On Demand Events

Missed a recent webinar or Member Forum Call? Catch our previous virtual sessions here. We now offer CPEs from most of our on-demand offerings. To earn CPEs, please submit your information and codes in the form linked below. Note: our on-demand recordings work best when viewed in the Chrome browser.

All On-demand Events

Quick SIG Demo

This is a quick introduction to the Standardized Information Gathering (SIG) Questionnaire. In less than 15 minutes, this recording presents how to:
  • Scope questionnaires using the SIG
  • Use the customizable Content Library
  • Automatically review and grade completed SIG questionnaire responses
  • Benefit from administrative functionalities to manage the data within SIGs
  • Note: CPE credits are not available for this session.
    Register to Watch

    July Member Forum Call – Dive Deeper: Business Continuity & Disaster Recovery – Overcoming Challenges within TPRM

    Business Continuity & Disaster Recovery programs are essential for business operations, and especially important for those relying on third-party providers. Internal and external factors can hinder TPRM practitioners' abilities to assess the robustness of a vendor's BCDR program. Join this Member Forum Call for a discussion of best practices for overcoming common challenges related to BCDR, topics include:
      • Understanding the full risk profile of the vendor

      • Determining appropriateness & completeness of submitted BCDR evidence

      • Evaluating the effectiveness of your 3rd parties' risk management programs

      • Assessing the effectiveness of your 3rd parties' structure

    Speakers:
    • John D. Beattie, FBCI
      Principal Consultant, 11:11 Systems
      John Beattie has been a Principal Consultant within 11:11 Systems for more than 15 years where he has consulted with organizations looking to reduce operational risk by maturing their business continuity, disaster and data recovery, and crisis management programs. He currently leads 11:11 Systems’ cyber-compromised data recovery consulting team. Prior to joining 11:11 Systems, John was the Global Director of Business Continuity for News Corporation and an IT management consultant at Ernst & Young for more than 15 years. John has attained FBCI certification from the Business Continuity Institute and he is a Certified Third-Party Risk Professional.
      View full bio
    • Mark Orsi
      CEO, Global Resilience Federation
      Mark Orsi is the Chief Executive Officer of Global Resilience Federation (https://www.grf.org/), a non-profit with the mission to develop and support threat intelligence and information sharing communities including education, operations technology, financial services, retail and hospitality, legal and professional services, energy, health, and oil and natural gas. Mr. Orsi led strategic efforts for several prominent Fortune 100 companies, working directly with CIOs and CISOs to develop, deploy, and improve security controls protecting the confidentiality, integrity, and availability of sensitive information. Mark joined the company from JPMorgan Chase where he served as executive director and product owner for cybersecurity and technology controls. Prior to JPMorgan, Mr. Orsi served KPMG as director of cybersecurity, and Goldman Sachs as vice president of technology risk. Mark holds an MBA from Columbia Business School, an MS in computer science from Johns Hopkins University, and a BS in Aerospace Engineering from the University of Maryland.
      View full bio
    • Elizabeth Dunsmoor
      TPRM Principal , Shared Assessments
    Become a Member to Watch

    Webinar – Out of the DARk: Shining Light on the Ransomware Threat

    In today’s digital age, cyber threats are a rising concern to organizations, ransomware being one of the most insidious of those threats. Join subject matter experts from Shared Assessments and Digital Asset Redemption, a compliance-focused service provider to companies involved in cybersecurity incident response, for a discussion on the current ransomware threat landscape, and ways to protect, defend, and respond to those threats. About Digital Asset Redemption: DAR aims to be the light that shines through the shadows of blackmail, spanning the shortest distance between cyber incident and response. We champion a suite of personalized, protective, precise Payment Solutions to provide a clear, confident response in times of duress.
    Register to Watch

    Simplify Reporting Against the 5 Most Impactful Third-Party Risk Management Regulations

    This session explores how to simplify meeting reporting obligations for the most impactful third-party risk management regulations and requirements including GDPR, CCPA, HIPAA, and SOX. The right risk strategies empower organizations with frameworks to manage risk appropriately. Panelists will examine the complexities of third-party risk reporting and provide insight into practical tools and techniques (such as the Shared Assessments SIG) to improve reporting processes and outcomes.
    Speakers:
    • Alastair Parr
      Senior Vice President, Global Products & Risk, Prevalent
      Alastair Parr is responsible for ensuring that the demands of the market space are considered and applied innovatively within the Prevalent portfolio. He comes from a governance, risk and compliance background; developing and driving solutions to the ever-complex risk management space. He brings over 12 years of experience in product management, consultancy, and operations deliverables.
      View full bio
    • Ron Parham
      Vice President of Risk Regulations & Compliance, Shared Assessments
      Ronald Parham is the Vice President of Risk Regulations & Compliance at Shared Assessments where he manages regulatory mapping where he provides members with materials to assist them and their third-party partners in navigating the risk and regulatory landscape.
      View full bio
    Register to Watch

