top of page

Search Results

391 results found with an empty search

  • Portend AI | TPRM Tool Virtual Demo

    Portend AI is a continuous Third-Party Risk Intelligence platform that replaces static vendor assessments with real-time, independent risk monitoring. < Back Portend AI Wednesday, August 19, 2026 3:30 – 3:55 PM CT TPRM Platform Globe Mail Search Search Search Portend AI is a continuous Third-Party Risk Intelligence platform that replaces static vendor assessments with real-time, independent risk monitoring. Built for TPRM, procurement, compliance, and audit teams, Portend AI delivers ongoing visibility into vendor cybersecurity posture, compliance exposure, financial and operational risk, reputational signals, sanctions status, and emerging external threats. By aggregating and scoring intelligence from thousands of public, regulatory, commercial, and proprietary data sources, Portend AI helps organizations detect vendor risk between review cycles, reduce reliance on self-reported questionnaires, and focus resources on the vendors that present the greatest exposure. The result: stronger third-party oversight, earlier risk detection, and materially reduced operational surprises. Presenter(s) Shabd Vaid CEO Shabd Vaid is a technologist, entrepreneur and an angel investor. He is the Founder and CEO of Portend AI, a Business Risk Intelligence startup. Shabd is also the Managing Partner of Crucial VC and invests in early stage startups. Previous Next

  • Demo Days | TPRA

    Join us for "Demo Days," where leading TPRM Service Providers showcase their solutions through 25-minute product demos tailored for TPRM practitioners. TPRM Tool Demo Days The Third Party Risk Association (TPRA) invites you to attend our quarterly "Demo Days, " an exclusive opportunity for TPRM practitioners to explore innovative solutions from leading TPRM Service Providers. During these interactive sessions, vendors will deliver 25-minute product demos , showcasing their tools, technologies, and services designed to address the complex challenges of third party risk management programs. These virtual events allow practitioners to: Gain insights into the latest TPRM innovations. Connect directly with service providers to ask questions. Compare tools and platforms to determine the best fit for their organization. Don't miss this opportunity to stay ahead in the evolving landscape of third party risk management. New service providers demo each quarter, so we encourage you to register for as many Demo Days as you're able! Tool Types Below you can find brief descriptions of the TPRM tools that will be showcased during these events. TPRM Platform A software system designed to manage Third-Party Risk Management (TPRM) programs, which involves identifying, assessing, mitigating, and monitoring risks associated with external companies that an organization works with. Risk Ratings/Intelligence Tool A system or software application used to evaluate and quantify the potential likelihood and severity of risks associated with a particular incident or investment, typically assigning a numerical rating to each risk to facilitate prioritization and decision-making within risk management processes. GRC Platform A software tool that tracks, monitors, and manages governance, risk, and compliance activities at the enterprise level. This tool usually encompasses more than one risk-related department and encourages risk management at the highest level for an organization. TPRM Services An organization that assists with the implementation of TPRM programs and/or the completion of due diligence activities. TPRM Service providers can determine the maturity of your program and enhance operational capabilities. Register for Upcoming Demo Days New service providers demo each quarter, so we encourage you to register for as many Demo Days as you're able! Wednesday, August 19, 2026 at 2:00:00 PM UTC 6 hours Q3 Demo Day Read All Wednesday, October 21, 2026 at 2:00:00 PM UTC 6 hours Q4 Demo Day Read All NOTE: TPRM Service Providers and their employees, affiliates, parent companies, etc. NOT participating in a demo are not allowed to register based on conflict of interest. Q2 2026 Lookbook Q1 2026 Lookbook Demo Day Agenda Please note that the below may feature presenters for multiple Demo Days. Demo Day times are subject to change depending on the number of demos per day. All scheduled times are in Central Time. Filter by Quarter Select Quarter Filter by Tool Type Select Tool Type Date: Wednesday, August 19, 2026 Time: 9:00 – 9:25 AM CT TPRM Platform Certa’s Third Party OS is the digital backbone for managing your third party relationships across all risk domains and lifecycle stages. Read More Date: Wednesday, August 19, 2026 Time: 9:30 – 9:55 AM CT TPRM Platform Safe Security has redefined cyber risk measurement and management with its real-time, data-driven approach that empowers enterprise leaders, regulators, and cyber insurance carriers to understand cyber risk in an aggregated yet granular manner. Read More Date: Wednesday, August 19, 2026 Time: 10:30 – 10:55 AM CT TPRM Platform ProcessUnity Third-Party Risk Management protects companies and their brands by reducing risk from third parties, vendors and suppliers. Read More Date: Wednesday, August 19, 2026 Time: 11:00 – 11:25 AM CT Risk Ratings/Intelligence Supply Wisdom provides real-time, continuous risk intelligence across third parties and locations to help enterprises proactively manage operational, compliance, financial, cyber, location, ESG and Nth party risks. Read More Date: Wednesday, August 19, 2026 Time: 11:30 – 11:55 AM CT TPRM Platform Bitsight Third Party Risk Management is an end-to-end solution that includes continuous, data-driven, validated cyber risk insights and automated vendor assessment capabilities. Read More Date: Wednesday, August 19, 2026 Time: 12:00 – 12:55 PM CT Lunch Read More Date: Wednesday, August 19, 2026 Time: 1:00 – 1:25 PM CT GRC Platform Drata is an AI-native Trust Management platform that unifies governance, risk, compliance, and assurance into one continuous system of record. Read More Date: Wednesday, August 19, 2026 Time: 2:00 – 2:25 PM CT TPRM Platform The Agentic Risk Operations Platform. Built for the teams making the calls. Read More Date: Wednesday, August 19, 2026 Time: 2:30 – 2:55 PM CT TPRM Platform Read More Date: Wednesday, August 19, 2026 Time: 3:00 – 3:25 PM CT TPRM Platform Save time, reduce risk, and scale to nth parties without overwhelming SMBs with questionnaires. Read More Date: Wednesday, August 19, 2026 Time: 3:30 – 3:55 PM CT TPRM Platform Portend AI is a continuous Third-Party Risk Intelligence platform that replaces static vendor assessments with real-time, independent risk monitoring. Read More LOAD MORE Lookbooks Interested in presenting a product demo? Please complete our Sponsor Information Form to start the process or contact Heather Kadavy, TPRA's Senior Membership Success Coordinator, at heather.kadavy@tprassociation.org to learn how to get involved!

