On Demand Events

Missed a recent webinar or Member Forum Call? Catch our previous virtual sessions here. We now offer CPEs from most of our on-demand offerings. To earn CPEs, please submit your information and codes in the form linked below. Note: our on-demand recordings work best when viewed in the Chrome browser.

All On-demand Events

February 2025 Member Forum Call – The Evolving Role of Critical Third Parties: 2025 Survey Results and TPRM Solutions

Explore the latest findings from the 2025 Critical Third-Party Survey as panelists analyze key trends and compare them with the 2023 results. This session provides an updated perspective on critical third parties, highlighting the impact of increasing global regulatory scrutiny. Join this engaging and interactive discussion where experts will bridge the gap between identifying and quantifying critical third parties and integrating these insights into TPRM processes. Topics will include defining inherent risk criteria, employing effective risk tiering techniques and models, and leveraging tools such as Shared Assessments' TPSIRR framework. Gain practical strategies to enhance your organization's approach to managing critical third parties in today’s dynamic risk landscape.
Speakers:
  • Chris Johnson
    Senior Advisor, Shared Assessments
  • Jen Hancock
    Senior Advisor, Shared Assessments
  • John Bree
    Chief Risk Officer & Chief Evangelist, Supply Wisdom
Register to Watch

The ROI of TPRM: Creating Business Value in Your Vendor Risk Program

Modern third-party risk management (TPRM) programs do more than just mitigate risk or check a compliance box—they create measurable business value. But many TPRM teams are set up to fail with a reactive, resource-intensive approach. In this session, you’ll learn how to flip that script with streamlined, value-generating TPRM that supports business resilience and growth. We’ll explore how:

- AI-powered, automated vendor risk assessments make your team more effective at identifying and mitigating risk in a fraction of the time
- Modern TPRM moves away from lengthy questionnaires toward insight-rich, on-demand security data
- Greater efficiency leaves you with extra resources that can be re-allocated to business-critical tasks

If you’ve ever been called a “cost center” or “necessary evil” (or if you just want more time back in your day), this is the session for you!
Speakers:
  • Elizabeth Dunsmoor
    TPRM Principal, Shared Assessments
    Elizabeth Dunsmoor recently joined Shared Assessments as a TPRM Principal after 15 years as a TPRM practitioner. She has experience designing holistic programs and delivering assessment work within the cybersecurity, financial services, manufacturing, and healthcare sectors. With a proven ability to oversee and execute long-term operational strategies and methodologies for risk programs, Elizabeth is proficient in a variety of management actions including translating strategies into measurable plans, partnering with Procurement, corporate teams, and firm leaders to develop a pipeline of cross-functional leaders within the risk management function. She now provides training and guidance to business leaders to ensure understanding of program requirements, third-party capabilities, and performance expectations.
    View full bio
  • John Finizio
    Director, Technical Programs, Whistic
    John, a seasoned professional with 20 years of experience in Security, Audit, Third Party Risk, and Product, serves as VP, Security, Risk and Compliance at Whistic. In this role, he safeguards Whistic's assets, data, and systems from cybersecurity threats and works to improve the risk and compliance posture at Whistic. As a dedicated thought leader, John contributes to shaping the future of Third Party Risk Management (TPRM) and is currently serving a second term on the Shared Assessments US Steering Committee, bringing a wealth of expertise.
    View full bio
  • Lance Mueller
    CEO, Venseca
    Lance is the Chief Executive Officer of Venseca, a world leader in Third-party Risk, renowned for its innovative solutions and expert-driven approach to communicating the thoroughness of an organization’s InfoSec program. Lance has established himself as a visionary leader committed to advancing the field and protecting organizations from relational threats. Under Lance's leadership, Venseca has partnered with hundreds of K12 and Higher Education institutions to provide data and services to solve third-party risk challenges. His strategic vision and hands-on approach have been pivotal in driving the company’s growth and maintaining its reputation as a trusted business advisor.
    View full bio
Register to Watch

