
CISA CRR External Dependencies Management (EDM)
Meticulous, Resilient, Measured
SteelToad’s External Dependencies Management (EDM) Assessment will strengthen an organization’s ability to manage external dependencies and sustain operational resilience. The assessment is based on the CERT® Resilience Management Model (CERT®-RMM) — a process improvement model that integrates best practices from security, business continuity, and IT operations management. The EDM Assessment focuses on four key domains:
Relationship Formation—Evaluating the structure and security of external relationships.
Relationship Management and Governance—Verifying oversight and strategic alignment with operational goals.
Service Protection and Sustainability—Securing external services and ensuring continuity under stress.
MIL Practices—Applying consistent maturity indicators across all domains to measure and strengthen resilience.
SteelToad’s EDM methodology provides insights into external dependency risks and offers recommendations to improve operational stability and security. We enable organizations to maintain control and resilience, even when operating within complex external ecosystems.
Why CISA External Dependencies Management (EDM) is Important
External dependencies are integral to modern business operations but also introduce significant risk. Third-party disruptions, supply chain vulnerabilities, and service failures can compromise operational stability and data security. SteelToad’s EDM services provide:
Comprehensive assessment of external dependency risks
Improved alignment of security practices with operational goals
Strengthened resilience through controlled external relationships
Heightened ability to respond to and recover from external disruptions
Consistent measurement of maturity and progress across all domains

What Sets Us Apart
SteelToad’s EDM Assessment is grounded in the CERT® Resilience Management Model for a proven evaluation process. We assess direct dependencies and secondary and tertiary impacts, providing a complete threat picture.
SteelToad delivers prioritized steps to improve relationship management, service protection, and operational continuity. Our assessments combine cybersecurity, operations, physical security, and business resilience into a unified strategy. SteelToad’s team has implemented EDM practices across federal, defense, and commercial sectors, reinforcing security and business alignment.
.png)
