If you are doing vendor security assessments for your employer, it is your job to assess the risk associated with vendors so that your leadership can make decisions.

It is not your place to bully the vendor.

Thank you for coming to my Ted Talk.

@accidentalciso Sorry, but that is a large-org-ist PoV. In the SMB world, "the computer guy" is the only one with the chops to do it, and the IDGAF attitude required to hold them accountable, and hopefully humiliate them during their lie-fests (sometimes called "sales pitches").
@jack_daniel @accidentalciso What percentage of US enterprises are SMBs?
(We often forget)
@boblord @accidentalciso let's see...
And yes, "only" ~47% of US employees work for small businesses.
@jack_daniel Jack - unrelated - but may I ask where you found that quote? I’ve been looking for good data on business sizes. Thanks!
@charlvdwalt that was just a quick Google result, it comes from the US Small Business Administration