    June Member Forum Call – Ransomware Best Practices for Third Party Risk Professionals Webinar

    In this session, we provide an enterprise-wide, TPRM-focused approach to ransomware. Discussion includes meaningful process and program guidance improvements and practical tools for organizations of all sizes, whether operating locally or globally. *While Member Forum Calls are typically closed only to members, this one will be open to all. You may register regardless of your membership status.*
    Speakers:
    • Marya Roddis
      Senior Technical Editor & Founder, Technical Consulting Firm, S.U.N.
      Marya Roddis is a senior technical and grant writer providing high quality business, communications, management, design and education support services to public and private, for-profit and non-profit organizations and agencies. She is the former VP of Technical Writing for Shared Assessments and has served in administrative, technical, and teaching capacities in varied settings including University of Alaska Institute of Northern Forestry and the Medical Identity Fraud Alliance.
      View full bio
    • Bob Jones
      Senior Advisor, Shared Assessments
      Bob is deeply committed to contributing to the well-being of the financial services community. A well-known and sought-after expert in risk management strategy, he has 50 years of experience leading fraud risk management and risk management strategy. In addition to bringing unique experience as a consultant, educator and expert witness to Shared Assessments, he also serves as the principal of RW Jones Associates, LLC and is Adjunct Professor Emeritus of Economic crime at Utica College, where he taught in the school’s M.B.A. in Economic Crime and Fraud Management program. His articles have appeared in the RMA Journal and the Journal of Economic Crime Management.
      View full bio
    • Martin Freeman
      Cyber Security and Compliance Managing Director, Calastone
      Martin is a dedicated Information Security Professional with 20 years’ experience and is passionate about his subject matter. He specializes in implementing Cyber Security / Information Security frameworks and has previously worked in both the Fast-Moving Consumer Goods and Fintech industries.
      View full bio
    Become a Member to Watch

    5 Best Practices for Streamlining Your Third-Party Risk Management Workflows

    Time is a valuable resource, especially when trying to manage a third-party risk program at scale. With countless third parties to manage, hundreds of assessments to send, and even more risks to analyze, how do you keep up?

    Streamlined workflows throughout the third-party risk management (TPRM) lifecycle, from onboarding to offboarding, can create a sense of order and accountability. This session will explore best practices relating to:

    • • Workflow development and accounting for abnormal situations ​
    • • Defining stakeholder roles and ensuring accountability ​
    • • Methods for improving collaboration and communication ​
    • • Metrics to track to identify workflow bottlenecks
    Speakers:
    • Shea Hanson
      Strategic Solutions Engineer. GRCP, CTPRP, OneTrust
      Shea Hanson serves as a Strategic Solutions Engineer at OneTrust, the Trust Intelligence Platform, unlocking every company’s value and potential to thrive by doing what’s good for people and the planet. OneTrust connects privacy, GRC, ethics, and ESG teams, data, and processes, so all companies can collaborate seamlessly and put trust at the center of their operations and culture. In her role, Shea supports the OneTrust GRC & Security Cloud where she advises companies on how to analyze risk, scale compliance, and reinforce governance to uphold trusted business operations. Shea is a certified GRC professional (GRCP) designated by OCEG as well as a certified Third-Party Risk Professional (CTPRP) by Shared Assessments.
      View full bio
    • Colleen Milazzo
      Senior Vice President, TPR Software Products, Shared Assessments
      Colleen leads the TPRM software team in the development of software products/tools for third party risk assurance. Colleen has over 20 years of experience within the financial services industry and consulting. She has led programs associated with risk management, procurement/contract negotiation, mergers and acquisitions, and business process reengineering. She has regulatory and global experience executing portfolios to meet the corporate strategy.
      View full bio
    Register to Watch

    Journey to Standardization

    Shared Assessments will provide guidance to program managers and risk professionals for optimizing the efficiency and maturation of strategic supplier management programs. Examining how standards and regulations can align, we will cover how to drive the integrated acceptance of standard risk frameworks and diligence practices. This session will illuminate how to establish a common set of third-party diligence and management frameworks with a focus on Cyber, ESG, and Privacy Standards.
    Speakers:
    • Andrew Moyad
      CEO, Shared Assessments
      Andrew is an accomplished leader and trailblazer in third party risk management. As a practitioner and a senior risk management executive, he has driven a culture of accountability and diligence in safeguarding information. Andrew has more than 25 years in risk management and information security. He has contributed greatly to the transformation and advancement of risk management as a strategic function that intersects with and helps guide all aspects of organizations.
      View full bio
    Register to Watch