  • VENDOR-HOSTED EVENTS | TPRA

    Learn about and register for events outside of the TPRA that are applicable to TPRM. Vendor-Hosted Events The TPRA promotes the industry of third party risk, which includes events conducted by other third party risk-related groups and organizations. Check back here regularly to see our list of vendor-hosted events. If you would like to promote your next third party risk-specific event, please complete the form below . Disclaimer: TPRA does not endorse or sponsor the products/services of one particular organization; however, we do communicate training opportunities for the benefit of the community. Filter by Organization Select Organization Filter by Event Type Select Event Type Filter Download Global Resilience Federation (GRF) Live Webinar AI Interrupted: A Multi-Sector Tabletop Exercise Wednesday, June 24, 2026 8:00 AM ET AI is quickly becoming a critical dependency for customer support, software delivery and core business workflows. What happens when AI is impaired? GRF’s Business Resilience Council is hosting a complimentary, cross-sector, virtual tabletop exercise offered on June 24 at 8am ET Bring your security, risk, and resilience teams – and invite your peers, colleagues, partners, vendors and suppliers. Together, we need to navigate the new risks introduced by these rapid advancements. Register Bitsight Webinar Doomed or Prepared? How Frontier AI Models Reshape TPRM Programs Thursday, July 23, 2026 11:00 AM ET Vulnerability disclosure to weaponized exploit: once measured in weeks, now in minutes. How does that impact you? When your vendors' vendors are compromised, your breach happens in 90 seconds. CISOs and GRC leaders are caught between exploding third-party risk and outdated vendor management playbooks designed for a slower threat landscape. How do you shift from annual assessments to continuous intelligence? How do you prioritize when threat actors use AI to find your crown jewels faster than your teams can? And how do you finally speak the same language across SecOps, GRC, and Procurement? Join Emma Stevens (Threat Researcher, Bitsight) and Amanda Ravanesi [Director Product Management, Bitsight] as they map the post-Mythos TPRM landscape and arm you with a practical framework to build resilience at the speed of threat. What You Will Learn: How threat actors actually use AI in supply chain attacks—and why data triage, not initial access, is the new attack vector The shift from compliance-driven vendor management to threat-informed prioritization: the Before/After playbook A practical intelligence stack that turns thousands of vendors into a focused action list of critical risks Register Global Resilience Federation (GRF) In-Person Conference 9th Annual Summit on Security & Third-Party Risk Wednesday, October 21, 2026 Orlando, FL Networking and Education on Critical Third-Party and Cybersecurity Issues, for Mutual Resilience The conference features dozens of speakers on third-party risk management, cloud security, emerging cybersecurity threats, and AI/machine learning threat mitigation and management. Attendees will gain an understanding of how some of the largest and most sophisticated organizations in the world are managing risk, and leave the conference better armed to defend their company, regardless of its size or the status of its risk mitigation program. Register Tenchi Security In-Person Conference Tenchi Conference 2026 Wednesday, November 4, 2026 Tangara Palace Hotel, São Paulo, Brazil The fourth edition of the Tenchi Conference is set to be even bigger and more impactful, featuring renowned speakers and new panels led by seasoned executives in Third-Party Cyber Risk Management (TPCRM). Under the theme “TPCRM: The New Era of Inside-Out,” this year’s edition will explore a new perspective on third-party risk - shifting from reactive approaches to a more integrated, continuous, and inside-out strategy. Building on last year’s success, this global leading event dedicated to Third-Party Cyber Risk will once again bring together CISOs, Board Members, Cybersecurity Professionals, GRC Experts, and DPOs from leading organizations across global industries. Expect a full day of in-depth discussions and a dynamic agenda exploring TPCRM best practices, risk mitigation strategies, and enhanced security across multiple industries. The agenda is currently being carefully curated and will be revealed soon. Watch the highlights from last year’s edition: https://www.tenchisecurity.com/en/company/events Invitation is personal and non-transferable – subject to confirmation. And to end the day on a high note, you’re invited to a special Happy Hour featuring a surprise performance - the perfect opportunity to expand your network and connect with industry leaders. Have insights or real-world experience in TPCRM? Apply to speak at the Tenchi Conference 2026 and share your perspective with a highly qualified audience – plus the opportunity to win a trip to RSA Conference 2027*. We are looking for 30-minute sessions featuring relevant cases or innovative approaches. *See more information and submit your proposal here: https://forms.gle/nen5uQpb1ZQpMMbR6 . Register Submit an External Event TPRA Practitioner Members can submit upcoming events they'd like displayed on this page using the form below. Some events may also be shared via our monthly events emails and/or quarterly newsletter. TPRA does not post on-demand/recorded events to this page. TPRA Vendor Members can submit their upcoming events through the Vendor Member Submissions form . Submitter Information First name* Last name* Email* Event Information Event Title* Event Host* Event Type* Event Description* Event Date* Event Time (please include time zone)* Link to learn more and/or register for the event* Anything else we should know? Submit