February 2025 Product Forum Call – Verifying Due Diligence With The SIG And SCA

In today's complex risk landscape, organizations must effectively assess and manage third-party risks to safeguard their operations and data. The Shared Assessments Program offers two pivotal tools to streamline this process: the Standardized Information Gathering (SIG) questionnaire and the Standardized Control Assessment (SCA) procedures. This webinar will delve into how the SCA complements the SIG, forming a comprehensive "trust but verify" approach to third-party risk management. Attendees will gain insights into: Understanding the SIG and SCA: An overview of each tool's purpose, structure, and application in evaluating vendor risk. Alignment and Integration: Strategies for integrating SCA procedures with SIG responses to validate vendor-provided information and ensure robust risk assessments. Practical Implementation: Best practices for scoping assessments, conducting evaluations, and utilizing findings to enhance your organization's third-party risk posture. Join us to learn how leveraging the synergy between the SIG and SCA can lead to more efficient and effective third-party risk management, ultimately strengthening your organization's resilience against emerging threats.
Speakers:
  • Mike Baker
    Software Developer, Products and Support, Shared Assessments
  • Sheria Williams
    TPRM Principal, Products and Support Team, Shared Assessments
Subscribe to Watch

Navigating AI Adoption: Governance, Risk, and Talent

This session will explore how companies are navigating the challenges of AI adoption, evolving service models, and addressing new risks. The discussion will emphasize the importance of strong governance, talent management, and the strategic integration of AI, digital engineering, and cloud solutions to ensure ongoing competitiveness in a rapidly changing market. We will also share an update what we are seeing from our clients regarding the testing and implementation of AI models and the governance structures that our enterprise clients are deploying. Key discussions will include:
- Evolving Governance: How AI and digital transformation are reshaping governance practices across industries.
- Risk Management: Identifying and mitigating the unique risks associated with AI deployment.
- Future Workforce: Developing strategies to prepare and manage talent in a tech-driven world.
Speakers:
  • Andrew Moyad
    CEO, Shared Assessments
    Andrew is the CEO of Shared Assessments, a global membership organization that supports hundreds of companies, risk programs, and thousands of associated third-party and other risk professionals. As a risk practitioner and executive, he has driven a culture of accountability and diligence in safeguarding information and other assets for organizations and their third parties. He has more than 25 years of experience in risk management and information security.
    View full bio
  • Brian Smith
    Managing Director, Alvarez & Marsal
    Brian Smith is a Managing Director with Alvarez & Marsal based in New York. He has more than 30 years experience as an operational executive and advisor relating to business process and technology globalization and outsourcing, technology management and restructuring. Since joining A&M, Mr. Smith has led engagements focused on the design and implementation of technology and organizational solutions, software acquisition, contracting and third-party risk management. Before joining A&M in 2014 he was a general manager in the financial services group at Computer Science Corporation, responsible for oversight of global client relationships for the banking and capital markets sector. Earlier, Mr. Smith spent seven years with TPI, a global sourcing advisory firm, leading the Business Process Outsourcing and Service Management practices. Previously he held technology and operational management roles at the Citibank Private Bank and at American Express Bank in the UK, Switzerland and the USA.
    View full bio
  • Akiba Stern
    Partner, Loeb & Loeb LLP
    Akiba Stern has advised clients for over 30 years in all aspects of business law, both as in-house counsel and at law firms. Akiba concentrates his practice on outsourcing, technology-enabled business transactions, e-commerce, technology transfers, licensing, intellectual property and joint ventures; including transactions involving the commercialization of intellectual property. Akiba is recognized as a Hall of Fame Leading Lawyer in Outsourcing by The Legal 500 and as a Band 1 lawyer in Technology and Outsourcing – New York by Chambers.
    View full bio
Register to Watch

December Member Forum Call – Scanning the Risk Horizon: Top Trends in TPRM for 2025

Join Shared Assessments CEO Andrew Moyad and Senior Advisor Jen Hancock for a dynamic, fireside-chat-style discussion on the top trends shaping Third Party Risk Management in 2025. Together, they’ll explore how advancements in Artificial Intelligence, evolving global regulations, complex supply chain risks, governance strategies, and continuous monitoring solutions are redefining the TPRM landscape. This engaging session will provide expert insights into the key challenges practitioners face and offer practical strategies for preparing your organization to adapt and thrive. Don’t miss this opportunity to gain actionable takeaways and listen in on a candid, forward-looking conversation designed to leave you ready to tackle what’s next in TPRM.
Speakers:
  • Andrew Moyad
    CEO, Shared Assessments
  • Jen Hancock
    Senior Advisor, Shared Assessments
Become a Member to Watch

Insurance Committee Meeting – November 2024

The Shared Assessments Insurance Committee discussed the importance of application-level encryption, with 84% of respondents requiring it. They debated key rotation, with 30% mandating annual rotation. The committee also explored the use of third-party assessments and certifications, noting that 20% accept them fully, while 30% use them partially. The conversation highlighted challenges in managing assessment questionnaires, with typical high-risk assessments ranging from 200 to 300 questions. The meeting concluded with plans to address data minimization efforts, AI programs, and regulatory changes in future meetings.

