Third Party Threat Hunters
A dialogue with leaders in Cybersecurity and Third-Party Risk Management led a leader in the field: Gregory Rasner (author of three books in TPRM and one in PAM)
Episodes
12 episodes
Relationships Beat Tools In Vendor Risk with Heather Kadavy
Vendor risk doesn’t fail because you picked the wrong platform. It fails because nobody trusts the program, nobody speaks the business unit’s language, and everyone thinks it’s someone else’s job. We’re joined by Heather Kadavy, Director of Mem...
Short: AIs Impact on Third-Party Risk Governance with Michael Berman
In this short video, Michael explains AI's impact on how we process and develop and run our TPRM programs.
Third Party Risk Management in the Age of AI and Fourth Parties with Michael Berman
Greg hosts Michael Berman, CEO of End Contracts and author of The Upside of Third Party Risk Management, for a practical conversation about how vendor risk is changing. The discussion focuses on moving beyond static compliance, managing fourth ...
From Check-the-Box to True Third-Party Operational Security with Ronen Gottlib
In this episode of Third Party Threat Hunters, Greg speaks with Ronan, co-founder and CEO of Shift Security, about how third-party risk management needs to evolve beyond questionnaires and static assessments. Ronan shares how years of working i...
Short: Map your critical dependencies before it's too late
Michael Rasmussen shares a practical way to begin third-party and dependency risk work without getting lost in an enterprise-wide transformation. The focus is on one business-critical service, the people who know it best, and a small set of que...
Short: Starting Small with a Critical Service Dependency Map with Michael Rasmussen
Michael Rasmussen shares a practical way to begin third-party and dependency risk work without getting lost in an enterprise-wide transformation. The focus is on one business-critical service, the people who know it best, and a small set of que...
AIs Impact on Enterprise Boundaries with Michael Rasmussen
The enterprise no longer ends at the org chartThe ideaThe real organization is the network around the organization. Vendors, contractors, platforms, data brokers, APIs, and outsourced processes are not support functi...
Short: The most dangerous assumption in third-party risk with Michael Rasmussen
Michael Rasmussen explains why the biggest mistake in third-party risk is assuming you already know who your suppliers are and what risk they bring. Rather than focusing only on contract size or spend, he argues for measuring value at risk, bec...
The Evolution of GRC and Future Risks in Third-Party Ecosystems with Michael Rasmussen
In this episode, Michael Rasmussen, a leading expert in governance, risk, and compliance, shares insights into the origins of GRC, its ongoing evolution, and its critical role in managing complex third-party ecosystems amid rapid technological ...
AI, Third Party Risk, and the Real Work of Operationalizing It with Paul Kurtz
Greg reviews how AI is changing third party risk management with Paul Kurtz, a 30 plus year financial services veteran and current third party risk leader at First Century Bank. They focus on what actually changes in banking when AI enters vend...
Navigating Third-Party Risk and AI in Cybersecurity with Rachel Curran
In this episode, Rachel Curran, co-founder of Loctivity, shares insights on how AI is transforming third-party risk management, the importance of governance at speed, and practical steps to strengthen security postures. Discover how to balance ...
Beyond Questionnaires: AI Agents, Zero-Day Breaches, and TPRM with Clarence Chio
In this episode, Clarence Chio, CEO of Coverbase, discusses the evolving landscape of AI in cybersecurity, third-party risk management, and the implications of autonomous AI agents. We explore real-world incidents, innovative solutions, and str...