Authorities on Risk Assurance

The Shared Assessments Blog

Failed Risk Controls – The Wells Fargo Saga, Part Two

Published on April 17, 2017 By | Posted in: Blog, Board of Directors, Tone at the Top, Wells Fargo

By: Bob Jones, Senior Advisor, The Santa Fe Group, Shared Assessments Program and Gary Roboff, Senior Advisor, The Santa Fe Group, Shared Assessments Program. The Sales Practices Report released by the Board of Wells Fargo on April 10th provides an extraordinary behind the scenes look at the breakdown of risk control processes at one of […]

Setting a New Benchmark – New York State Cybersecurity Requirements

Published on April 17, 2017 By | Posted in: Best Practices, Business Resiliency, Compliance, Education, Framework, Newsletter, Outsourcing, Risk Management, Third Party Risk Management, Vendor Risk Managment

For financial services companies that fall under the New York State Department of Financial Services (DFS) cybersecurity requirements rule, the timeline for implementing 23 NYCRR500 has begun. The new rule became effective March 1st. Each section of the rule has a timeline relating to the development of cybersecurity programs for all “Covered Entities.” The regulation […]

The Shared Assessments Program 2017 Strategic Risk Management Initiative

Published on April 11, 2017 By | Posted in: Best Practices, Board's, Business Resiliency, Certified Third Party Risk Professional (CTPRP) program, Cybersecurity, Education, Framework, Outsourcing, Risk, Risk Management, Security, Third Party Risk, Third Party Risk Management, Vendor Risk Managment

The Shared Assessments Program is the only organization that has uniquely positioned and developed standardized resources for managing the complete third party relationship lifecycle. Such standardization is critical to the advancement of effective, secure third party controls and risk management in an otherwise fractured market. As part of our 2017 initiative, we’re formalizing the Shared […]

Setting Expectations for Your Third Parties

Published on March 14, 2017 By | Posted in: Best Practices, Business Resiliency, Education, Newsletter, Outsourcing, Risk, Risk Management, Security, Third Party Risk, Third Party Risk Management, Vendor Risk Managment

Risk Rating During On-Boarding Including third party risk rating as a strategic part of a robust risk management program provides the opportunity for early identification of the wide range of issues that ripple through both regulated and unregulated industries wherever outsourcing is present. Scoring third parties consistently was ranked as the most challenging issue in […]

Building Your TPRM Program – Part 2: 11 Essential Activities to Implement in your Third Party Risk Management Program

Published on March 6, 2017 By | Posted in: News

This is part two of a two-part series created in response to an increasing number of member requests for foundational concepts that support Boards and executive managers as they work to define, design and implement evidence-based Third Party Risk Management (TRPM) programs. This second part provides starting-point approaches and essential focus areas for an organization […]

Employing Lines of Defense – Risk Management That’s Not Just for Banks

Published on February 23, 2017 By | Posted in: Best Practices, Business Resiliency, Education, Framework, Newsletter, Outsourcing, Risk, Risk Management, Third Party Risk Management, Vendor Risk Managment

Key Best Practices Messages Robust risk governance principles are espoused in guidelines worldwide for Enterprise Risk Management (ERM) from organizations that vary from oversight agencies to industry support groups. Just for example, the International Association of Privacy Professionals (IAPP), Financial Stability Board (FSB), Committee of Sponsoring Organizations of the Treadway Commission (COSO), the Basel Committee […]

Building Your TPRM Program – Part 1: Four Foundational Steps to Build Your Third Party Risk Management Program On

Published on February 3, 2017 By | Posted in: Best Practices, Business Resiliency, Certified Third Party Risk Professional (CTPRP) program, Education, Framework, Outsourcing, Risk Management, Vendor Risk Managment

Build Your Third Party Risk Management Program

Building Your TPRM Program

Published on January 25, 2017 By | Posted in: Best Practices, Business Resiliency, Education, Outsourcing, Risk Management, Third Party Risk Management, Vendor Risk Managment

PwC’s report highlighting monitoring of vendor networks by means of supply chain risk analytics focuses on the fact that the volume and transactions of outsourcing amplify risk. “The increasing severity of consequences for regulatory violations by vendors in complex global supply chains is matched only by the corresponding damage to reputation when vendor network violations […]

Shared Assessments 2016 – Strengthening Best Practices and Building Community

Published on January 17, 2017 By | Posted in: News

Shared Assessments finished the 2016 year with 85 new members, a 25% increase over 2015. We closed out the year with a total of 226 members, showing continuing year-over-year growth in the commitment of organizations to improving third party risk management and advancing best practices worldwide. We’ve come a long way together since Shared Assessments […]

Shared Assessments Program Addresses Recommendations of Russian Hack Report for Improved Security

Published on January 13, 2017 By | Posted in: Advanced Persistent Threats, Cyber Attacks, Cyber Crime, Cybersecurity, Hacking, Program Tools, Security, Third Party Risk Management

The Threat Horizon The December 29th joint analysis report (JAR) GRIZZLY STEPPE – Russian Malicious Cyber Activity, contains specific indicators of cyberattacks and steps organizations can take to mitigate the “the tools and infrastructure used by the Russian civilian and military intelligence Services (RIS) to compromise and exploit networks and endpoints associated with the U.S. […]

Shared Assessments Licensee ZS logo
Shared Assessments Licensee ControlCase
Shared Assessments Licensee Identity Theft 911
Shared Assessments Logo yodlee
Viewpoint Logo
Shared Assessments Logo Deluxe Corp
Shared Assessments Logo sei
Shared Assessments Licensee Pivot Point Security
Shared Assessments Logo radian
Shared Assessments Logo usbank
Shared Assessments Licensee Protiviti
Shared Assessments Licensee Power Advocate
Shared Assessments Licensee-Copytalk
Shared Assessments Licensee ctg
Shared Assessments Logo pwc
Shared Assessments Licensee Bank of the West
Shared Assessments Licensee Lockpath
Shared Assessments Licensee TD Ameritrade
Shared Assessments Logo first data
Shared Assessments Licensee Rsam
Shared Assessments Logo Iron Mountain
Shared Assessments Logo dtcc
Shared Assessments Program licensee Churchill & Harriman logo
intralinks-logo
MetricStream logo
Shared Assessments Logo Ernst & Young
Shared Assessments Logo Deloitte
Shared Assessments Logo Bank Of New York Mellon