December’s breach of the Department of the Treasury by Chinese state-sponsored hackers was an unwelcome reminder of the security risks third-party vendors can pose to protected networks.

While attention is understandably focused on the security of federal networks in the aftermath of this attack, the incident also raises the question of whether private companies are better equipped to handle third party cyber risk than their public-sector counterparts.