top of page

Search Results

Search this site

384 results found with an empty search

  • Roundtable: Nth Parties

    Eric Rosendaul Manager, Third Party Risk, VP Citizens Roundtable: Nth Parties Track 1: Anchoring TPRM Essentials & Best Practices Wednesday, April 9, 2025 1:00 PM - 1:50 PM Atlantic Ballroom 1 SESSION DESCRIPTION The Endless Depths of Nth Parties: A Risky Voyage Beyond the Horizon Avast, brave souls ready to explore the uncharted depths of Nth-party risk ! In this interactive roundtable, we’ll navigate the murky waters of managing risk beyond immediate vendors, diving deep into the complexities of sub-tier relationships and hidden dependencies.… Show More SPEAKERS Eric Rosendaul Manager, Third Party Risk, VP Citizens Eric Rosendaul has spent the last nine years of his career in various capacities within third-party risk. Currently, he’s a manager at Citizens leading a highly skilled team of senior analysts. Prior to that, he was a senior analyst on the team, conducting onsite and virtual assessments on critical and high-risk third parties. Before joining Citizens, Eric spent 5 years at Alliance Data Systems (now Bread Financial). While there, he… Show More Previous Next

  • Resilience and Upskilling in AI-Infested Waters: You’re Gonna Need a Bigger Boat

    Donna Speckhard, Senior Risk Advisor, Fannie Mae & Vernon Williams, Founding Partner, Rational Risk Resilience and Upskilling in AI-Infested Waters: You’re Gonna Need a Bigger Boat Track 2: Fortifying the Shoreline (Operational Risk & Resilience) Wednesday, April 9, 2025 3:10 PM - 4:00 PM Atlantic Ballroom 2 SESSION DESCRIPTION In an era where artificial intelligence (AI) is rapidly transforming industries and redefining job roles, the need for resilience and continuous upskilling has never been more crucial. This 60-minute session will explore how professionals can not only survive but thrive amidst the technological upheaval brought on by AI. Participants will… Show More SPEAKERS Previous Next

  • Early Check-In

    Drop anchor early and get a head start on your TPRM voyage with early check-in for "Navigating Risky TPRM Waters." Early Check-In Check-In Monday, April 7, 2025 3:00 PM - 5:00 PM Group Registration Alcove, Main Level SESSION DESCRIPTION Arr, mateys! Drop anchor early and get a head start on your TPRM voyage with early check-in for "Navigating Risky TPRM Waters." Swing by between 3:00 and 5:00 PM to pick up your conference essentials, grab some pirate swag, and get a sneak peek at the high seas agenda. Don… Show More SPEAKERS Previous Next

  • Breakfast & Check-In

    Fuel Up for the TPRM Voyage! Breakfast & Check-In Meal Tuesday, April 8, 2025 7:30 AM - 8:45 AM Atlantic Ballroom 4-8, Main Level SESSION DESCRIPTION Ahoy, early risers! Before we set sail on a full day of TPRM adventures, join us for a hearty breakfast and final check-in. From 7:30 to 8:45 AM , fuel up on a spread fit for a pirate crew while connecting with fellow shipmates and gathering your conference materials. This is… Show More SPEAKERS Previous Next

  • Setting Sail with Confidence: Establishing Strong TPRM Foundations for Smooth Sailing

    Morgan Binder, Head of Third Party Risk, Jake Mitchell, Program Manager, Third Part Risk, & Brian Howell, Program Manager, Third Party Risk from Stripe Setting Sail with Confidence: Establishing Strong TPRM Foundations for Smooth Sailing Track 1: Anchoring TPRM Essentials & Best Practices Wednesday, April 9, 2025 10:00 AM - 10:50 AM Atlantic Ballroom 1 SESSION DESCRIPTION Join us as we explore the essential foundations of an effective Third-Party Risk Management (TPRM) program. Discover key anchors of third party lifecycle management, while learning best practices to build steadfast relationships with stakeholders and ensure clear communication to keep your TPRM initiatives steady in turbulent waters. Engage in an… Show More SPEAKERS Jake Mitchell Program Manager, Third Part Risk Stripe, Inc. Jake is a Third Party Risk Program Manager at Stripe, based out of Washington, D.C. As a Program Manager, Jake executes daily Third Party Risk Operations and oversees program metrics and reporting. Jake has experience designing and building effective third party risk programs for organizations across various industries such as banking/financial services, pharmaceuticals, and consumer products. Additionally, Jake specializes in GRC/TPRM technology implementations for organizations looking to automate and drive… Show More Morgan Binder Head of Third Party Risk Stripe Morgan is the Head of Third Party Risk for Stripe, Inc. She has spent the duration of her career in the risk and compliance space. Her belief in right-sized foundational governance based on benchmarks and best practices has enabled her to develop nimble enterprise, operational, and third party risk programs. Morgan is proud to serve as a Board Member for the Third Party Risk Association. She has a M.S. of… Show More Brian Howell Program Manager, Third Party Risk Stripe Brian has over a decade of experience in developing and scaling Third Party Risk and Procurement programs for financial institutions and fintech companies. Prior to his current role at Stripe, Brian led Third Party Management at Blend Labs, and also served as a Manager in Deloitte's Extended Enterprise Risk Management practice. Previous Next

