Home
Categories
EXPLORE
True Crime
Comedy
Society & Culture
Business
News
Sports
TV & Film
About Us
Contact Us
Copyright
© 2024 PodJoint
Podjoint Logo
US
00:00 / 00:00
Sign in

or

Don't have an account?
Sign up
Forgot password
https://is1-ssl.mzstatic.com/image/thumb/Podcasts211/v4/38/7a/20/387a20fe-2c8a-ecb9-1dd7-a0ee896a0fde/mza_12382312868503381387.jpeg/600x600bb.jpg
GRC Uncensored
Chaos
21 episodes
1 week ago
GRC Uncensored is an experimental podcast designed to elevate real conversations with GRC professionals, auditors, regulators, and those building programs around it. Your hosts are Troy Fine and Elliot Volkman.

Hosted on Acast. See acast.com/privacy for more information.

Show more...
Tech News
Business,
News,
Management
RSS
All content for GRC Uncensored is the property of Chaos and is served directly from their servers with no modification, redirects, or rehosting. The podcast is not affiliated with or endorsed by Podjoint in any way.
GRC Uncensored is an experimental podcast designed to elevate real conversations with GRC professionals, auditors, regulators, and those building programs around it. Your hosts are Troy Fine and Elliot Volkman.

Hosted on Acast. See acast.com/privacy for more information.

Show more...
Tech News
Business,
News,
Management
https://assets.pippa.io/shows/6702dcb9c88f09c3e0b9a10a/1741868280073-98dc972f-f9c8-433b-ab33-a977b7f15a82.jpeg
Third-Party Risk Management: When to Accept or Reject Vendor Documentation
GRC Uncensored
53 minutes 43 seconds
7 months ago
Third-Party Risk Management: When to Accept or Reject Vendor Documentation

On a recent episode of GRC Uncensored, host Troy Fine and producer Elliot Volkman were joined by guest Stanley Krochik, a now seasoned GRC professional and former city security program manager, to discuss the realities of third-party risk Management (TPRM). The conversation focused on the growing issue of low-quality audits, the challenge of assessing vendor security postures, and the dilemma risk managers face when reviewing third-party documentation.


04:43 The Importance of Third Party Risk Management

05:45 Challenges with Low Quality Audits

07:45 Evaluating SOC 2 Reports

12:55 Issues with Sales-Focused GRC Tools

14:44 The Need for Better Compliance Programs

27:50 High-Risk Vendor Architecture Review

29:07 SOC 2 Reports and Vendor Risk Management

31:50 Challenges with SOC 2 and Auditor Quality

36:49 Financial Impact of Data Breaches

38:10 Differences in Security Between Old and New Systems

47:43 Proactive vs. Reactive Security Measures



Hosted on Acast. See acast.com/privacy for more information.

GRC Uncensored
GRC Uncensored is an experimental podcast designed to elevate real conversations with GRC professionals, auditors, regulators, and those building programs around it. Your hosts are Troy Fine and Elliot Volkman.

Hosted on Acast. See acast.com/privacy for more information.