Webinar

Industry Leaders

About Our Experts

Colin Whittaker

Founder and Director Informed Risk Decisions Ltd
Colin has over 15 years of experience advancing payment risk and security strategies across Europe and the US. He led PCI compliance initiatives, coordinated responses to cardholder data breaches, and introduced innovative programs providing compliance relief. Now independent, he offers cybersecurity risk consultancy and shares insights at global events.

Neal Roylance

Director of Security Research from RiskRecon
Neal has 17+ years of experience protecting digital assets for large financial institutions. He combines expertise in security governance, engineering, and architecture to deliver objective assessments that help organizations manage critical third-party relationships effectively, strengthen risk management practices, and improve overall cybersecurity posture.

Andrew Snell

Director, Solutions Engineering at Prevalent
Andrew specializes in optimizing third-party risk management programs and processes. With six years at Prevalent, he has helped organizations of all sizes implement efficient, technology-driven risk management strategies, focusing on validation, optimization, and customer success to strengthen operational efficiency and reduce third-party risks.

Rachael Olsen

Senior Solutions Engineer at LogicGate
Rachael helps organizations centralize, automate, and scale their GRC programs. With experience at LogicGate and PwC, she guides clients in adopting risk-centric practices, optimizing governance processes, and building a strong risk culture while enhancing operational efficiency and organizational resilience.

Tim Mullen

Chief Information Security Officer at OneTrust
Tim brings over 20 years of experience in information security, covering architecture, IAM, incident response, vulnerability management, and risk governance. He has led global security teams across multiple industries, helping organizations strengthen cybersecurity programs, manage risk, and implement effective security strategies aligned with business objectives.

Fortifying Your Attack Surface: How to Defend Against Third-Party Risks

Apr 25 / IT GRC Forum

In today’s digital landscape, organizations face an exponentially growing attack surface, often with limited visibility into their entire IT ecosystem. Networks now encompass thousands of devices, security tools, IoT endpoints, and connected OT systems, while businesses increasingly rely on third-party code and applications. Managing this complexity is critical to minimizing cyber risk.


This on-demand webinar explores actionable strategies for reducing attack surfaces and defending against third-party risks. Attendees will gain practical insights into various attack surfaces, including digital, social engineering, and physical vectors, as well as common threats such as phishing, malware, weak credentials, misconfigurations, and vulnerable web components.


The session also covers innovative approaches to minimizing exposure, including inventory management, access restriction, network segmentation, and employee cybersecurity training. Participants will learn effective strategies for mitigating third-party risks and safeguarding their organization against evolving threats. This webinar equips IT and security professionals with the tools and knowledge needed to proactively manage attack surfaces and strengthen overall cybersecurity posture.