  • TPRA – Third Party Risk Management Resources, Certification & Networking

    Join the TPRM community at TPRA for expert resources, training, templates, and tools to strengthen your third party risk program and grow your network. Join the only not-for-profit, vendor-agnostic professional association uniting thousands of TPRM professionals worldwide. Furthering the profession of third party risk management through knowledge-sharing & networking. Learn More Join Now The all-in-one source for Third Party Risk Management (TPRM) tools, templates, training, networking, certifications & industry best practices. MEMBERSHIP CONNECT & DISCOVER Individuals & organizations working together to advance the industry. More > EDUCATION MEETINGS & TRAINING Certifications & training for risk professionals to advance their careers & enhance their programs. More > RESOURCES INFORMATION SHARING SITE White papers, templates, guidance & more to enhance your program. More > TOOLS & AUTOMATION EXPLORE & CONTACT Detailed profiles of trusted TPRM service provider organizations & their offerings. More > Advance Your Career in Risk Management: Learn About the Benefits of TPRA Membership > Practitioner Plans Standard: FREE Premium: $199/yr BENEFITS Member Meetings Interactive monthly calls to discuss a variety of third party risk topics decided upon by members. Conferences In-person and virtual conferences dedicated solely to third party risk topics. Networking Online interaction with your peers through membership forums and document databases. Industry-Specific Meetings Quarterly special interest calls based on your industry. Demos, Surveys, Webinars Access to third party risk management service provider demos, surveys, & webinars. Certifications TPRM professional certifications that establish credibility and demonstrate your commitment to mastering your skills and knowledge within the industry. Join Now Vendor Plans 4 available plans starting at $8,000/yr BENEFITS Priority & Discount Sponsorship Opportunities Be the first to sponsor conferences and receive discounted member rates, as well as priority positioning. Networking & Collaboration Attend monthly and quarterly meetings with TPRM practitioners and other service providers to network, collaborate, create resources, share insights, and more! Promotional Opportunities Work with the TPRA staff to communicate to Practitioner Members the your organization's webinars, surveys, demos, blog posts, and white papers. Advisory Councils Join our TPRM Service Provider Advisory Council, as well as other groups, dedicated to collaborating, sharing insights, and providing strategic guidance. Quarterly Updates Receive quarterly updates with industry innovators to collaborate on practitioner needs. Join Now Meetings Open to All Meetings Open to All Member Meetings & Events On-Demand Meetings Tuesday, July 21, 2026 1:00 – 2:00 PM CT Women In TPRM Meeting Register > Thursday, August 13, 2026 10:00 – 11:00 AM CT Roundtable: Budgeting for TPRM Success Register > Tuesday, August 18, 2026 1:00 – 2:00 PM CT Women In TPRM Meeting Register > Wednesday, August 19, 2026 9:00 AM to 4:00 PM CT Q3 Demo Day Register > CONTACT US OUR INFORMATION Address: P.O. Box 824 Ankeny, Iowa 50021 USA Email: info@tprassociation.org For any general inquiries, please fill out the contact form. First name* Last name* Email* Subject Message* Yes, subscribe me to TPRA communications. Submit

