Join us for our Thursday session! Starting off with John Hightower (AKA "PBO" Professor Black Ops) talking about Third Party Risk Management (TPRM).
1. What is TPRM?
2. How do you handle and manage TPRM?
Followed by the usual Q&A, open stage, and open discussion format. GRC MAFIA
Chapters
00:00 Introduction to GRC and Community Building
05:12 Understanding Risk Assessment Fundamentals
06:37 Types of Third Party Risks
10:07 Operational, Financial, and Reputational Risks
12:29 Visibility in Supply Chain Risks
14:25 Supplier Security Requirements and Vetting
16:08 Personnel Screening Policies for Third Parties
18:31 Financial Health and Vendor Viability
20:21 Roles and Responsibilities in Risk Assessment
23:07 Common Mistakes in Data Sharing with Vendors
26:28 Compliance and Legal Considerations
29:19 Breach Notification and Incident Response
32:41 Key Risk Indicators and Frameworks
39:52 Understanding Risk Assessment and Management
42:15 Navigating Third-Party Vendor Risks
44:00 The Importance of Data Security in Cloud Services
47:17 Common Mistakes in Data Sharing with Vendors
49:14 Exploring Federal Compliance and Regulations
50:09 The Role of SBOM in Third-Party Risk Management
55:28 Post-Quantum Cryptography and Its Implications
01:00:03 Differences in TPRM: Federal vs. Private Sector
01:04:34 Practical Resources for TPRM Improvement
01:15:19 Compliance and Training Essentials
01:18:14 Background Checks and Hiring Standards
01:22:19 Navigating Certifications and Professional Growth
01:25:22 Risk Management and Assessment Strategies
01:30:19 The Role of AI in Risk Management
01:35:32 The Future of Work and AI's Impact
01:43:06 Continuous Learning and Personal Development
-
💬 Leave a comment with your thoughts, requests, and questions!
✅ Is this your vibe? Consider liking and subscribing to see more of it!
🚀 Join the Study GRC community:
Website: https://studygrc.org
Discord: https://discord.studygrc.org
#TeamHailey