
Nissan is facing a class action lawsuit following a data breach that exposed sensitive employee information. The breach allegedly occurred through a compromise of systems maintained by Oracle, leading to unauthorized access to personal records. The lawsuit claims that the company failed to implement adequate security measures to protect its workforce's data from third-party vulnerabilities. This incident highlights the ongoing risks associated with supply chain and vendor security in large enterprise environments. What steps should corporations take to better audit the security of their third-party software providers?