  • PANEL: Relationship Management & Collaboration

    Stacey Custeau, Unum; Elizabeth Blosh-Myers, First Internet Bank; Keith Frantz, Prosper Marketplace & Angela Appleby, Plante Moran PANEL: Relationship Management & Collaboration Track 4: Charting the Course (Regulation & Compliance) Wednesday, April 9, 2025 3:10 PM - 4:00 PM Tides 1 & 2 SESSION DESCRIPTION Session description coming soon! SPEAKERS Angela Appleby Partner Plante Moran Angela has over 22 years of information security, control, and IT audit experience in several industries, including technology, service, insurance, financial institutions, and healthcare. Angela has extensive experience in SOC reporting and built the Colorado SOC practice after time spent in the Big Four. Angela is also a member of the AICPA’s SOC Reporting Task Force. Most recently, Angela has been appointed to the AICPA’s Assurance Services Executive Committee (ASEC),… Show More Keith Frantz Director, Enterprise Risk Management Prosper Marketplace Graduate of Baylor University, worked in Financial Industry for over 20 years under numerous umbrellas. While in the mortgage industry, I worked primarily in default and risk management providing oversight for mortgage servicers. After moving to risk and vendor management, I have built and matured several programs at different companies and now oversee Procurement, Third Party Risk, and Internal Controls for Prosper Marketplace. Elizabeth Blosh-Myers Third Party Risk Manager First Internet Bank Meet Elizabeth Blosh-Myers, a Certified Third Party Professional (CTPRP) and dynamic Third Party Risk Manager at First Internet Bank. Elizabeth is not just a risk management expert; she's a passionate educator who loved demystifying the world of third party risk for everyone she meets. Elizabeth's career is a testament to her dedication to safeguarding organizations and their customers. When she's not managing risks, Elizabeth is a supermom and a spirited… Show More Stacey Custeau AVP, Third Party Risk Management Unum Stacey Custeau, AVP, Third Party Risk at Unum Corporation, a fortune 500 company providing income protection to millions of employees worldwide. Stacey has 37 years of experience in the Sourcing and TPRM space, focusing much of that time on data analytics and system implementations. Stacey has held various leadership roles in large scale change including leading the selection and implementation of Unums first comprehensive payables and procurement system, first Contra… Show More Previous Next

  • Weaponized Convenience: Inside the Rise of Remote Tool Abuse

    Nader Zaveri, Senior Manager - Incident Response & Remediation, Mandiant/Google Weaponized Convenience: Inside the Rise of Remote Tool Abuse Track 2: Fortifying the Shoreline (Operational Risk & Resilience) Wednesday, April 9, 2025 2:10 PM - 3:00 PM Atlantic Ballroom 2 SESSION DESCRIPTION Remote administration tools (RATs) and remote monitoring and management (RMM) tools have become indispensable for efficient IT operations, yet their widespread use has inadvertently opened doors for malicious exploitation. This presentation will dissect real-world incidents where RATs and RMMs have been abused to infiltrate organizations, exfiltrate sensitive data, deploy ransomware,… Show More SPEAKERS Nader Zaveri Senior Manager - Incident Response & Remediation Mandiant/Google Nader Zaveri has over 15 years in the cybersecurity industry, and holds over a dozen industry-related certifications as well as an author and a regular speaker at industry events. Specializing in incident response and remediation, particularly against complex threats like nation-states and ransomware, he has also led post-incident transformational projects in security and infrastructure. Nader's experience spans leadership roles in top cybersecurity firms and multinational organizations. Apart from his professional… Show More Previous Next

