Best Third Party & Supplier Risk Management Software - Page 8

How Many Third Party & Supplier Risk Management Software Products Does G2 Track?

Total Products under this Category: 179

Category Stats (Sep 2026)

  • Average Rating: 4.49/5 The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: Creditsafe (+0.33%) - Among all products in this category, Creditsafe recorded the largest rating increase compared to last month

Last updated: September 01, 2026

How Does G2 Rank Third Party & Supplier Risk Management Software Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 11,100+ Authentic Reviews
  • 179+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Third Party & Supplier Risk Management Software

G2 Grid® for Third Party & Supplier Risk Management Software plotting products by satisfaction and market presence

Highlighted products: Vanta, UpGuard Vendor Risk, Creditsafe, Descartes Denied Party Screening, Secureframe, osapiens, IBM OpenPages, and SAP Ariba.

Underlying data: [Grid® JSON](https://www.g2.com/categories/third-party-supplier-risk-management/grids.json?focus%5B%5D=vanta&focus%5B%5D=upguard-vendor-risk&focus%5B%5D=creditsafe&focus%5B%5D=descartes-denied-party-screening&focus%5B%5D=secureframe&focus%5B%5D=osapiens&focus%5B%5D=ibm-openpages&focus%5B%5D=sap-ariba)

Datafalk

Mitigate supply-chain risks and anticipate crisis spread Use the datafalk supply-chain tracking platfrom to stay informed about what's happening around the world : from mineral supplier to product retailer. Get real-time alerts and visualize how disruptions affect both your assets and those of your competitors.

Who Is the Company Behind Datafalk?

DivedIn

Who Is the Company Behind DivedIn?

  • Seller: LOCOMeX
  • Year Founded: 2019
  • HQ Location: Brooklyn, US
  • LinkedIn® Page: www.linkedin.com
    21 employees on LinkedIn®

EQS Third Parties

Take a risk-based approach to your third parties Managing risks around partnerships shouldn’t mean drowning in spreadsheets or endless email chains. Take control of third-party risk, simplify your management process, and strengthen your partnerships! Because your organization is only as secure as its weakest link.

Who Is the Company Behind EQS Third Parties?

  • Seller: EQS Group
  • Year Founded: 2000
  • HQ Location: München, DE
  • Twitter: @eqsgroup
    1,430 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    648 employees on LinkedIn®
  • Ownership: ETR: EQS

ERM One

DoubleCheck provides powerful software for managing Governance, Risk, Compliance and Audits, with excellent process management, issue management, assessment, testing and reporting capabilities. With DoubleCheck, you have a cost effective, highly functional and configurable solution to assure and demonstrate effective governance, compliance, audits and risk management.

Who Is the Company Behind ERM One?

Everstream Analytics

Everstream Analytics sets the global supply chain standard. Through the application of artificial and human intelligence and predictive analytics to its vast proprietary dataset, Everstream delivers the predictive insights and risk analytics companies need to see, understand, and act on supply chain risk. Everstream’s trusted solution integrates with procurement, logistics, and business continuity platforms generating the complete visibility, sharper analysis, and accurate predictions required to turn the supply chain into a business asset. To learn more, visit https://www.everstream.ai/

Average Rating: 3.5/5.0

Total Reviews: 1

Who Is the Company Behind Everstream Analytics?

Who Uses This Product?

  • Company Size: 100% Large

Experian Sustainability Attributes (UK)

Experian's Sustainability Attributes is a comprehensive data solution designed to help organizations assess and manage climate-related and environmental, social, and governance (ESG) risks within their small and medium-sized enterprise (SME) portfolios and supply chains. By providing actionable insights into transition and physical climate risks, financed emissions, customer prosperity, and overall sustainability risk, this tool enables businesses to meet regulatory requirements, reduce climate-related exposures, and integrate sustainability into strategic decision-making. Key Features and Functionality: - Physical Risk Intelligence: Offers current and future climate risk scores for properties, postcodes, and districts, including assessments for flood, coastal erosion, and subsidence risks. - EPC Data and Transition Risk Intelligence: Provides Energy Performance Certificate (EPC) data for any commercial or residential property in the UK, aiding in the evaluation of energy efficiency and transition risks. - International Certifications Intelligence: Delivers real-time information on global sustainability accreditations and certifications for companies within an organization's portfolio or supply chain. - Social Progress Index Data: Supplies Social Progress Index scores for each of the 294 English Local Authority Areas, offering insights into social impact and prosperity. - ESG Profiles for UK SMEs: Provides 11 ESG and emissions attributes for each SME, supported by Experian’s trusted business reference data, facilitating compliance with regulatory requirements and proactive risk management. Primary Value and User Solutions: Sustainability Attributes empowers organizations to: - Quantify Financed Emissions: Accurately measure emissions associated with SME lending and commercial insurance portfolios, including EPC data, to establish and monitor financed emissions. - Assess Borrower Sustainability Risk: Evaluate both transition and physical risks for business borrowers across the entire portfolio, enabling informed lending decisions. - Measure Social Impact: Analyze the prosperity mix of customers to understand the societal impact of lending and services, aligning business practices with social responsibility goals. - Target Property Improvements: Identify businesses operating in or owning properties with suboptimal EPC ratings, facilitating targeted energy efficiency improvements. - Manage Supply Chain Sustainability: Assess emissions and other sustainability metrics for SMEs within the value chain, promoting sustainable practices throughout the supply network. - Mitigate Third-Party Risks: Evaluate the sustainability risk and impact of suppliers, partners, and franchisees, ensuring alignment with organizational sustainability objectives. By leveraging Sustainability Attributes, organizations can gain a clearer understanding of where sustainability risks lie within their portfolios, enabling them to make informed decisions, comply with ESG reporting requirements, and drive progress toward sustainability goals.

