Definition
Fourth-party risk is the exposure created by your vendor's own vendors - the subprocessors and dependencies you rely on but never contract with.
Your data and uptime can hinge on a cloud or model provider three steps removed from you. Require a current subprocessor list, change notifications, and contractual flow-down of your security and privacy requirements to those parties.
Go deeperVendor due diligence checklistRelated terms
Benchside turns fourth-party risk into the exact questions, exclusions, and lock-in math for your specific vendor - your first project is free.