Skip to content
Research Article Open access CC BY 4.0

Mitigating Cybersecurity Risks in Financial Institutions through Strategic Third- Party Risk Governance Frameworks

Faith Hauwa Oluwapamilerin Kolo, Sunday Abayomi Joseph, Akinde Michael Ogunmolu, Valerie Ojinika Ejiofor, Seun Michael Oyekunle

Journal of Engineering Research and Reports · pp. 173–193 · Published 12 May 2025

10.9734/jerr/2025/v27i51501

Abstract

This study investigates how strategic third-party risk governance frameworks can mitigate cybersecurity threats in financial institutions. Using data from the Verizon Data Breach Investigations Report, the Basel Committee’s Quantitative Impact Study, and the Privacy Rights Clearinghouse breach database, the research applies descriptive statistics, multivariate regression, and event study analysis. Key findings reveal that third-party software vulnerabilities and vendor credential theft account for 18.08% and 16.10% of breaches respectively. Regression results show that continuous monitoring and third-party audits significantly reduce incident frequency, while real-world breach events highlight governance lapses tied to delayed disclosure and inadequate oversight. The study recommends enforcing continuous vendor performance monitoring, mandating software supply chain audits, embedding cybersecurity clauses in vendor contracts, and promoting cross-institutional threat intelligence hubs. These insights offer targeted solutions to strengthen oversight and enhance cybersecurity resilience in increasingly complex vendor ecosystems.

Third-party risk governance cybersecurity breaches financial institutions vendor monitoring software supply chain

Cited by 4

From compliance to capability: the evolving role of third-party risk management in strengthening organisational resilience

Julija Saveljeva, Tatjana Volkova · International Scientific Conference „Business and Management“ · 2026

Beyond Perimeter Defense: Technical Approaches to Third-Party Breach Prevention

Monika Velkova, K. Nikolova, Maria Nenova · Telecom · 2025

Cybersecurity and Audit Resilience in Digital Finance: Global Insights and the Pakistani Context

M. Asif, Huma Shah, Hafiz Abdul Hai Asim · Journal of Asian development studies · 2025

Article metrics

Real usage data collected on this platform.

0

Page views

0

PDF downloads

0

Outbound clicks

4

Citations

Views by country

Approximate, from request IP at view time — not citizenship or institution. Countries with fewer than 5 views are grouped as "Other".

No views recorded yet.

Traffic sources

Referring site, by host.

No traffic recorded yet.

Views and downloads exclude known bots/crawlers. Citations combines this platform's own DOI-resolved index with each external source's own reported total — see Cited by above for individually listed citing works. Last refreshed 0 seconds ago.