    May Member Forum Call: Benchmarking Maturity

    Submit your questions regarding benchmarking your TPRM program maturity. Questions will be answered live during the Member Forum Call. Submit questions here.
    Speakers:
    • Jennifer Hancock
      President, Hancock Consulting LLC
      Jennifer Hancock is a third-party risk management professional with more than 20 years of experience in third-party risk management. As owner of Hancock Consulting LLC, a consultancy she founded to provide specialized advisory services, Ms. Hancock has been able to help organizations develop effective third-party risk management strategies and improve their overall resilience. Her expertise has been sought after by a wide range of clients across industries, and she is dedicated to helping organizations of all sizes manage their third-party risks effectively As a thought leader in the field of third-party risk management, Ms. Hancock has been a featured speaker at numerous industry events and conferences. She is both a Certified Third-Party Risk Professional and Certified Third-Party Risk Assessor (CTPRA).
      View full bio
    • Gary Roboff
      Senior Advisor, Shared Assessments
      Gary Roboff is a Senior Advisor to Shared Assessments where he focuses on payments, risk management, mobile financial services, and information management. Gary has almost four decades of experience in financial services planning and management, including 25 years at JP Morgan Chase where he retired as Senior Vice President of Electronic Commerce. Gary has worked extensively in electronic payments, payments fraud, third party risk management, privacy, and information utilization, as well as business frameworks and standards for electronic commerce applications.
      View full bio
    • Colleen Milazzo
      SVP of Third Party Risk Software Products, Shared Assessments
      Colleen leads the TPRM software team in the development of software products/tools for third party-risk assurance. Colleen has over 20 years of experience within the financial services industry and consulting. She has led programs associated with risk management, procurement/contract negotiation, mergers and acquisitions, and business process reengineering. She has regulatory and global experience executing portfolios to meet the corporate strategy.
      View full bio
    Become a Member to Watch

    Debunking Vendor Cybersecurity Myths

    From speculating that vendors have terrifying security posture to guessing that vendors have water-tight security practices, organizations make assumptions around cybersecurity too often. What does the cybersecurity standing between business and their vendors actually look like? In a new study, RiskRecon by Mastercard and Cyentia Institute examine security assessments across more than 50,000 B2B relationships. Through this data, this session will illustrate:
    • • The likelihood of your firm or a firm you are working being involved in a breach event
    • • How firms can be exposed to a variety of new security risks via third parties
    • • The impact of poor assessment practices on your cybersecurity standing
    Speakers:
    • David F. Severski
      Senior Security Data Scientist, Cyentia
      David F. Severski is an information security data scientist, specializing in quantified risk management. He has provided risk management expertise across diverse industries—retail, aerospace, finance, energy, and healthcare. Severski brings both broad and deep expertise in a number of technical areas with a special focus on cloud technologies and DevOps practices. He strives to combine rigorous methods, technical expertise, and a human-centered approach to advance the state of evidence-based information security risk management.
      View full bio
    • Nasser Fattah
      Senior Consultant, Shared Assessments
      Nasser has 20+ years as a Cybersecurity, Supply Chain, and IT leader. With a focus on customer-first and team-building approaches, Fattah is able to align programs to support company strategies, regulatory requirements, and growth initiatives. He drives cybersecurity, supply chain, and IT as enablers for enterprise-wide transformation initiatives. He partners with executives to identify and select strategic external partners to deliver essential IT and cybersecurity services to the business. Nasser worked with global parent companies and subsidiaries to establish technology standards to maximize investments and operations efficacy to best support business needs and growth. Nasser has a strong, consistent record working successfully with Business and IT executives, regulators, auditors, and risk partners. Nasser also teaches cybersecurity at several colleges and is the chair for North America Shared Assessments – an industry best practices for the supply chain.
      View full bio
    Register to Watch

    ESG SIG Product Launch Webinar

    In this session, we will show the ESG SIG product alongside a discussion of use cases, key features and benefits. We will touch on the regulations, standards and frameworks mapped to by the ESG SIG and learn how this solution was made.
    Speakers:
    • Colleen Milazzo
      SVP of Third Party Risk Software Products, Shared Assessments
      Colleen leads the TPRM software team in the development of software products/tools for third party-risk assurance. Colleen has over 20 years of experience within the financial services industry and consulting. She has led programs associated with risk management, procurement/contract negotiation, mergers and acquisitions, and business process reengineering. She has regulatory and global experience executing portfolios to meet the corporate strategy.
      View full bio
    Register to Watch
    1 5 6 7 8