On Demand Events

Missed a recent webinar or Member Forum Call? Catch our previous virtual sessions here. We now offer CPEs from most of our on-demand offerings. To earn CPEs, please submit your information and codes in the form linked below. Note: our on-demand recordings work best when viewed in the Chrome browser.

All On-demand Events

AI & Emerging Technologies Committee – Open to Members Only

The Shared Assessments AI & Emerging Technology Committee provided an update on Shared Assessments' AI initiatives, including the EU AI ACT, response to the Treasury's RFI and an upcoming AI briefing paper. The committee discussed potential cyber risks and concerns around autonomous vehicles (AVs), including data privacy, cross-border data sharing, and the lack of underwriting history compared to human-driven vehicles. Participants highlighted the need for regulatory frameworks and standards to address the risks of AVs, as the technology is rapidly evolving. Lastly, the committee had an in-depth discussion on the advancements in deep fake technology and the potential for misuse, including identity fraud in remote work situations. Participants emphasized the balance between convenience and security, and the need for new methods to verify identity in a remote workforce. The group also discussed the importance of educating customers and third parties about the risks of deep fakes. The next meeting is scheduled for October 22, 2024.
Register to Download

Best Practices for Threat and Vulnerability Response & Emergency Assessments

It's not getting any easier. Every time we turn around there seems to be another attack or threat that demands our attention. While each event is unique, they all result in third-party risk management teams scrambling to ensure their organizations are protected. Rapid responses and emergency assessments can be knee-jerk, stressful and distracting. It doesn't have to be that way. Join us for a discussion on the best practices to responding to zero-day vulnerability attacks and conducting emergency assessments. We'll outline what's required to prepare in advance so you're ready to execute when the time comes. From establishing solid communication channels to leveraging automation, we'll cover the necessary steps and considerations for an effective response plan. Session attendees will learn:

  • • How to gain visibility into your entire vendor ecosystem and prepare in advance to reduce both reaction time and exposure to loss
  • • How to quickly identify which third parties require follow-on action based on each specific threat actor or vulnerability
  • • How quick-assess campaigns can automatically scope, distribute, and score responses
Speakers:
  • Ed Thomas
    Senior VP, ProcessUnity
    Ed Thomas is a Senior Vice President at ProcessUnity, with an extensive background in Third-Party Risk Management. A seasoned expert in the field, Ed has years of experience guiding organizations on their journey to establish efficient and effective risk management programs. Combining his deep industry knowledge with practical insights, Ed aims to assist organizations in realizing the full potential of their TPRM programs.
    View full bio
  • Elizabeth Dunsmoor
    TPRM Principal, Shared Assessments
    Elizabeth Dunsmoor recently joined Shared Assessments as a TPRM Principal after 15 years as a TPRM practitioner. She has experience designing holistic programs and delivering assessment work within the cybersecurity, financial services, manufacturing, and healthcare sectors. With a proven ability to oversee and execute long-term operational strategies and methodologies for risk programs, Elizabeth is proficient in a variety of management actions including translating strategies into measurable plans, partnering with Procurement, corporate teams, and firm leaders to develop a pipeline of cross-functional leaders within the risk management function. She now provides training and guidance to business leaders to ensure understanding of program requirements, third-party capabilities, and performance expectations.
    View full bio
Register to Download
Register to Watch

Global ESG TPRM Committee – Open to Members/Non-Members

The conversation focused on various regulations and directives related to ESG (Environmental, Social, and Governance) factors in vendor management programs. Speakers discussed the German Supply Chain Act, EU's Corporate Sustainability Due Diligence Directive, and ESG ratings, highlighting their significance in ensuring ethical and sustainable practices. They also discussed the potential impact of recent Supreme Court decisions on ESG regulations and the evolving nature of third-party risk management in the face of climate change. The speakers emphasized the importance of staying abreast of changes in the insurance industry and incorporating insurance reviews into third-party risk programs to mitigate potential risks. Thank you to our guest speakers, including Justin Libucki, ESG Risk Analyst, SEI Investments, and Jennifer Hancock, Senior Advisor, Shared Assessments.
Register to Download

