▾ G11 Media Network: | ChannelCity | ImpresaCity | SecurityOpenLab | Italian Channel Awards | Italian Project Awards | Italian Security Awards | ...
InnovationOpenLab

Ncontracts Releases 2025 Third-Party Risk Management Survey: Trends & Insights for Financial Institutions

Ncontracts, the leading provider of integrated compliance, risk, and third-party management solutions to the financial services industry, today released findings from its 2025 Third-Party Risk Managem...

Business Wire

New survey reveals that 73% of institutions have two or fewer full-time employees managing vendor risk, despite half overseeing 300+ vendors

BRENTWOOD, Tenn.: Ncontracts, the leading provider of integrated compliance, risk, and third-party management solutions to the financial services industry, today released findings from its 2025 Third-Party Risk Management Survey, revealing the biggest trends, risks, and strategies shaping third-party risk management (TPRM) today.

Ncontracts’ latest report is the industry’s go-to resource for understanding where banks, credit unions, and mortgage companies stand — and how their institutions compare with their peers. Conducted between November 2024 and January 2025, more than 170 banks, credit unions, and mortgage companies across a range of asset sizes participated.

One notable finding is that most financial institutions continue to operate with a lean team. Nearly three-quarters of respondents (73%) have two or fewer full-time employees managing vendor risk, even though more than half oversee more than 300 vendors. Amid staffing challenges, two-thirds of institutions (66%) report feeling pressure to enhance their TPRM programs, with nearly half citing auditors and regulators as primary drivers.

Other key findings include:

  • Significant Cyber Risk Exposure: 49% of financial institutions experienced a vendor-related cyber incident in the past year, with recovery times ranging from under 60 days (66%) to more than 90 days (8%).
  • Growing AI Risk Concerns: Artificial intelligence ranks as the second-biggest TPRM risk heading into 2025, with institutions increasingly adding AI usage language to contracts and implementing specific due diligence measures.
  • Due Diligence Remains a Challenge: Collecting and analyzing vendor documents is a top bottleneck.
  • Strong ROI Recognition: 85% of financial institutions report moderate to high value from their TPRM programs, with benefits ranging from improved cybersecurity to enhanced vendor performance and cost control.

The survey also highlights a significant use of hybrid TPRM operating models, especially among larger institutions, where dedicated TPRM teams oversee the framework while vendor owners manage day-to-day risk and performance. This approach helps balance consistency with flexibility as vendor portfolios grow more complex.

“Financial institutions are caught in a perfect storm—managing more vendors with fewer resources while facing heightened cyber threats and regulatory scrutiny,” said Michael Berman, founder and CEO of Ncontracts. “The surge in hybrid TPRM models and dedicated risk management software adoption shows that forward-thinking institutions are responding strategically.”

Berman continued, “What's particularly encouraging is that 85% of respondents see tangible ROI from their TPRM investments. This isn't just about compliance anymore—robust vendor management is becoming a competitive differentiator that enhances operational resilience, strengthens cybersecurity posture, and drives cost efficiencies. As vendor AI usage accelerates and cyber incidents continue to impact nearly half of institutions, those who modernize their approach will be best positioned to mitigate risks while turning vendor relationships into strategic advantages."

Financial institutions seeking to enhance their TPRM programs should consider several key areas, including refining their TPRM operating model for scalability. Aligning oversight frequency with actual risk, implementing specific measures for emerging risks like AI, and leveraging technology to manage growing vendor portfolios are also key.

To download the full report, visit 2025 Third-Party Risk Management Survey. To learn more, watch our on-demand webinar, TPRM in 2025: How Financial Institutions are Navigating Vendor Management.

About Ncontracts

Ncontracts provides integrated risk management, compliance, and third-party risk management solutions to over 5,000 organizations worldwide, including 4,000 U.S. financial institutions, mortgage companies, and fintechs. The flagship Ncontracts IRM suite combines AI-powered software with expert services, helping financial organizations streamline risk and compliance management through an intuitive, cloud-based platform. Ncontracts’ Venminder solution is trusted by enterprise financial companies and other large organizations to strategically manage third-party risk across the entire vendor lifecycle. Visit www.ncontracts.com or follow the company on LinkedIn and X for more information.

Fonte: Business Wire

If you liked this article and want to stay up to date with news from InnovationOpenLab.com subscribe to ours Free newsletter.

Related news

Last News

RSA at Cybertech Europe 2024

Alaa Abdul Nabi, Vice President, Sales International at RSA presents the innovations the vendor brings to Cybertech as part of a passwordless vision for…

Italian Security Awards 2024: G11 Media honours the best of Italian cybersecurity

G11 Media's SecurityOpenLab magazine rewards excellence in cybersecurity: the best vendors based on user votes

How Austria is making its AI ecosystem grow

Always keeping an European perspective, Austria has developed a thriving AI ecosystem that now can attract talents and companies from other countries

Sparkle and Telsy test Quantum Key Distribution in practice

Successfully completing a Proof of Concept implementation in Athens, the two Italian companies prove that QKD can be easily implemented also in pre-existing…

Most read

H2O.ai Recognized on CRN’s 2025 AI 100 List for Second Consecutive Year

H2O.ai, the world’s leading agentic AI, today announced that it was honored by CRN®, a brand of The Channel Company, with a spot on the 2025 AI 100 list.…

Twilio Announces the Winners of Its First Annual Excellence in Engagement…

Twilio (NYSE: TWLO), the customer engagement platform that drives real-time, personalized experiences for leading brands, today announced the winners…

Middle East Colocation Data Center Portfolio Report 2025: Detailed Analysis…

The "Middle East Existing & Upcoming Data Center Portfolio" database has been added to ResearchAndMarkets.com's offering. This report covers the MEA…

Fiserv to Release First Quarter Earnings Results on April 24, 2025

Fiserv, Inc. (NYSE: FI), a leading global provider of payments and financial services technology solutions, will announce its first quarter financial…

Newsletter signup

Join our mailing list to get weekly updates delivered to your inbox.

Sign me up!