  • WNTPRM Recorded Meetings | TPRA

    Watch Women in TPRM recordings of past monthly meetings. Hear insights from women leaders and practitioners driving change in third party risk management. Meetings WNTPRM On-Demand Meetings Tuesday, June 16, 2026 1:00 – 2:00 PM CT Women In TPRM Meeting PowerPoint Watch Video Tuesday, May 19, 2026 1:00 – 2:00 PM CT Women In TPRM Meeting PowerPoint Watch Video Tuesday, April 28, 2026 1:00 – 2:00 PM CT Women In TPRM Meeting PowerPoint Watch Video Tuesday, March 17, 2026 1:00 – 2:00 PM CT Women In TPRM Meeting PowerPoint Watch Video Tuesday, February 17, 2026 1:00 – 2:00 PM CT Women In TPRM Meeting PowerPoint Watch Video Tuesday, January 20, 2026 1:00 – 2:00 PM CT Women In TPRM Meeting PowerPoint Watch Video LOAD MORE

  • WOMEN IN TPRM PROGRAM | TPRA

    Join TPRA’s Women in TPRM program to uplift and support women in the industry through mentorship, leadership development, and recognition. Empowering the next generation of women leaders in TPRM. Our Goals Our Goals The Women in TPRM (WNTPRM) Program is dedicated to empowering women in the Third Party Risk Management (TPRM) industry. This program is open to all , regardless of TPRA membership status or gender identity. Through collaborative efforts, we aim to: Uplift Women in TPRM : Advocate for professional growth and recognition. Provide Access to Higher-Paying Roles: Break barriers to equitable opportunities in TPRM careers. Celebrate & Support Women: Establish a platform to spotlight achievements and nurture community. Cultivate Future Leaders: Develop the next generation of trailblazers in TPRM. What We Do What We Do We meet monthly to strategize on achieving these goals and to address challenges within the field. You do not need to be a TPRA member to participate in this program, but some facets of this program are member-specific, such as our 'Women in TPRM' Slack Channel, where TPRA Practitioner Members can continue meaningful conversations, share resources, and collaborate. Standard Practitioner Membership is free , and all TPRA Practitioner Members are invited to join our Slack Forum here . Members and non-members can join our LinkedIn group to stay connected. Our Initiatives Include: Advocating for the importance of women in TPRM through educational resources and outreach. Providing access to tools, techniques, and insights that uplift and empower women in the field. Showcasing and celebrating women leaders who inspire and shape the TPRM landscape. Sharing job opportunities from organizations committed to supporting women in TPRM. Join us as we drive change, foster leadership, and build a brighter future for women in TPRM! Meetings Upcoming Meetings Watch On-Demand Meetings July 21, 2026 1:00 – 2:00 PM CT Women In TPRM Meeting Read All August 18, 2026 1:00 – 2:00 PM CT Women In TPRM Meeting Read All September 15, 2026 1:00 – 2:00 PM CT Women In TPRM Meeting Read All Programs & Resources Women Lead Spotlights Our Women Lead Program is dedicated to showcasing inspiring leaders by highlighting their stories. Our goal for this program is to learn from and be inspired by women leaders in the field of Third Party Risk Management (TPRM) throughout various industries. View our Leaders and learn how to nominate and/or apply to become a spotlight. View Spotlights Resource Sharing Library Our Women in TPRM Resource Sharing Library contains a variety of women in business-related materials. Included are reports on the latest women in business trends and statistics, blogs and articles on relevant and current happenings, and TED Talks featuring inspiring women in business educating others on how to navigate the business world and find success in their careers. View Library Leadership Ladders Originally developed by TPRA's Women in TPRM "Lead" work group, this training activity is designed for all current & aspiring leaders within the Third Party Risk Management (TPRM) industry. Inspired by the classic "Shoots and Ladders" game, it is an all-in-one roadmap to leadership in the form of a nostalgic, virtual board game! E ach box on the board is linked to a valuable resource–including customized guides, blogs, videos, quizzes, and more–with the goal of enhancing your leadership potential through buildable skills and expert insights. Any professional, regardless of what stage they're at in their career, can find value in this activity. Check It Out Recorded Meetings View meeting recordings and PowerPoints from our monthly Women In TPRM Meetings. Recorded Meetings Resources Statistics Women only represent 15-20% of the Governance, Risk and Compliance profession (GRC World Forums, 2021). Read Full Article Only about 25% of every 100 security and risk management (SRM) executives are women (Gartner Inc., 2019). Read Full Article Gender-diverse and inclusive teams outperform gender-homogeneous, less-inclusive teams by an average of 50 % (Gartner Inc., 2019). Read Full Article According to one survey, 24% of global cybersecurity employees are women, and 18% of CIOs/CTOs are female (Deloitte, 2021 ). Read Full Article Quotes "Diversity matters not just because increasing representation of minorities and women in a fast growing and critical field is the right thing to do, but because a variety of viewpoints are key to solving hard problems." SVP, General Counsel - Legal, Bitsight Johanna Werbach “...change must come from within the industry and not be mandated from external parties.” Chief Data and Privacy Officer, MeritB2B Karie Burt "With different backgrounds and perspectives and voices at the table and in an environment where their contributions are really valued, you benefit from a much more expansive conversation and one that’s much more likely to uncover the full range of possibilities and solutions." VP & GM, TPRM, BitSight Vanessa Jankowski Read "Women in CyberSecurity"

