Vendor risk management, rebuilt

Vendor risk.
Without the drag.

CoalDark gives security teams one decisive place to understand vendors, collect evidence, resolve findings, and keep risk moving.

Built for focused security teamsMSP-ready workspacesNo compliance theater
Northwind GroupRisk command center
MS
Portfolio

Three decisions need you.

Vendors in scope48+4 this quarter
Need attention72 critical
Open assessments1268% response rate
Reviews due5Next 30 days
Priority queueRiskScoreReview
NCNexora CloudInfrastructureHigh82Today
LILinearProductivityLow24Sep 14
APArcher PayrollHR & payrollModerate61Aug 28
NDNorthstar DataData processorModerate46Oct 02
Live portfolio view / Vendor decisions, not vanity metrics
01COALDARK / VRM

The operating problem

Third-party risk is operational work. It deserves more than a spreadsheet and a once-a-year questionnaire.

CoalDark organizes the complete vendor relationship around the decisions your team has to make now: onboard, remediate, accept, review, or exit.

One continuous workflow

From intake to oversight.

Every stage keeps its context. No disconnected portals. No audit dashboard pretending to be a risk program.

01

Know who matters

Build a living vendor registry with owners, services, data exposure, criticality, and review cadence.

02

Collect what counts

Send focused assessments, track responses, and keep evidence attached to the vendor relationship.

03

Decide with context

Turn gaps into findings, assign treatment, and record an approval your team can defend later.

04

Watch what changes

Bring due reviews, risk movement, and material vendor changes back to the top of the queue.

Manage by exception

The queue tells you where to look next.

CoalDark pulls overdue reviews, high-risk vendors, unanswered assessments, and unresolved findings into one operational rhythm.

Explore the platform
01
CRITICAL / DATA PROCESSORNexora Cloud requires a decision

Encryption evidence is incomplete. Review due today.

82
02
ASSESSMENT / 84% COMPLETEArcher Payroll responded

Four answers need analyst review.

61
03
REVIEW / DUE IN 5 DAYSNorthstar Data is ready

No open findings. Owner approval is next.

46

Built to fit the team

One portfolio.
Every point of view.

SECURITY

See exposure clearly.

Prioritize material vendor risk and keep remediation moving without chasing updates.

PROCUREMENT

Move onboarding forward.

Know which evidence and decisions are blocking a vendor before the contract stalls.

MSP / MSSP

Operate across clients.

Switch workspaces, preserve tenant boundaries, and run one consistent risk program at scale.

Start with the vendors that matter

Make third-party risk
easier to act on.

Book a working session