Don’t miss this opportunity to prepare your organization for the future of TPRM and stay ahead with AI as your second-in-command.
Third Party Risk
TPRM programs can prove their worth by limiting damage of cyberattacks, data breaches
There are stories we tell ourselves in third-party risk management (TPRM) to make ourselves feel better about the corners we cut.
Communication and relationships is increasingly critical for compliance teams
Compliance is increasingly in the spotlight as companies are tackling everything from artificial intelligence and other new technologies to risk management and mitigation. But it’s soft skills of communication and relationship building that are becoming the most critical tools for success.
CW TPRM Summit: Technology advancements are making export controls more important than ever
Russia’s invasion of Ukraine has sparked a war with unusual implications: The U.S. has stepped up sanctions and export controls. But companies are increasingly learning that the most seemingly innocuous products can find themselves in “dual use,” as a product for daily life and a product for war. A gyroscope or a more advanced GPS chip might help improve a smartphone’s capabilities, but they can also help to guide a missile.
ESG isn’t just a buzzword, it’s vendor management, forced labor and more
ESG is no longer in vogue. But its issues still are.
Almost none of the nearly 200 attendees at Compliance Week’s Third Party Management summit this week said they’re currently working on ESG when informally surveyed. The show-of-hands results marked a dramatic reversal from even just a couple years ago, surprising even attendees in the room.
TPRM Keynote speaker Cherepanova says directors don’t need specialization, they need critical thinking
Regulators and investors increasingly say boards of directors need more expertise to ensure they can respond to fast-changing politics, policy, and technology that threaten to undermine their businesses. In the U.K., government officials say boards need to think more about cyber. In the EU, they need to prepare for the Corporate Sustainability Reporting Directive (CSRD). Speaking at Compliance Week’s Third-Party Risk Management summit, Boards of the Future director Vera Cherepanova says that directors need to think broadly, rather than in specialties.
Tariffs, Trade, and TPRM: Adapting to Global Regulatory Change and Supply Chain Disruption in 2025
Wondering how new approaches to age-old regulations affect ethical business practices across your extended enterprise? What about how tariffs may impact your supply chain integrity, and how to best adapt your organization to accelerated shifts in business practices?
Navigating compliance: A guide for small teams to tackle Cybersecurity Maturity Model Certification
Many small organizations within the Defense Industrial Base are struggling to meet the rigorous requirements validated through the Cybersecurity Maturity Model Certification, writes Thomas Graham, CISO at Redspin. If you haven’t been tracking it closely, CMMC was finalized in October, with an effective date of December 16, 2024.
DOJ fines MORSE Corp $4.6M for lax cyber controls amid crack down on federal contractors
Yet another government contractor has been slapped with a fine by the Department of Justice for applying lax cybersecurity defenses on sensitive government data.
Tackling Third Party Risk In A Global World
TPRM has always been a tough subject, requiring regular monitoring and audits to be done right. But until recently, it was something companies chose to do.