August Member Forum Call – Cloud Computing Essentials For Third Party Risk Management Leaders

Join us for an engaging and insightful session tailored specifically for third party risk management leaders. This webinar will explore the transformative impact of cloud computing on business operations and risk management strategies. Key topics include: Best practices for assessing and mitigating risks associated with cloud service providers Ensuring data security and maintaining regulatory compliance Effective cloud governance and vendor risk assessments Latest trends shaping the future of cloud technology Attendees will gain valuable insights to enhance their expertise and safeguard their organization's cloud environment. Don't miss this opportunity to stay ahead in the ever-evolving landscape of cloud computing and risk management.
Speakers:
  • Chris Johnson
    Senior Advisor , Shared Assessments
    Chris is a Senior Advisor to Shared Assessments where he focuses on healthcare, financial services, and emerging technologies. He has more than 25 years of experience helping clients effectively manage risk while exhibiting a passionate and dynamic leadership style. Prior to joining Shared Assessments, Chris led third party risk management and information technology initiatives at Bristol Myers Squibb, Bank of America, Merrill Lynch, KPMG, and Marriott International.
    View full bio
  • John DiMaria
    Director of Operations Excellence and Research Fellow, Cloud Security Alliance
    John DiMaria; CSSBB, HISP, MHISP, AMBCI, CERP, is the Director of Operations Excellence and Research Fellow with the Cloud Security Alliance. He has 40 years of experience in Standards and management System Development, including Information Systems, Business Continuity, and Quality. John was one of the innovators and co-founders of the CSA STAR programs Open Certification Framework for cloud providers and developed the first certification scheme and process related to the NIST Cybersecurity Framework. John is a contributing author of the last three editions of the American Bar Association’s Cybersecurity Handbook, and a working group member, and a key contributor to the NIST Cybersecurity Framework and former contributing author and Steering Committee member of the Shared Assessments Program, where he dedicated significant time and effort to advancing the goals and initiatives of the program. John also serves as a leading expert as the BCI SIG Vice-Chair for Cyber Resilience, Working Group Chair for the IEEE P3454™, Standard for Cloud Computing - Operational Resilience – Framework, Member of the MSECB Impartiality, Ethics, and Appeals Committee, and Customer Experience Advisory Member with Lindenwood University, St. Louis, MO. He currently oversees the strategic execution of core operational functions, liaising across departments to provide tactical support and guidance, promoting operational efficiency and interdepartmental collaboration. Prior to joining CSA, DiMaria was the Global Product Champion for The British Standards Institution where he served as the global head of all information security, business continuity and cybersecurity product and process offerings as well as operations assessment scheme manager. He has experience working with both national and international environments.
    View full bio
Become a Member to Download
Become a Member to Watch

Risk Refresh: Modernizing Your Program To Move At The Speed Of Risk

In Third-Party Risk Management (TPRM), the objectives remain constant, yet the technologies and processes used are changing. This webinar will equip you to guide your program toward a modern, agile approach to third-party risk management (TPRM). Attendees will identify outdated processes and pinpoint areas hindering efficiency. Forward-thinking leaders are ignoring old practices, embracing a more modern approach and innovating faster than ever. Join us to discover new technologies including AI and techniques for standardization to see how to streamline assessments and workflows. Evolve your program to move at the speed of risk – join us!
Speakers:
  • John Finizio
    VP, Security, Risk & Compliance,, Whistic
    John, a seasoned professional with 20 years of experience in Security, Audit, Third Party Risk, and Product, serves as VP, Security, Risk and Compliance at Whistic. In this role, he safeguards Whistic's assets, data, and systems from cybersecurity threats and works to improve the risk and compliance posture at Whistic. As a dedicated thought leader, John contributes to shaping the future of Third Party Risk Management (TPRM) and is currently serving a second term on the Shared Assessments US Steering Committee, bringing a wealth of expertise.
    View full bio
  • Elizabeth Dunsmoor
    TPRM Principal, Shared Assessments
    Elizabeth Dunsmoor recently joined Shared Assessments as a TPRM Principal after 15 years as a TPRM practitioner. She has experience designing holistic programs and delivering assessment work within the cybersecurity, financial services, manufacturing, and healthcare sectors. With a proven ability to oversee and execute long-term operational strategies and methodologies for risk programs, Elizabeth is proficient in a variety of management actions including translating strategies into measurable plans, partnering with Procurement, corporate teams, and firm leaders to develop a pipeline of cross-functional leaders within the risk management function. She now provides training and guidance to business leaders to ensure understanding of program requirements, third-party capabilities, and performance expectations.
    View full bio
Register to Download
Register to Watch

