Webinar
Industry Leaders
About Our Experts
Colin Whittaker
Founder & Director at Informed Risk Decisions Ltd
Colin is a leading PCI industry expert with decades of experience shaping global payment security. After retiring from the military, he led security at APACS, served on the PCI SSC Board of Advisors, and influenced major compliance initiatives at Visa Europe. He now provides cybersecurity risk consulting and speaks internationally on security.
Mitushi Pitti
Managing Director, Cyber at KPMG LLP
Mitushi has over 17 years of experience transforming third-party security programs across industries. She specializes in designing scalable, sustainable, and AI-augmented risk management strategies, helping organizations optimize return on investment, implement automation, and strengthen cyber security, governance, and compliance programs for Life Sciences, Financial Services, Technology, Consumer, and Retail sectors.
Andrew Scott
Privacy Counsel at TrustArc
Andrew is a privacy expert with deep knowledge of US and European privacy laws. He evaluates organizations’ privacy programs against global frameworks like GDPR, CCPA, and APEC CBPR. Andrew emphasizes the importance of privacy protections for individuals and provides guidance on program management, compliance, and safeguarding sensitive information.
Steve Tobias
Lead Client Success Advisor at RiskRecon
Steve has over two decades of experience in cybersecurity, helping organizations mature their third-party risk and cyber risk programs. His background includes governance, frameworks, and risk management roles, particularly in healthcare. He holds respected industry certifications and works closely with organizations to improve vendor security and overall risk posture.
Joe Toley
Project Director, R&D Development at Prevalent
Joe specializes in operationalizing and maturing third-party risk management programs. With a background in IT and data security, he translates organizational requirements into actionable plans, leveraging risk management technology to improve program effectiveness, streamline processes, and strengthen overall third-party risk strategies.
