Logo

    third party risk

    Explore " third party risk" with insightful episodes like "Understanding The Foreign Extortion Prevention Act", "FCPA Enforcement Trends & Developments", "Episode 16: Who's Looking After the Children? Critical failures in supplier oversight are costing far more than money", "Security starts with people. Process requires purpose. | Ep. 2 with Brian Reed" and "Introducing Risk and Reels: A Cybersecurity Podcast" from podcasts like ""RiskWatch", "RiskWatch", "Kelli Confidential: Negotiation Essentials Empowering Extraordinary Women", "Risk and Reels: A Cybersecurity Podcast" and "Risk and Reels: A Cybersecurity Podcast"" and more!

    Episodes (25)

    Understanding The Foreign Extortion Prevention Act

    Understanding The Foreign Extortion Prevention Act

    Daniel Wendt, a member at Miller & Chevalier, discusses the new Foreign Extortion Prevention Act that was signed into law by President Biden in December 2023.  FEPA was designed to prevent extortion by foreign officials and criminalizes the act of foreign officials demanding bribes addressing a potential gap in the FCPA. Here is a link to a recent alert that Miller & Chevalier published on FEPA as well as a link to Daniel’s bio and contact information

    FCPA Enforcement Trends & Developments

    FCPA Enforcement Trends & Developments

    Ann Sultan and Alexandra Beaulieu of the law firm Miller & Chevalier came on the show to discuss recent enforcement developments and trends concerning the Foreign Corrupt Practices Act. Ann is a Partner and Vice Chair of the International Department at the firm and provides public companies and private organizations with advice on a wide range of enforcement, ethics and compliance topics. Alexandra is an Associate at the firm and focuses her practice on the design and implementation of risk-based corporate compliance programs and internal and government investigations. You can find a link to a recent review of FCPA enforcement trends and developments published by the firm here

    Episode 16: Who's Looking After the Children? Critical failures in supplier oversight are costing far more than money

    Episode 16:  Who's Looking After the Children?  Critical failures in supplier oversight are costing far more than money

    In this episode I'm looking at the 4-month long investigative report by the New York Times into the damning claims of wide-spread, systemic exploitation of underaged migrant workers in some of the biggest, most beloved household brands in America.

    The articles headed by journalist Hannah Dreier, presented one of several investigative pieces into the enormous scale of trafficked and enslaved young people across America.
     
    So who is looking after these kids?  More specifically, who is looking after the downstream 3rd party suppliers who introduced these illegal and unethical practices  into the supply chains and why did the enterprise supplier risk vetting fail so miserably?

    We'll break that down and look at three ways we can all do more to mitigate this from happening in our companies.

    Resources and Citations: 

    Referenced News Articles:

    TPRM Resources:
    ✅  Get My FREE Third Party Risk for Leaders eGuide HERE  

    ✅  Past blog on forced labour and human trafficking HERE  

    Want to hear more about these topics? Please leave us a like and a review or join our mail list for information upcoming courses like our Negotiation Foundations course due out MARCH 2024! www.kelliconfidential.com

    CRO Wisdom Episode 19: Building a Mature Risk Program

    CRO Wisdom Episode 19: Building a Mature Risk Program

    In this discussion, Dr. Laura Jones, Director of Governance, Risk, and Compliance at Hearst, and Eileen Fahey, Chief Risk Officer at Fitch Group, share their decades of expertise in risk management with Atul Vashistha, Chairman and CEO, Supply Wisdom.

    During the hour-long discussion, the panellists share their wisdom about the essentials for building out and scaling risk management programs with the goal of helping a new generation of risk professionals learn from leaders. 

    Listen now for lessons learned, the importance of learning from peers, the value of industry associations and forums in fostering growth and education, and why one risk program cannot fit all businesses. 

    • Defining 'maturity' for a risk management program 
    • Best practices on building and scaling TPRM programs 
    • How to develop an effective risk appetite framework 
    • Maximizing the value of TPRM investments 

    CRO Wisdom Episode 18: James Gellert, CEO, Rapid Ratings (Part 3)

    CRO Wisdom Episode 18: James Gellert, CEO, Rapid Ratings (Part 3)

    In Part 3 of this episode of CRO Wisdom, James Gellert talks about the importance of listening and learning from peers to be a great leader. He shares his advice on why young professionals must have a roadmap for their chosen career destination even while being flexible about getting there. 