August Product Forum Call – Building A Custom SIG

Join us for an insightful Product Forum Call where we delve into the Shared Assessments Standardized Information Gathering (SIG) Questionnaire. This powerful tool empowers organizations to manage third-party risk effectively through customizable assessments. In this webinar, we'll cover:
  • Products for the Third-Party Risk Management Lifecycle: Explore solutions tailored to each stage of your risk management journey.
  • An Overview: Building a Custom SIG: Learn how to craft a tailored SIG to suit your specific risk assessment needs.
  • Product Demo: Get a firsthand look at how the SIG works in action through a live demonstration.
  • Use Cases: Discover real-world scenarios where the SIG has proven invaluable in mitigating third-party risk.
  • Product Benefits: Understand the tangible benefits of leveraging the Shared Assessments SIG for your organization.
  • Subscribe to Download
    Subscribe to Watch

    Shoring Up Your Defenses: A Guide to Cyber Insurance

    Cyberattacks are on the rise, but you don't have to face them alone. Join this webinar to learn how cyber insurance can be your shield. We'll break down the basics: what it covers, from data breaches to ransomware, and how to choose the right policy for your business. Discover key steps to improve your cybersecurity posture and potentially lower your premiums.
    Speakers:
    • Andrew Moyad
      CEO, Shared Assessments
      Andrew is the CEO of Shared Assessments, a global membership organization that supports hundreds of companies, risk programs, and thousands of associated third-party and other risk professionals. As a risk practitioner and executive, he has driven a culture of accountability and diligence in safeguarding information and other assets for organizations and their third parties. He has more than 25 years of experience in risk management and information security.
      View full bio
    • Mary Guzman
      CEO & Founder, Crown Jewel® Insurance
      Mary Guzman is an insurance industry veteran, having spent 30 years as a broker, advising clients on a myriad of risks to their businesses and developing industry-first products/wording, most recently with a focus on all things related to technology, cyber, media, and intellectual property. She is considered a “disruptor” in the industry and is the architect behind the world’s first trade secret insurance.
      View full bio
    Register to Download
    Register to Watch

    July Member Forum Call – Regulatory Roundup: Essential Updates for TPRM Professionals

    Join us on July 9 for an insightful Member Forum Call focused on Regulatory Affairs and Third-Party Risk Management. Led by our esteemed Regulatory Committee leadership, this hour-long discussion will delve into critical regulatory topics shaping the landscape of TPRM. Key discussion points will include the implications of the Artificial Intelligence Act (AIA Act), the Digital Operational Resilience Act (DORA), and the Network and Information Security Directive (NIS2). We'll also explore the Environmental, Social, and Governance (ESG) climate and the German Supply Chain Act. Don't miss this opportunity to stay informed and engage with experts on these pivotal regulatory matters.
    Speakers:
    • Brad Keller
      VP of Third Party Risk & Governance, LPL Financial Services
      Influential Risk Management Executive with proven success managing risk across multiple business lines while delivering against business objectives. Develop and maintain partnerships with internal/external business interests to identify key risk areas, mitigate resistance to change, and drive operational excellence. Trusted advisor to identify and resolve regulatory and business operational issues to deliver end-to-end solutions that drive business excellence while minimizing risk exposure.
      View full bio
    • Gary Roboff
      Senior Advisor , Shared Assessments
      Gary has nearly four decades of experience in financial services planning and management, working extensively on electronic payments, payments fraud, third-party risk management, privacy and information utilization, and business frameworks and standards for electronic commerce applications. His experience includes 25 years at JP Morgan Chase, where he retired as Senior Vice President of Electronic Commerce. At Shared Assessments, he lends this thought leadership to committees, research projects, and developing the Shared Assessments Framework.
      View full bio
    Become a Member to Download
    Become a Member to Watch