  • TPCRA | TPRA

    The Third Party Cyber Risk Assessor (TPCRA) Certification validates your expertise in assessing third party cybersecurity controls, advancing your career in third party risk management. Third Party Risk Association's Third Party Cyber Risk Assessor (TPCRA) Certification The TPCRA Certification is a specialized qualification that validates expertise in assessing third-party cybersecurity controls, managing cyber risk assessments, and evidencing proficiency in cybersecurity assessment techniques, as well as establishing credibility for third-party risk management professionals. Register Now By clicking this button, you will be redirected to our Training & Certification Platform (Inspire360). Your TPRA website login credentials will not work on Inspire360, and a separate account is required to register for & access courses. What is the TPCRA? The TPCRA Certification is a specialized qualification designation which will: Confirm your understanding & skill in the assessment of third party cyber security controls and processes. Validate your competency in the creation, execution, & management of third party cyber risk assessments. Authenticate & add credibility to your expertise as a third party cyber risk assessor. Evidence your proficiency with various cyber security & information technology assessment terms & techniques. About TPCRA Register Domains Pricing Examination Overview Training Schedule FAQs Who is the TPCRA for? The TPCRA is the standard of achievement for those who assess, monitor, and review third party cyber security and information technology controls, as well as identify and mitigate risk related to said controls. Such roles may include, but not be limited to: Third Party Risk Management Practitioners Procurement Specialist Vendor Managers Auditors Information Security Professionals Privacy or Compliance Specialists Legal Professionals "The TPCRA Certification is foundational to achieving success as a third party risk management professional." Domains Building Core Competencies for Lasting Professional Excellence Cybersecurity & Third Party Risk Management Basics Pre-Contract Due Diligence Continuous Monitoring Physical Validation Disengagement Due Diligence Cloud Due Diligence Reporting & Analytics Practitioner Ethics Pricing Register Now Where will this button take me? Item TPRA Standard, Vendor, & Non-Members TPRA Premium Practitioner Members Examination $500 $425 Training $400 $340 Examination & Training Bundle $800 $700 Examination Retake Fee $200 $200 Certification Renewal $100 $85 Examination Overview Examination Outline The examination is a 150-question, multiple-choice assessment. Questions will include a variety of formats, such as scenario-based, true or false, and choose the best response. The time limit is 3 hours for the examination process, broken out into the following: 5 minutes to read and sign the NDA 10 minutes to complete the optional tutorial 160 minutes to complete the examination 5 minutes to complete the post-exam survey The examination is a closed-book assessment that will be monitored via an assigned proctor. Passing Score You must receive a score of 80% or higher to pass the TPCRA examination. Exam Scheduling The examination will be taken in person at a Pearson VUE testing facility. Examinations may be scheduled at a day/time that suits you via a Pearson VUE location. Pearson VUE offers over 5,000 test facilities worldwide and is ADA-compliant. Training Schedule SESSION DATE TIME LOCATION REGISTER TPCRA On-Demand Training Only REGISTER TPCRA On-Demand Training & Exam Bundle REGISTER TPCRA 2-Day September Training & Exam Bundle 09/02/2026 9 AM - 4 PM CT REGISTER TPCRA 2-Day September Training Only 09/02/2026 9 AM - 4 PM CT REGISTER TPCRA 4-Day November Training Only 11/16/2026 5 PM - 8 PM CT REGISTER TPCRA 4-Day November Training & Exam Bundle 11/16/2026 5 PM - 8 PM CT REGISTER PLEASE NOTE: When you click "Register" above, you will be redirected to our Training & Certification Platform ( Inspire360 ). Your TPRA website login credentials will not work on Inspire360, and a separate account is required to register for and access courses. Learn more on our FAQ page . " I thought the training was fantastic. I've been a TPRM practitioner for nearly 7 years now and still walked away with new knowledge and insight. I am so proud of the TPRA and honored to be a part of the board! " Nicole Makinney Product Owner, Third Party Risk | McKesson TPCRA Training Attendee TPCRA Frequently Asked Questions General TPCRA Information About TPCRA Certification TPCRA Requirements TPCRA Examination TPCRA Training Maintaining Your TPCRA Certification Examination Outline The examination is a 150-question, multiple-choice assessment. Questions will include a variety of formats, such as scenario-based, true or false, and choose the best response. The time limit is 3 hours for the examination process, broken out into the following: 5 minutes to read and sign the NDA 10 minutes to complete the optional tutorial 160 minutes to complete the examination 5 minutes to complete the post-exam survey The examination is a closed-book assessment that will be monitored via an assigned proctor. EXAM SCHEDULING The examination will be taken in person at a PearsonVue testing facility. Examinations may be scheduled at a day/time that suits you via a PearsonVue location. PearsonVue offers over 5,000 test facilities worldwide and is ADA-compliant. If you have a special request for accommodations, please contact Julie Gaiaschi at julie@tprassociation.org. DOMAINS The examination will cover the following domains: Cybersecurity and Third Party Risk Management Basics Pre-Contract Due Diligence Continuous Monitoring Physical Validation Disengagement Due Diligence Cloud Due Diligence Reporting and Analytics Practitioner Ethics PASSING SCORE You must receive