  • How to Mature Your TPRM Program

    Kaih Taylor, Manager, Third Party Risk Management, AgFirst Farm Credit Bank How to Mature Your TPRM Program Track 1: Anchoring TPRM Essentials & Best Practices Tuesday, April 8, 2025 3:10 PM - 4:00 PM Atlantic Ballroom 1 SESSION DESCRIPTION TPRM Maturity is critical to all organizations to stay ahead of the increasingly growing risk we are seeing in the TPRM Industry. This session aims to explore the maturity model, the requirements to mature your program and provide guidance on how to start your maturity journey. SPEAKERS Previous Next

  • Roundtable: AI/ML, including Mapping Strategies

    Vincent Scales Sr. Director, Third Party Risk Management Verizon Roundtable: AI/ML, including Mapping Strategies Track 4: Charting the Course (Regulation & Compliance) Wednesday, April 9, 2025 1:00 PM - 1:50 PM Tides 1 & 2 SESSION DESCRIPTION AI & Machine Learning: Mapping New Waters in TPRM Set sail into the world of AI and machine learning in third-party risk management! This roundtable invites TPRM professionals to explore how AI/ML technologies are transforming risk detection, data analysis, and decision-making. Together, we’ll chart strategies for effectively mapping and leveraging… Show More SPEAKERS Previous Next

  • Industry Roundtable: Retail & Manufacturing

    Industry Roundtable: Retail & Manufacturing Track 2: Fortifying the Shoreline (Operational Risk & Resilience) Tuesday, April 8, 2025 1:00 PM - 1:50 PM Atlantic Ballroom 2 SESSION DESCRIPTION Plundering for Profit: A Retail & Manufacturing Roundtable on TPRM Ahoy, Retail and Manufacturing captains! Hoist the anchor and join us for a dynamic roundtable where we’ll delve into the swashbuckling world of third-party risk management in your industries. Together, we’ll explore strategies for tackling supply chain vulnerabilities, navigating regulatory… Show More SPEAKERS Previous Next

  • Guiding GenAI Technology Providers Using CSA AI Controls Framework

    Troy Leach, Chief Strategy Officer & John Yeoh, CSO, EVP, Cloud Security Alliance (CSA) Guiding GenAI Technology Providers Using CSA AI Controls Framework Track 3: Surfing the Waves of Innovation & Automation Tuesday, April 8, 2025 2:10 PM - 3:00 PM Atlantic Ballroom 3 SESSION DESCRIPTION GenAI applications, agents, orchestration tools and LLMs are expected to be used in many facets of an organization going forward. But how do you work with technology providers to create guardrails that will protect the company and the privacy of customer information? This talk will highlight best practices derived from… Show More SPEAKERS John Yeoh CSO, EVP CSA With over 20 years of experience in research and technology, John drives executive leadership and fosters key partnerships for board strategy advancement. His influential work as a technologist, researcher, and published author spans critical domains in cybersecurity, cloud computing, and next-generation technologies (Generative AI, Quantum, IoT, and Blockchain). John's expertise encompasses comprehensive risk management, third-party assessment, threat intelligence, identity and access management, data protection, and incident response for complex modernized… Show More Troy Leach Chief Strategy Officer Cloud Security Alliance Troy Leach advocates for the advancement of responsible technology to improve protection of data as well as the quality of living and parity for all to safely conduct commerce. At CSA, he is responsible for the non-profit’s corporate strategy to provide relevant cloud security education, research and awareness of cloud validation frameworks to industry-specific sectors such as financial services and public sector. Previously, he helped to establish and lead the… Show More Previous Next

  • Collective Resilience: Elevating Third-Party Risk Management

    Mark Orsi, CEO & Charlie Tupitza, Director of Community Development, Global Resilience Federation (GRF) | Business Resilience Council (BRC) Collective Resilience: Elevating Third-Party Risk Management Track 2: Fortifying the Shoreline (Operational Risk & Resilience) Tuesday, April 8, 2025 11:00 AM - 11:50 AM Atlantic Ballroom 2 SESSION DESCRIPTION As the threat landscape rapidly evolves, traditional security controls are no longer sufficient to safeguard the complex ecosystems in which we operate. This session explores the shift from focusing solely on defensive measures to embracing a broader framework of operational resilience. By extending resilience initiatives to include vendors and suppliers,… Show More SPEAKERS Mark Orsi CEO Global Resilience Federation | Business Resilience Council Mark Orsi is the CEO of GRF and President of the Business Resilience Council (https://www.grfbrc.org/), a non-profit, collective defense community where companies from all sectors work together to face emerging threats and become more resilient. Mr. Orsi led strategic efforts for several prominent Fortune 100 companies, working directly with CIOs and CISOs to develop, deploy, and improve security controls protecting the confidentiality, integrity, and availability of sensitive information. Mark joine… Show More Previous Next

bottom of page