    Elevating Risk Management: Mirato and Shared Assessments

    Mirato, an Artificial Intelligence (AI) and Natural Language Processing (NLP) powered software platform for risk management, recently joined the Shared Assessments Marketplace. Join Mirato's CEO Aki Eldar and Shared Assessments' CEO Andrew Moyad as they discuss AI's role in risk management. Together, they will examine AI's potential to elevate risk management practices and help you determine your program's approach to AI. Learn how you can use machine insights to enable smarter human decisions in risk management!
    Speakers:
    • Aki Eldar
      CEO & Co-Founder, Mirato
      Aki Eldar is the co-founder & CEO of Mirato, provider of a third-party risk management (TPRM) platform that orchestrates and automates the entire TPRM lifecycle for banks and other financial institutions. Entrepreneur, mentor and high-tech executive, Aki Eldar brings to Mirato more than two decades of senior-level management experience as CxO and CEO of Variance Technologies. Aki worked for the Israeli government and was the founder and CEO of Secure Islands Technologies, which was acquired by Microsoft. Aki’s professional expertise and proven track record have led to cumulative sales in the hundreds of millions of dollars spanning multiple global industries, ranging from cybersecurity to enterprise software, telecommunication, networking and defense.
      View full bio
    • Andrew Moyad
      CEO, Shared Assessments
      Andrew Moyad is the Chief Executive Officer of Shared Assessments. Andrew is an accomplished leader and trailblazer in third party risk management. As a practitioner and a senior risk management executive, he has driven a culture of accountability and diligence in safeguarding information. Andrew has more than 25 years in risk management and information security. He has contributed greatly to the transformation and advancement of risk management as a strategic function that intersects with and helps guide all aspects of organizations. Most recently, Andrew served as Senior Vice President, Vendor Risk Management at Blackstone, where he led a team of risk professionals responsible for overseeing all phases of the vendor lifecycle at the firm, including risk assessments, control diligence, contract reviews, financial checks, performance monitoring, issue tracking, and management reporting. Prior to Blackstone, he served as a director and global head of vendor risk management and BlackRock and Senior Vice President for Citigroup, where he was a Business Information Security Officer in Global Fixed Income and led third party risk assessments for several years. Andrew holds a Bachelor of Arts Degree in Natural Sciences from Harvard University and a Master of Science Degree in Information Systems from the Stevens Institute of Technology.
      View full bio
    Register to Download
    Register to Watch

    Unveiling the Hidden Risks in Third-Party Risk Management

    This webinar aims to illuminate the often-overlooked risks in third-party risk management (TPRM), highlighted by high-profile incidents like Log4j, SolarWinds, and the more recent XZ-Utils Backdoor.
    Speakers:
    • Bob Maley
      Chief Security Officer, Black Kite
      Bob Maley, Inventor, CISO, Author, Futurist, and OODA Loop fanatic, is currently the Chief Security Officer at Black Kite, a technology company that specializes in cybersecurity intelligence gathering and analysis. Before, he was the Global Head of Third Party Security at Paypal and the first Chief Information Security Officer for the Commonwealth of Pennsylvania.
      View full bio
    • Chris Johnson
      Senior Advisor, Shared Assessments
      Chris is a Senior Advisor to Shared Assessments where he focuses on healthcare, financial services, and emerging technologies. He has more than 25 years of experience helping clients effectively manage risk while exhibiting a passionate and dynamic leadership style. Prior to joining Shared Assessments, Chris led third party risk management and information technology initiatives at Bristol Myers Squibb, Bank of America, Merrill Lynch, KPMG, and Marriott International.
      View full bio
    Register to Download
    Register to Watch
    1 2 3 13