Audit readiness starts long before an audit begins. Preparing for Audits & Examinations provides practical guidance to help TPRM teams prepare for and navigate the pre-audit, fieldwork, and post-audit phases with greater confidence and consistency. From maintaining reliable data and documentation to managing auditor interactions and acting on findings, the paper shows how organizations can […]
This executive summary highlights the most significant findings from Shared Assessments’ 2026 Mid-Year Risk Report, drawn from interviews with risk management and TPRM leaders across industries. It examines how risks once considered “emerging”—AI adoption, quantum computing timelines, geopolitical instability, and regulatory fragmentation—have become operational and interconnected, reshaping priorities across six risk categories. The summary outlines […]
The Shared Assessments Mid-Year Risk Report explores how once-emerging risks are becoming immediate, interconnected priorities for Third-Party Risk Management (TPRM) programs in 2026. Drawing on insights from risk management and TPRM leaders across industries, this report examines the shifting risk landscape and the practical actions organizations can take to strengthen resilience and connect third-party risk […]
If your third-party risk management program has existed for more than a couple of years, you know that audits and examinations no longer qualify as occasional interruptions. External auditors, internal auditors, regulatory examiners, and other external specialists are asking more frequent, and more detailed questions about how you govern, monitor, and document your organization’s relationships […]
Third parties are rapidly integrating artificial intelligence (AI) into products, services, and business processes. Whether a legal team buys an AI-powered research tool, a software vendor uses generative AI to write code, or a critical supplier quietly adds AI capabilities to an existing platform, third-party risk management (TPRM) teams confront the same question: How do […]
Boards are demanding clearer, decision-focused insight into third-party risk driven in part by regulations such as DORA and NIS 2 which explicitly elevate board accountability for Information and Communication Technology (ICT) resilience. Directors are now expected to actively oversee risk frameworks, understand cyber exposure, and ensure readiness for disruptions. As a result, board reporting must […]
In this episode of The Risk Rundown with Shared Assessments, host Elizabeth Dunsmoor delves into the dynamic world of third-party risk management with leading experts. Together, they unpack the challenges and opportunities of navigating today’s rapidly evolving risk landscape. From adapting to shifting regulatory demands to leveraging cutting-edge tools and fostering collaboration, this episode offers […]
In this special “CEO Corner” episode, Elizabeth Dunsmoor, TPRM Principal at Shared Assessments, sits down with Mark Orsi, CEO of Global Resilience Federation, to explore the evolving landscape of operational resilience and third-party risk management from the perspective of the C-suite. They discuss the shift from cybersecurity to resilience, the importance of understanding supply chain […]
In this episode of The Risk Rundown with Shared Assessments, Elizabeth Dunsmoor is joined by Shriparna Ghosh, Director at EY and expert in Third-Party Risk and Resilience Management. Together, they explore the evolving landscape of third-party risk management (TPRM), emphasizing the critical importance of resilience in today’s interconnected world. Sri shares her insights on building robust […]
Please register or log in to complete the checkout process. You will be redirected to the checkout page after logging in.
By downloading this software, you acknowledge that you may be invited to provide usability feedback to help improve its functionality. Feedback does not guarantee changes or compensation.