Citalid Launches TPRM Module to Help Organizations Quantify and Manage Supplier Cyber Risk

New Capability Combines Cyber Threat Intelligence, AI, and Quantitative Modeling to Meet NIS2 and DORA Compliance Needs
Paris, November 26, 2025 — Citalid, the European leader in cyber risk quantification, today announced the launch of its new Third Party Risk Management (TPRM) module. The release comes as the NIS2 Directive and DORA regulation push European companies to strengthen control over third-party and supply-chain cyber risks.
The new module enables CISOs, Risk Managers, and Procurement teams to visualize, prioritize, and act on supplier-related cyber risks using real-time, data-driven threat intelligence rather than self-reported questionnaires.
A Strategic Capability for Resilience and Compliance
Digital ecosystems are expanding, but visibility into supplier exposure remains limited. Citalid’s TPRM module addresses this gap by integrating Cyber Threat Intelligence (CTI), quantitative risk modeling, and AI, giving organizations a 360-degree view of third-party risk.
See how Citalid quantifies and manages the cyber risk hiding in your vendor ecosystem
EXPLORE THIRD-PARTY RISK MANAGEMENT“Our TPRM module finally gives CISOs a global view across all their third parties, enabling them to focus on those posing the greatest risk,” said Maxime Cartan, Co-founder and CEO of Citalid.
“This bridge between a broad overview and granular risk modeling was missing from today’s TPRM market.”
Integrated and Actionable Risk Insights
Building on Citalid Core (First-Party Risk Analysis) and Citalid Portfolio (for insurers and financial institutions), the TPRM module allows organizations to:
- Map cyber risks across their supply chain with dynamic visualization.
- Prioritize critical suppliers based on their risk profile and operational importance.
- Act on CTI-enriched, contextualized data — without waiting for vendor questionnaires.
AI-Powered Efficiency
A generative-AI document analysis feature speeds up information gathering and simplifies initial supplier assessments.
“AI saves valuable time in document analysis while keeping final decisions with the teams,” added Olivier Hamon, CTPO of Citalid.
“It’s a real lever for autonomy and efficiency for CISOs and procurement departments.”
Proven Results from Early Deployments
During a pilot with a major European banking group, the TPRM module revealed significant discrepancies between perceived and actual supplier risk:
- 61% of suppliers showed higher real exposure than their self-assessments.
- 71% had below-average cyber maturity.
- 60% presented a Value at Risk exceeding 3% of revenue.
“These results highlight the need for an objective, data-driven approach to third-party risk assessment,” Cartan said. “Organizations can no longer rely solely on forms or declarations in an interconnected threat landscape.”
Availability
The Citalid TPRM module is now available.
Demonstrations and interviews are available upon request from Citalid’s communications team.
About Citalid
Citalid is a leading SaaS platform for cyber risk quantification. Founded in 2018 by two Cyber Threat Intelligence experts, Citalid helps businesses and insurers make informed decisions by translating dynamic threat data into actionable financial indicators.
Recognized in the Gartner Hype Cycle and Forrester’s Cyber Risk Quantification Solutions Landscape, Citalid works with leading organizations including Alstom, Allianz, Capgemini, Fresenius, and Lagardère.
Press Contact
Marie Giesbert
📧 marie.giesbert[at]citalid.com
🌐 www.citalid.com