an 80% or higher score to pass the TPCRA examination. NEXT STEPS Complete registration and payment through our Learning Management System (LMS): https://tpra.inspire360.com/ Once payment is completed and confirmed by TPRA, you will be enrolled in the course and later receive an email with a link to register for your exam via the PearsonVue system. Following purchase, you have one (1) year to take your examination. Certification Eligibility Criteria To be eligible for the TPCRA certification, you must: Have at least three years of experience in a full-time risk management/analyst and/or cybersecurity-related role. Submit evidence of work experience. Sign and adhere to the Code of Practitioner Conduct. Substitutions may be obtained for up to one year of work experience. Substitutions may include, but are not limited to: 60 to 120 completed university semester credit undergraduate hours in an information security and/or information technology-related major. A master’s degree in information security or information technology from an accredited university. An active information security-related certification from an accredited institution. Examples include, but are not limited to, the CISSP, Security+, CRISK, CISA, CISM. Additional substitutions for work experience will be taken into consideration during the application process and reviewed/approved by the TPRA. Certification Pricing TPCRA Training Instructor Greg Rasner, CISSP, CIPM, ITIL, CCNA Author of "Cybersecurity & Third-Party Risk", SVP of Cyber Third Party Risk at Truist, Educator, and Frequent Keynote Speaker Gregory C. Rasner has worked as a cybersecurity and IT leader in Finance, Biotech, Technology and Software fields. He holds a BA from Claremont McKenna College along with certifications: CISSP, CCNA, CIPM, ITIL. He is the author of the book “Cybersecurity and Third Party Risk: Third Party Threat Hunting” published by Wiley, written several online articles for major publications, and is a frequent speaker at forums and conferences on related topics. He has five kids and a wife who is also a cybersecurity professional. Rasner was in the USMC and was co-chair for the Truist Veterans and First-Responders Business Resources Group. Greg created the cybersecurity program at Johnston Community College, is a board member on the Technology Advisory Board, and teaches there part-time at JCC. Fun for him is camping and traveling with his family. Certification Renewal In order to maintain certification status, earners must participate in 20 hours of Continuing Professional Education (CPE). On an annual basis, certified individuals will be required to renew their certification and submit evidence of their CPE credits earned. A process is coming soon for submitting CPE evidence and renewing your Certification. Renewal Cost TPRA Standard, Vendor, & Non-Members: $100 TPRA Premium Practitioner Members: $85 Registration Register for all TPRA certifications here: https://tpra.inspire360.com/ Certification Process To apply for this certification, please follow these steps: Visit the Certification Platform: Navigate to the TPRA Certification Platform (hosted through Inspire360) and locate the training and/or examination option you'd like to purchase. Application & Payment: Complete and submit the application and payment on the platform. Please ensure you complete your application. Please note that the name you submit through your application must match that of your identification (driver's license, passport, etc.) in order to schedule and take your exam. You will have one (1) year after purchase to complete your examination and all required materials. Authorization: TPRA staff will authorize you through Pearson VUE within 2 weeks of your application and payment being received. If you are taking training, you will not be authorized until after the training date, to allow you a full year to schedule and take your exam. Schedule Exam: You will receive an email from Pearson VUE asking you to schedule your exam. Schedule and take your exam on the date and time of your choosing. Pass Exam: Pass your exam with an 80% or higher grade. Please be sure to obtain a copy of your exam results, as you'll need to upload these into the system. Upload Exam Results: Upload exam results into the TPRA system for review. Work Experience: Once exam results are approved, submit your work experience for review. Review & Approve: Your application and work experience will be reviewed. You will receive an email confirmation once your work experience is approved or if additional information is required. Note: You do not need to have an "Approved" application before you sit for your exam. You do need to have an "Approved" application and work experience, as well as a passing grade on the examination, to receive the TPCRA designation. Receive Your Designation: Once your application, work experience, and exam results are approved, you will be sent your Certificate of Achievement and designation. Training Training provides you with 12 hours of in-depth discussion on the examination domains, hands-on experience designing and performing cyber assessments, as well as opportunities to perform mock interviews and run through physical validation scenarios. Training includes access to study and practice materials such as: Student Training Manual Training PowerPoint Practice quizzes Select educational videos A variety of templates, including questionnaires, reports, and more Training is taught by a knowledgeable subject matter expert who has achieved the TPCRA Certification designation. Training is held live over Zoom during the designated days and times, or can be taken via our On-Demand option(s). Need Help? Visit our Support page for Frequently Asked Questions and, if that doesn't work, key contacts to reach out to for further assistance. Support & FAQs →