Joint Emerging Tech & Regulatory Committee Meeting – November 2024

The meeting discussed the impact of AI regulations on third-party risk management. Key points included a recap of 2024 which included summaries as well as a review of the similarities and differences between the Executive Order, EU AI Act, and UK AI Laws. The panelist then defined AI Systems, AI Deployer, and AI Provider before several use case scenarios were explored on the different impacts these regulations would have on them. Use case examples included AI Deployer of a multinational bank organization with EU operations; : AI Deployer of a US-based Healthcare provider active in the EU Market, and AI Provider of a high-risk AI system. The committee then looked ahead into what might be expected in 2025 & beyond in the US, UK, and EU.

AI For TPRM: Rocketing TPRM To MARS

Join Shared Assessments and Mirato as we explore how MARS Incorporated leverages AI to drive impactful efficiencies in their risk management processes. As a global snacking, petcare, food & nutrition company, operating in over 80 countries with a diverse product range, MARS skilfully navigates the complexities of supply chains and vendor networks. By utilizing the Mirato Questionnaire Killer™ (MQK), MARS has significantly reduced assessment time while increasing accuracy. This session offers a real-world AI risk management use case—bring your own Skittles, M&M's, or Snickers!
Speakers:
  • Andrew Moyad
    CEO, Shared Assessments
    Andrew is the CEO of Shared Assessments, a global membership organization that supports hundreds of companies, risk programs, and thousands of associated third-party and other risk professionals. As a risk practitioner and executive, he has driven a culture of accountability and diligence in safeguarding information and other assets for organizations and their third parties. He has more than 25 years of experience in risk management and information security.
    View full bio
  • Etai Hochman
    CTO & Co-Founder, Mirato
    Industry recognized technology and innovation leader Etai Hochman is successfully breaking norms across a wide range of industries, from improving academic education for gifted children in mathematics (Bar Ilan University Israel) to optimizing the radio networks of the world’s largest mobile operators (Intucell acquired by Cisco) to unlocking a new breed of cyber insurance for enterprises (Founder of At-Bay). While still in high school, Etai earned a B.Sc. in mathematics from Bar-Ilan University before enlisting to serve in the Office of the Prime Minister of Israel, where he worked for six years creating a new breed of strategic cyber infrastructure that unlocked new operational capabilities for Israel. During his tenure there, he also completed an MBA from Tel Aviv University.
    View full bio
  • Roberto Barros
    Infosec Assurance & Compliance Senior Lead, Mars Inc
    Roberto is a vendor cyber risk management Senior Lead at Mars, helping reduce risk introduced by vendors to the organization. An IT professional with over 20 years of experience in the CPG and services industries, he is a certified Scrum Master and expert in Agile methodologies, with a strong focus on the cybersecurity area.
    View full bio
Register to Watch

Financial Services Committee Meeting – November 2024

The Financial Services Committee discussed various topics, including the impact of the Bank of England's ruling on critical third parties, the importance of supply chain & geopolitical risk management, and the FFIEC's updated handbook. Key points included the need for proactive monitoring of critical vendors, leveraging data sources, and understanding the financial stability of vendors. The committee emphasized the importance of aligning third-party risk management programs with regulatory expectations and maintaining up-to-date policies. They also highlighted the necessity of involving senior management and compliance teams in analyzing and addressing regulatory changes to ensure compliance and resilience.

November Member Forum Call: Product Release Review PR25

This session will feature an overview of the 2025 Shared Assessments Product Family, focused on Regulatory Mappings: DORA, NIS2, and CSF NIST 2.0. We will review the impact of the new regulatory mappings covered by the Standardized Information Gathering (SIG) Questionnaire and discuss new updates to the TPSIR, such as clarity, weighting, and customizability. We will also preview the new SIG Content Library API.
Speakers:
  • Kelcey Reed
    SVP, Technology Product Officer, Shared Assessments
  • Mike Baker
    Software Developer, Products and Support, Shared Assessments
  • Sheria Williams
    TPRM Principal, Products and Support Team, Shared Assessments, Shared Assessments
Become a Member to Watch
1 2 3 15