Their security posture, applied to you
A standing connection means their credential hygiene, patching and staff turnover become part of your risk position.
Inherited riskMaintenance contracts, support arrangements and integrations all arrive with a connection attached. Those connections outlive the projects that created them, and they are rarely reviewed with the same care as employee access. Control governs the relationship rather than trusting it.
Need → Control → Blueprint → Modules

A supplier relationship is a commercial arrangement with a technical consequence. This is what is exposed when that consequence is left ungoverned.
A standing connection means their credential hygiene, patching and staff turnover become part of your risk position.
Inherited riskConnections created for an implementation frequently remain live years after the supplier relationship changed or ended.
Orphaned accessAccess granted for one system often carries network reach into others, because it was easier to grant broadly than precisely.
Excess privilegeAsked which suppliers can reach which systems today, most organisations need days to answer, and the answer is rarely complete.
Governance gapSupplier access is created under delivery pressure and reviewed under audit pressure, which are two very different moments with two very different levels of scrutiny.
Permanent access exists because the alternative has historically been friction. If opening a path takes a day of paperwork, teams will keep the path open permanently and tell themselves it is monitored. Control removes that trade-off by making the temporary path easy to open and automatic to close.
Control the path, protect the asset.Access granted for a project is almost never diarised for removal when the project ends.
Commercial agreements cover liability and service levels, rarely the physical path or its lifetime.
When the supplier manages its own accounts, your leavers process no longer covers who can reach you.
If requesting access is slow, teams keep standing access rather than face the delay each time.
Remote support platforms are built for reach, which is exactly what makes them attractive to attackers.
Vendor access lists are compiled for audits and drift as soon as the audit finishes.
Third-party risk becomes manageable the moment each relationship is expressed as a specific path with a specific lifetime.
Control does not make supplier access harder to obtain. It makes supplier access impossible to leave open by accident.
The path exists permanently and is restrained by credentials, agreements and good intentions.
The path is created for an approved purpose, held open for a defined period and physically removed when that period ends.
Control applies the same discipline to relationships that it applies to networks: the connection is the thing being governed, and its resting state is closed.
Every incident that spreads does so along a connection that was already there. Control begins by naming that connection in plain language, before anyone talks about products.
A path that exists only when it is needed cannot be used at three in the morning by someone who should not have it. Disconnection is the resting state, not the emergency response.
When work genuinely needs a connection, Control opens it for a named person, a stated purpose and a fixed period, then closes it again without anyone having to remember.
A policy says the path should be closed. Physical control shows that it is. That difference is what auditors, insurers and boards are actually asking about.
The Blueprint turns the agreed relationships into a working access pattern, including how requests are checked, how windows are brokered and what the audit trail contains.
Give third parties access without giving them a permanent doorway.
Applied to time-bounded vendor and supplier access. The Blueprint page carries the architecture, the zone detail and the deployment sequence.
This page is about controlling the path a supplier uses. If your concern is protecting the data itself, that is a different job: Offline Secure Storage holds selected copies physically outside the connected environment.
Protect critical data from ransomwareThe practical questions that decide whether supplier access can be changed without damaging the relationship.
CP-03 Control Third-Party Access sets out the validation, brokering and evidence behind access that exists only when it should.