Term Kind Topic What it is
Concentration Risk Systemic Dependency, Single-Provider Exposure, Vendor Concentration concept Third-Party Risk The exposure created when many organisations, or many parts of one organisation, depend on the same provider - so that a single failure is correlated across the system rather than isolated.
Fourth Party Risk concept Third-Party Risk The dependencies of your dependencies, which you did not choose, may not know about, and remain accountable for.
Processor Instruction Boundary Controller-Processor Line, Own-Purpose Test concept Third-Party Risk The line at which a vendor stops acting only on your documented instructions and starts pursuing purposes of its own - which decides your lawful basis, your consent gating and your breach clock.
Third-Party Risk Assessment Vendor Risk, Supplier Assurance practice Third-Party Risk Evaluating the security, resilience and compliance posture of suppliers whose failure would become your incident.