Recent Breaches
Breaches
2026PowerSchool62.4M records stolen2026DISA Global Solutions3.3M records stolen2026Globe Life850K records stolen2026Lidl GBCustomer contact data (subset via supplier) records stolen2026Asahi GroupProduction systems disrupted records stolen2026Kido InternationalPhotos and personal data of ~8,000 children records stolen2026Collins Aerospace (RTX)Check-in and boarding disruption across Heathrow, Brussels, Berlin records stolen2026Jaguar Land RoverProduction and IT systems disrupted records stolen2026Peter Green ChilledOrder and logistics data records stolen2026Adidas UKCustomer contact details (subset) records stolen2026Lidl GBCustomer contact data (subset via supplier) records stolen2026Asahi GroupProduction systems disrupted records stolen2026Kido InternationalPhotos and personal data of ~8,000 children records stolen2026Collins Aerospace (RTX)Check-in and boarding disruption across Heathrow, Brussels, Berlin records stolen2026Jaguar Land RoverProduction and IT systems disrupted records stolen2026Peter Green ChilledOrder and logistics data records stolen2026Adidas UKCustomer contact details (subset) records stolen2026PowerSchool62.4M records stolen2026DISA Global Solutions3.3M records stolen2026Globe Life850K records stolen
View All →
All Control Blueprints
FIRE + VAULTCP-03Path and asset together

Control Third-Party Access

Give third parties access without giving them a permanent doorway.

All Blueprints
What it does

Give third parties access without giving them a permanent doorway.

Where it fits

Time-bounded vendor and supplier access

Who uses it

Financial services, Healthcare, Energy, Public sector

CP-03 topology

How CP-03 controls third-party access.

A FIRE+VAULT pattern. The vendor path is severed by default and exists only as a validated, time-bound Relay session, with every artefact preserved.

Grounded in NIS2 Art. 21(2)(d), DORA Art. 28-30 and ISO 27001 A.5.15, A.5.19.

Z0

Vendor or supplier

External party

Vendor or supplier zone

External party seeking a maintenance window

FV-Validate module iconValidateFV-Relay module iconRelayFV-Lock module iconLock

Request validated. Window opened for the engagement only.

Z1

Maintenance edge

The only

Maintenance edge zone

The only place a vendor session ever lands

FV-Execute module iconExecuteFV-Transfer module iconTransferFV-Archive module iconArchive

Changes scoped, recorded and revocable on signal.

Z2

Managed estate

The systems

Managed estate zone

The systems the vendor is allowed to touch

OSS

Crown jewels · detail callout

Session evidence archive

Every vendor session, command and artefact preserved offline for audit and dispute.

Modules & symbols

FV-Validate module iconValidateIntegrity check
FV-Relay module iconRelayTime-bound path
FV-Lock module iconLockNamed access
FV-Execute module iconExecuteApproved action
FV-Transfer module iconTransferControlled move
FV-Archive module iconArchiveDisconnected copy
ConduitEnforced module path
┄┄┄
Crown jewelsOffline · detail callout
How it reads end to end

Validate checks the request before any door opens. Relay creates a controlled, time-bound access window. Lock ensures only approved users, roles or conditions can use it. Transfer governs what moves between environments, Archive preserves the activity for audit and Execute can revoke the path on signal.

Sector relevance
Financial servicesHealthcareEnergyPublic sector
Mark Fermor
David Bailey
Kenny Phipps
Online Now
Concierge

Build control around your environment

Talk to our team about composing this Blueprint for your estate.

Takes about 2 minutes. No account needed.

Free2 minsNo sign-up

    Your privacy matters

    We use cookies to keep the site running smoothly and to understand how you use it. You are in control. Privacy Charter · Cookie Policy