The Assurance Problem Nobody Owns - Shared Assessments

On Demand Events

The Assurance Problem Nobody Owns

The Assurance Problem Nobody Owns Why Security Questionnaires, Customer Trust, Regulatory Inquiries, and Third-Party Risk Have Become One Business Challenge Organizations spend thousands of hours each year responding to security questionnaires, customer due diligence requests, regulatory inquiries, audits, privacy assessments, AI governance reviews, and third-party risk activities—yet these efforts are often managed by different teams, using different processes, and drawing from the same underlying evidence. In this thought-provoking 50-minute session, we will explore how assurance activities have become fragmented across the enterprise, creating inefficiencies, inconsistent responses, increased operational burden, and unnecessary trust friction. Attendees will learn why traditional organizational structures struggle to keep pace with growing assurance demands, the hidden costs of assurance silos, and how leading organizations are beginning to view assurance as a strategic business capability rather than a collection of disconnected tasks. Participants will leave with a practical framework for identifying assurance gaps, improving cross-functional collaboration, and building a more unified approach to establishing and maintaining trust with customers, regulators, partners, and other stakeholders.
Speakers:
  • Tom Garrubba
    Chief Commercial & Partnership Officer / Co-founder, FusionAIrre
    Tom Garrubba is the Co-Founder and Chief Commercial & Partnership Officer of FusionAIrre, an agentic-AI company delivering external-party assurance solutions that help organizations efficiently and defensibly respond to regulatory, due-diligence, and RFP questionnaires. He is an internationally recognized third-party risk management (TPRM) and cybersecurity expert with more than two decades of experience building, leading, and advising enterprise risk programs across highly regulated industries, including financial services, healthcare, and technology, working closely with regulators, auditors, and executive leadership. Throughout his career, Tom has helped mature enterprise third-party risk, cybersecurity, privacy, and governance programs and has been actively involved in Shared Assessments, contributing to industry standards and practitioner education. A published author and creator of the TPRM Tidbits thought-leadership series, Tom is also an adjunct professor at Robert Morris University.
    View full bio
  • Andrew Moyad
    CEO, Shared Assessments
    Andrew is the CEO of Shared Assessments, a global risk membership organization that supports hundreds of companies, risk programs, and thousands of their associated third-party, compliance, cyber, and other risk professionals. As a risk practitioner and executive with more than 25 years in risk management, Andrew promotes the creation of cultures of accountability for organizations and their third parties. Prior to joining Shared Assessments in 2022, Andrew served as Senior Vice President, Vendor Risk Management and Corporate Insurance at Blackstone for four years, where he led a team of risk professionals responsible for supporting all business teams through all phases of the vendor lifecycle. Prior to Blackstone, he worked at BlackRock from 2010-18, where he first joined and then eventually led the firm’s Vendor Risk Management team. He also worked at Citigroup nine years, finishing as a Senior Vice President and Business Information Security Officer in Global Fixed Income, leading onsite third-party risk assessments across the United States, Europe, and Asia.
    View full bio
Register to Watch