  • Drata | TPRM Tool Virtual Demo

    Drata is an AI-native Trust Management platform that unifies governance, risk, compliance, and assurance into one continuous system of record. < Back Drata Wednesday, August 19, 2026 1:00 – 1:25 PM CT GRC Platform Globe Mail Search Search Search Drata is an AI-native Trust Management platform that unifies governance, risk, compliance, and assurance into one continuous system of record. Our mission is to turn trust into a growth engine by helping organizations prove security and compliance with confidence and speed. As part of our Integrated Risk Management pillar, Drata’s Third-Party Risk Management (TPRM) solution enables organizations to identify, assess, and monitor third-party risk in a structured, scalable way. Presenter(s) Akanksha Nguyen Senior Director, Product Management Akanksha Nguyen is Senior Director of Product Management at Drata, where she leads TPRM product strategy. With more than three years at Drata, she works closely with customers, alongside product and engineering teams, to build scalable solutions that streamline third-party risk management and help modernize trust programs. Previous Next

  • CERTIFICATE PROGRAM | TPRA

    Enhance your Third Party Risk Management (TPRM) skills with TPRA’s flexible certificate program. Explore free and paid courses covering AI risk, cloud security, and more. Gain practical knowledge to support your organization. Certificate Program The Third Party Risk Management (TPRM) Certificate Program , offered by TPRA in collaboration with our trusted partners, provides comprehensive training designed to enhance knowledge and expertise in TPRM best practices. This program features a diverse selection of courses covering critical topics in third-party risk, cloud security, AI/LLM security and risk. Participants can choose from both free and paid courses, ranging in duration from one to four hours, allowing for flexible learning tailored to individual needs and schedules. Participants will receive a certificate upon completion of the training course. Please note that this is not a certification program, nor will participants receive any professional credentials. Whether professionals are new to TPRM or looking to deepen their expertise, the program provides valuable insights and practical knowledge to strengthen risk management strategies within their organizations. Available Courses AI/LLM Security & Risk Course for TPRM: Learn the risks that AI in vendors can carry, and how to assess them On-Demand, Self-Paced | 1 hour | $0 | 1 CPE hour The Third Party Risk Association (TPRA) has partnered with PromptArmor to bring you the " AI/LLM Security & Risk Course for TPRM ". This training course includes 12 modules to teach you… Read More Register Securing SaaS Applications: A Comprehensive Approach to Cloud Risk Management Live Virtual Training | 4 hours | $159 | 4 CPE hours As organizations increasingly rely on cloud-based Software-as-a-Service (SaaS) solutions, understanding and mitigating associated risks is critical. This virtual training provides an in-depth exploration of key security considerations when evaluating and… Read More Register

  • AI and the Future of Third-Party Risk | Training Course

    This course is the entry point for a four-part series, and the one module every TPRM practitioner should take regardless of seniority. By the end, participants will have a clear picture of what is changing, a calibrated view of what AI can and cannot do in their work, and five concrete actions to take this week and this quarter. AI and the Future of Third-Party Risk Price $119 Duration 2 hours Type Live Training Session Enroll By clicking this button, you will be redirected to our Training & Certification Platform (Inspire360) . Please note that the Inspire360 Training and Certification Platform is separate from the TPRA website. Your TPRA website login credentials will not work on Inspire360, and a separate account is required to register for and access courses. < Back About the Course What the field looks like now, how it got here, and what you need to do about it. This is the entry point for the "TPRM in the Age of AI" series and the one module every TPRM practitioner should take regardless of seniority. It does not assume any AI background. It starts from first principles: why the attestation model is breaking down, what four real incident case studies say about the gap between declared controls and observable evidence, and what the arrival of AI means for the profession — both the opportunity and the threat. The module is deliberately uncomfortable in places. It names which parts of the TPRM role are most at risk. It presents the AI-on-AI problem directly: when both the vendor completing the questionnaire and the program reviewing it are using AI, the result is a fast, confident, expensive process that generates zero new information about actual security posture. It also names the structural fact that assessment volume will increase while headcount stays flat — and frames this as something to prepare for, not fear. By the end, participants have a clear picture of what is changing, a calibrated view of what AI can and cannot do in their work, and five concrete actions to take this week and this quarter — none of which require budget approval. Audience: All practitioners Format: Live sessions over Zoom Length: 120 minutes CPE: 2 CPEs Prerequisites: Minimum one year of TPRM, GRC, vendor management, or related experience. No prior AI or technical background required. Providing Organization: Coverbase Instructor: Clarence Chio – Cofounder & CEO of Coverbase, Instructor at UC Berkley since 2019 Your Instructor Clarence Chio Cofounder & CEO of Coverbase UC Berkley Professor Clarence is the cofounder and CEO at Coverbase, a TPRM copilot that automates 90% of vendor management with AI. Prior to this, he cofounded Unit21, Google-backed company that raised $92m to help top financial institutions combat fraud and money laundering with AI. He has degrees in Computer Science and AI from Stanford, published the book "Machine Learning and Security" with O'Reilly Media, and has been teaching AI and security at UC Berkeley since 2019. He has shared his ideas on machine learning and security at DEFCON, BLACK HAT, and other conferences across more than 30 cities. Clarence Chio Clarence Chio 1/1 Previous Next