    CRO Wisdom Episode 18: James Gellert, CEO, Rapid Ratings (Part 2)

    CRO Wisdom Episode 18: James Gellert, CEO, Rapid Ratings (Part 2)

     In Part 2 of this episode of CRO Wisdom, James Gellert talks about Covid-induced disruptions and how automation has helped them mitigate a lot of impact. 

    James delves into the challenges of helping risk professionals assess risk from private companies and the importance of automating under the hood to deliver the most value to customers. He also emphasizes the importance of maintaining the appropriate internal data, such as lists of suppliers and their criticality, to get the most value out of risk management solutions. 

    Episode 17: Delivering 360° Situational Awareness to the Extended Enterprise

    Episode 17: Delivering 360° Situational Awareness to the Extended Enterprise

    Business today is a complex web of third-party relationships, and risks of disruption from these third parties are increasing in frequency and severity.
     
    Problem: Most enterprises follow a siloed approach with assessments of a few risks

    •  Data collected at a point in time is quickly stale – fails to present a current view of risk
    •  Usually limited to financial and cyber (often lagging indicators of trouble) – fails to present a comprehensive view of risk
    •  Siloed approach – fails to provide an enterprise-wide view of risk

    All of which leaves organizations unable to prevent third-party and supply chain disruptions.

    Solution: Real-time full-spectrum third-party risk intelligence

    • Real-time intelligence provides an early warning – to enable effective proactive risk mitigation actions
    • Full-spectrum coverage brings any leading indicators to your attention – to enable focus on most today’s most critical risks

    In this CRO Wisdom discussion, risk leaders Atul Vashistha, CEO, Supply Wisdom, and Debra Zoppy-Hendershott, Head of TPRM & Op Risk Business Resiliency, Guardian Life and Mike Rasmussen, GRC Pundit & Analyst, GRC 20/20 Research talk about the integration of continuous, full-spectrum risk intelligence into existing third-party risk/GRC architecture  can deliver the continuous 360° situational awareness enterprise resilience requires today.

    Episode 16: Linda Tuck Chapman, CEO, Third Party Risk Institute

    Episode 16: Linda Tuck Chapman, CEO, Third Party Risk Institute

     This episode of CRO Wisdom features Linda Tuck Chapman, CEO, Third Party Risk Institute. In this episode hosted by Atul Vashistha, Chairman, Supply Wisdom, Linda speaks about her career trajectory from procurement to third party risk at Scotia Bank and how the function was all about compliance and regulatory reporting in the 2000s. 

    Linda discusses her entrepreneurial journey and raising awareness about the importance of third party risk in the board at banks. She talks about her two books on the subject and why one of them is written for auditors. Listen to her on why she believes the Covid pandemic has fundamentally changed the landscape for third party risk and its role in resilience and why continuous monitoring needs solutions that can prevent risk teams from being bombarded with negative news alerts. 

    Episode 15: Paul Milkman, CISO, Operational and Technology Risk Leader, CIT

    Episode 15: Paul Milkman, CISO, Operational and Technology Risk Leader, CIT

    This episode of CRO Wisdom features Paul Milkman, CISO, Operational and Technology Risk Leader, CIT.  In this episode hosted by Atul Vashistha, Chairman, Supply Wisdom, Paul speaks about how he landed into risk from his time at Xerox in the 90s and later in Fannie Mae. 

    Paul discusses the importance of operational risk and why it is particularly relevant when every financial institution works with technology and operational partners who handle data and money. He shares his thinking around what is important in third-party risk isn't  very different from the risk within the enterprise and why there is more to risk than just cyber risk and ransomware.

    Episode 14: Yakut Akman, Former Citi Risk Leader

    Episode 14: Yakut Akman, Former Citi Risk Leader

    This episode of CRO Wisdom features Yakut Akman, Risk Leader. Yakut Akman was Chief Third Party Management Officer at Citi till 2019, following long stints at Deutsche Bank and Citi across the world. In this episode hosted by John Bree, Chief Evangelist & Chief Risk Officer, Supply Wisdom, Yakut talks about her long career in internal audit and risk management.  

    Yakut discusses the importance of a risk culture within organizations and why it's essential for risk management to not be reactive. She shares her views on best practices for incorporating continuous monitoring and why the business must be part of the solution for risk.