Who Is the Company Behind Experian Sustainability Attributes (UK)?

  • Seller: Experian
  • Year Founded: 1826
  • HQ Location: Dublin, Ireland
  • Twitter: @Experian_US
    38,771 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    26,648 employees on LinkedIn®
  • Ownership: LSE: EXPNL

FiorLab

FiorLab is a supplier risk intelligence platform built for regulated industries in the EU. It combines a deterministic 6-dimension scoring engine (financial stability, compliance posture, ESG, operational resilience, governance, risk concentration) with verified data from live registries — CRO Ireland, Companies House UK, German Handelsregister, VIES, GLEIF, and IAF CertSearch for ISO certifications. Every supplier score carries a verification level (registry-verified, partially verified, self-declared) so audit trails distinguish real evidence from supplier-supplied claims. Procurement, compliance, and legal teams can produce audit-ready evidence for DORA, EBA non-ICT TPRM, NIS2, and EU outsourcing requirements in under five minutes — without the consulting overhead of legacy GRC platforms. Where Vanta or Drata serve vendor self-attestation, FiorLab serves the buyer side: the teams answering to a regulator who asks for evidence, not promises.

Who Is the Company Behind FiorLab?

  • Seller: FiorLab
  • Year Founded: 2023
  • HQ Location: Dublin, IE
  • LinkedIn® Page: www.linkedin.com
    1 employees on LinkedIn®

Genesis Platform

Genesis Platform redefines TPRM by eliminating manual third-party risk assessment with Al-driven automation. Our Next-Gen Questionnaire aligns with cybersecurity controls, providing a precise understanding of business risks and impacts. By continuously monitoring vendor vulnerabilities and breaches, it quickly detects security gaps and provides tailored Al remediation, reducing risk exposure. The platform cuts assessment time by 90%, saving over 100 hours per assessment.

Who Is the Company Behind Genesis Platform?

GetCybr vCISO Platform

GetCybr is a powerful platform designed to help Managed Security Service Providers (MSSPs) and Managed Service Providers (MSPs) secure more deals and deliver superior Virtual CISO (vCISO) and Cyber GRC services. By automating cybersecurity evaluations, streamlining Governance, Risk, and Compliance (GRC) strategies, and enhancing collaboration, GetCybr enables service providers to offer more efficient and scalable security solutions.

Who Is the Company Behind GetCybr vCISO Platform?

  • Seller: GetCybr
  • Year Founded: 2023
  • HQ Location: NYC, US
  • Twitter: @getcybr_inc
  • LinkedIn® Page: www.linkedin.com
    2 employees on LinkedIn®
  • Ownership: Privately Held

Gordon Third Party Risk

Gordon Third Party Risk continuously monitors the cybersecurity posture of an organization's vendors, suppliers, and technology partners, combining automated external attack surface scanning with structured risk assessments to produce a current, verified risk profile for each third-party relationship. Rather than relying solely on periodic questionnaires, the platform monitors each vendor's internet-facing infrastructure in real time, tracking exposed services, misconfigured assets, certificate issues, known vulnerabilities, and dark web mentions and updates each vendor's risk score automatically as their external posture changes, without waiting for the vendor to respond to an assessment request. Questionnaire-based assessments are available for due diligence workflows and are pre-mapped to SIG, NIST CSF, ISO 27001, and CAIQ frameworks, with automated reminders and evidence collection to reduce manual follow-up. Each vendor receives a risk tier based on both their live external exposure and their completed assessment responses, combined into a single score that reflects the current state rather than a point-in-time snapshot. Risk scores are updated continuously as new vulnerabilities are discovered or remediated, and alerts are triggered when a vendor's posture changes materially, rather than on a weekly refresh cycle. Reporting is formatted for multiple stakeholders: security teams receive technical findings and remediation details; procurement, legal, and compliance teams receive plain-language risk summaries and due diligence documentation; and executives receive portfolio-level dashboards showing concentration risk, unreviewed vendor exposure, and trends over time. All findings map to the control requirements of SOC 2, ISO 27001, PCI DSS, HIPAA, NIS2, and DORA for audit and regulatory reporting. Gordon Third Party Risk deploys without agents or vendor-side installation. Vendor onboarding is initiated by entering a company name or domain, with no manual asset list required. Directory integration with Microsoft 365 and Google Workspace enables automatic population of vendor relationships from existing procurement and IT records.

Who Is the Company Behind Gordon Third Party Risk?

  • Seller: Mitigata
  • Year Founded: 2021
  • HQ Location: Bangalore, IN
  • LinkedIn® Page: www.linkedin.com
    106 employees on LinkedIn®
  • Ownership: Private Limited
  • Phone: 7807153087

Halbarad

Halbarad is an AI-powered Governance, Risk, and Compliance (GRC) and Third-Party Risk Management (TPRM) platform that helps organizations streamline vendor due diligence, cybersecurity assessments, regulatory compliance, and enterprise risk management. The platform automates security questionnaire reviews, analyzes policies and security documentation, generates AI-powered risk assessments, maps controls to industry frameworks, supports remediation and audit workflows, and provides continuous visibility into third-party risk. Halbarad serves organizations across financial services, banking, fintech, digital assets and cryptocurrency, healthcare, life sciences, insurance, government, SaaS, and other highly regulated industries, enabling security, risk, and compliance teams to make faster, more informed decisions while significantly reducing manual effort.

Who Is the Company Behind Halbarad?

Lauren Worth
LW
Researched and written by Lauren Worth
Updated April 9, 2025