Prevalent Government Customers

Read how customers in government are benefiting from using the Prevalent third-party risk management platform.



Prevalent Customer Testimonial

Prevalent Provides Risk Visibility

Prevalent enables us to know what risks there are with vendors hosting our data.

Chief Security Officer, State & Local Government

Prevalent Case Study

State & Local Government

Introduction

This case study of a state & local government is based on an October 2019 survey of Prevalent customers by TechValidate, a 3rd-party research service. The profiled organization asked to have their name blinded to protect their confidentiality.

“Prevalent enables us to know what risks there are with vendors hosting our data.”

Challenges

The business challenges that led the profiled organization to evaluate and ultimately select Prevalent:

  • Top drivers for purchasing their Prevalent third-party risk management solution:
    • Compliance – reporting against specific regulatory or industry framework requirements
    • Greater risk-based intelligence
  • Challenges that deploying Prevalent solved for their organization:
    • A lack of insights to make risk-based decisions
    • A lack of guidance in addressing industry standards or third-party regulatory compliance requirements for cyber risk, InfoSec, or data privacy
    • An inability to share completed assessment content and supporting evidence to more quickly identify risks and vulnerabilities
  • Vendors evaluated before choosing Prevalent:
    • CyberGRX

Use Case

  • Regulations or industry frameworks they must regularly report against:
  • Looking to grow the number of vendors they assess in the next 12 months by 0-10%.

Results

The surveyed organization achieved the following results with Prevalent:

  • The following Prevalent capabilities in terms of how differentiated they are compared to the competition:
    • Breadth of available surveys: very differentiated
    • Assessment scheduling and automated chasing reminders: differentiated
    • Automated risk and compliance register: very differentiated
    • Centralized document/evidence management: differentiated
    • Identify key controls and apply reporting to the most critical relevant risks: differentiated
    • In-solution communication with suppliers on remediating risks: differentiated
    • Map results to regulatory and industry frameworks like ISO, NIST, GDPR, CoBiT 5, SSAE 18, SIG, SIG Lite, NYDFS for reporting purposes: differentiated
    • User dashboard of tasks, schedules, risk activities, survey completion status, agreements, and documents: differentiated
  • Saved about 1 week per assessment on average by utilizing the Prevalent Platform.

Prevalent Customer Testimonial

Prevalent gives an accurate and measurable look at our vendors from a 3rd party risk management view.

Security Officer, State & Local Government

Prevalent Customer Satisfaction Rating

A Security Officer at a state & local government would be very likely to recommend Prevalent for this reason:

Great customer service.

Prevalent Case Study

State & Local Government

Introduction

This case study of a state & local government is based on a July 2021 survey of Prevalent customers by TechValidate, a 3rd-party research service. The profiled organization asked to have their name blinded to protect their confidentiality.

“It gives an accurate and measurable look at our vendors from a 3rd party risk management view.”

Challenges

  • Their primary vendor risk assessment pain points were:
    • Cost

Use Case

  • Currently assessing their vendors for the following:
    • Cybersecurity
    • Data Privacy
    • Ethics

Results

  • Level of agreement:
    • Prevalent provides the inherent risk visibility they need to focus on specific areas of their vendors’ risks: strongly agree
    • Prevalent provides the real-time cybersecurity, reputational and financial intelligence they need: agree
    • Prevalent provides the inherent risk visibility they need to focus on specific areas of their vendors’ risks: agree
  • Prevalent is critical on the following vendor lifecycle stages:
    • Sourcing and selection of vendors: important
    • Intake and vendor onboarding: important
    • Scoring inherent risks: critical
    • Assessing vendors and remediating risks: essential
    • Continuously monitoring for vendor cybersecurity, reputational and financial risks: critical
    • Managing ongoing vendor performance and SLAs: very Important
    • Offboarding and termination of vendors: very Important
  • Level of agreement:
    • Prevalent allows us to do our job more effectively: agree
    • Prevalent’s vendor risk assessment process is invaluable to our group: agree
    • Prevalent reduced the time and complexity required to perform vendor risk assessments: agree