Regulatory Pressure on Third Party Management

In recent years, we have seen a significant amount of new guidance on third party risk management within financial institutions. FFIEC Cybersecurity Assessments Tool (CAT) encourages financial institutions to expand questioning around third party risk management practices and suggests more rigorous reviews oversight. Regulators also suggests that the FFIEC CAT can be leveraged against Third Parties, not just financial institutions. There has also been discussion that the FFIEC may release a version of CAT for Third Parties to complete.

The FFIEC coined the term "External Dependencies" in CAT guidance. This expands requirements beyond vendors, to include any third-party relationship, including customers. We will explore best practices for Vendor Management, Third Party Risk Management, and Customer Risk Management. This discussion will help improve your process.

Covered Topics:

  • Overview of industry breaches
  • New regulatory expectations
  • Risk Management practices for selecting new products/services
  • Risk Management of existing relationships
  • Integration of customers into management program
  • Lessons learned from failed management programs

Who Should Attend?

Information Security Officers, IT Managers, Risk Officers, Internal Auditors, CFOs, and Executives looking to understand the risk around Third Party Management.


Connection Error #D55. For immediate assistance, please use our online chat (lower right corner of this page).
   Live Plus Five (days) - $265   
   OnDemand Recording Only - $295   
   CD-ROM and Hardcopy Handouts - $345   
   Live Plus Six (months) - $365   
   Premier Package - $395   
Additional Locations
Want your branches to participate? Facilities within your organization will be able to participate without the travel costs of coming to one location.
Each additional location adds $75 to your registration and can be entered on the next screen as you confirm your order.