    What’s on the minds of CISOs? New responsibilities, future risks and hiring talent - S3E6

    What’s on the minds of CISOs? New responsibilities, future risks and hiring talent - S3E6
    In this episode we’re joined by Kevin Storli and Phil Venables to look at the changing role of the chief information security officer (CISO). We discuss: 1. How they’ve seen the role of the CISO change over their careers. 2. How CISOs can mitigate security risks while enabling their organisation to achieve its goals. 3. Current areas of concern, including supply chain risk and securing the cloud. 4. What they look for when hiring and the skills CISOs need to recruit for over the next few years. Host: Abigail Wilson, Cyber Threat Operations Manager, PwC UK Guest: Kevin Storli, Global CTO and UK Chief Information Security Officer, PwC Guest: Phil Venables, Chief Information Security Officer, Google Cloud

    Episode 12: Victor Meyer, COO, Supply Wisdom

    Episode 12: Victor Meyer, COO, Supply Wisdom

    This episode of CRO Wisdom features Victor Meyer, COO, Supply Wisdom. In this episode hosted by John Bree, Chief Risk Officer and Chief Evangelist, Supply Wisdom, Victor talks about his long career in the Navy as a SEAL and how he naturally transitioned into Non-Financial Risk from there. 

    Victor talks about his extensive risk experience at Deutsche Bank and the risk component in recent issues such as the Archegos fallout. Victor points out why third-party non-financial risk is the new cybersecurity risk and why risk practitioners must apply the same rigor to monitoring third parties in their supply chains as they would to internal governance and controls. He makes a case for monitoring risk across a wide risk aperture to ensure resilience.

    Keeping your operational technology secure - S3E5

    Keeping your operational technology secure - S3E5
    In this episode we’re joined by Sean Sutton and Cara Haffey to discuss how organisations can secure their operational technology (OT). We discuss: 1. How OT security differs from IT security. 2. Threats we’ve seen targeting operational technology, with a focus on the manufacturing sector. 3. Steps you can take to tackle threats and build resilient operations. Host: Abigail Wilson, Cyber Threat Operations Manager, PwC UK Guest: Sean Sutton, Cyber Security Partner, PwC UK Guest: Cara Haffey, UK Industrial Manufacturing Leader, PwC UK

    Episode 11: Renee Forney, Senior Director - Azure Hardware & Security, Microsoft

    Episode 11: Renee Forney, Senior Director - Azure Hardware & Security, Microsoft

    This episode of CRO Wisdom features Renee Forney, Senior Director, Azure Hardware Systems & Infrastructure Security, Microsoft. In this episode hosted by Atul Vashistha, Chairman, Supply Wisdom, Renee talks about her career trajectory from programming and network administration to her current leadership role in cybersecurity and risk management. 

    Renee discusses why a multi-layered approach to risk management that goes beyond one-time risk assessments is essential to effectively build resilience. She shares the importance of continuous monitoring and OSINT to enterprise risk programs and her own lessons incorporating experts from government and military services to build effective risk programs. Don't miss her insight into why ethics in the workforce is one of the least understood areas of risk, especially in a world where engineers wield enormous influence. 

    Episode 10: Jenna Wells, Director of TPRM, Iron Mountain

    Episode 10: Jenna Wells, Director of TPRM, Iron Mountain

    This episode of CRO Wisdom features Jenna Wells, Director of TPRM, Iron Mountain. In this episode hosted by Atul Vashistha, Chairman, Supply Wisdom, Jenna talks about her current role implementing and managing risk programs at Iron Mountain and how she transitioned into risk from a Signals career in the Marines. 

    Jenna discusses her priorities for risk and why being agile and dynamic will be key to managing supply chain risk and increasing regulatory pressures. She shares her views on continuous monitoring and the importance of automation and AI to identify risk at scale and mitigate them.

    Episode 9: Shamla Naidoo, Managing Partner, IBM Security

    Episode 9: Shamla Naidoo, Managing Partner, IBM Security

    This episode of CRO Wisdom features Shamla Naidoo, Managing Partner, IBM Security. In this episode hosted by Atul Vashistha, Chairman, Supply Wisdom, Shamla talks about the challenges of risk management at a time when digital risks are rising. She talks about why she expects continuous monitoring will lead to a cultural shift towards self-regulating organizations.

    Shamla discusses what she sees as the problems of silo-isation and fragmentation of data and why an integrated view of risk will lead to exponential new benefits. Don't miss her advise to CISOs on the need to look outside to get a truly complete picture of risk to their organizations.

    Logo

    © 2024 Podcastworld. All rights reserved

    Stay up to date

    For any inquiries, please email us at hello@podcastworld.io