  • AI/LLM Security & Risk Course for TPRM: Learn the risks that AI in vendors can carry, and how to assess them | Training Course

    This training course is designed for Third-Party Risk Management teams looking to enhance their understanding of AI security and risk assessment. It consists of two specialized tracks.  AI/LLM Security & Risk Course for TPRM Learn the risks that AI in vendors can carry, and how to assess them Price $0 Duration 1 Hour Type On-Demand Enroll By clicking this button, you will be redirected to our Training & Certification Platform (Inspire360) . Please note that the Inspire360 Training and Certification Platform is separate from the TPRA website. Your TPRA website login credentials will not work on Inspire360, and a separate account is required to register for and access courses. < Back About the Course PromptArmor brings you the " AI/LLM Security & Risk Course for TPRM ". This training course includes 12 modules to teach you the risks that AI in vendors can carry, and how to assess them. This training course is designed for Third-Party Risk Management teams looking to enhance their understanding of AI security and risk assessment. It consists of two specialized tracks. Track 1: AI Security for TPRM Teams focuses on core AI security concepts, including large language model (LLM) behavior, embeddings, vector databases, retrieval-augmented generation (RAG), fine-tuning, and indirect prompt injection—key areas where security risks can emerge in AI-driven systems, and where third party risk professionals should look to mitigate risk. Track 2: Holistically Assessing AI in Third Parties equips TPRM professionals with the skills to evaluate the AI-enabled features that vendors offer. It covers AI application architecture, data usage policies, cybersecurity, data privacy, governance, and model risks, providing a comprehensive framework for assessing AI-related risks in third-parties. Together, these tracks offer a structured approach to understanding and mitigating AI security threats in third parties. If you have any questions, please contact PromptArmor at support@usepromptarmor.com . Your Instructor N/A – On-Demand PromptArmor helps TPRM teams assess and continuously monitor the risks of AI in vendors. We have extensive experience in finding novel threats in AI-enabled applications, and suggesting concrete actionable recommendations to remediate - both with configuration changes and vendor questions. N/A – On-Demand N/A – On-Demand 1/1 Previous Next

  • Securing SaaS Applications: A Comprehensive Approach to Cloud Risk Management | Training Course

    Ideal for risk management professionals, security teams, and procurement specialists, this training provides actionable knowledge to strengthen SaaS security practices and enhance third-party risk management strategies. Securing SaaS Applications A Comprehensive Approach to Cloud Risk Management Price $159 Duration 4 Hours Type Zoom or On-Demand Enroll By clicking this button, you will be redirected to our Training & Certification Platform (Inspire360) . Please note that the Inspire360 Training and Certification Platform is separate from the TPRA website. Your TPRA website login credentials will not work on Inspire360, and a separate account is required to register for and access courses. < Back About the Course As organizations increasingly rely on cloud-based Software-as-a-Service (SaaS) solutions, understanding and mitigating associated risks is critical. This virtual training provides an in-depth exploration of key security considerations when evaluating and managing SaaS applications. The course begins with an overview of cloud and SaaS risks, highlighting the unique challenges posed by cloud-based environments. Participants will gain insights into the Shared Responsibility Model , clarifying the division of security responsibilities between cloud providers and customers. The session then delves into security frameworks for major cloud platforms, including Amazon Web Services (AWS) Trust Advisor Reports (TAR), Google Cloud Security, and Microsoft Azure Cloud Security , helping learners assess provider-specific security features. Building on this foundation, the training covers best practices for conducting inherent risk assessments and leveraging cloud security questionnaires to evaluate vendor security controls. Practical exercises on physical validation techniques and SaaS software testing will equip participants with hands-on approaches to verifying security measures. The course concludes with guidance on effective off-boarding strategies , ensuring secure data removal and risk mitigation when transitioning away from a SaaS provider. Ideal for risk management professionals, security teams, and procurement specialists, this training provides actionable knowledge to strengthen SaaS security practices and enhance third-party risk management strategies. This training is available live over Zoom or as On-Demand. Your Instructor Gregory Rasner Gregory is a CEO, author, educator, speaker, and leader in the field of cybersecurity, zero trust, and third-party risk. With over 25 years of experience in IT and cybersecurity, he has helped numerous clients and organizations improve their security posture and reduce their risk exposure. He is the founder and CEO of Third Party Threat Hunting LLC, a cybersecurity consulting firm that specializes in a wide range of areas, including cybersecurity, cloud computing, network architecture, and more. Gregory Rasner Gregory Rasner 1/1 Previous Next

bottom of page