps up another episode of The Procurement Software Podcast!
Thanks again for listening, and do please leave us a review on Apple Podcasts or rate us on Spotify. Every one helps!
We'll be back at the same time next month, so see you there.
If you want to learn more about Procurement Software, check out the useful links below.
Stay in touch!
32,118 Listeners
223,490 Listeners
62 Listeners
1,783 Listeners
8,807 Listeners
86,329 Listeners
111,437 Listeners
175 Listeners
0 Listeners
28 Listeners
367 Listeners