Webinar

Industry Leaders

About Our Experts

Colin Whittaker

Founder & Director at Informed Risk Decisions Ltd
Colin is a leading payments security expert with extensive experience shaping global risk strategy. A former PCI SSC Board of Advisors member, he drove major security and compliance initiatives at APACS and Visa Europe. Now an independent consultant, he advises diverse organizations and frequently speaks and publishes on cybersecurity and information risk.

Apostol Vassilev

Ph.D., Research Supervisor, Computer Security Division at NIST.
Apostol is a leading NIST and NCCoE expert in trustworthy AI, cybersecurity, adversarial machine learning, and robust AI for autonomous systems. He contributes to major standards efforts, serves in key OWASP AI security roles, holds a Ph.D., over 60 papers, multiple patents, major awards, and is widely recognized across industry and academia.

Nicholas Geyer

Sr. Product Marketing Manager for Third-Party Management at OneTrust
Nicholas is the Sr. Product Marketing Manager for Third-Party Management at OneTrust. He leads go-to-market strategy and product positioning for TPRM solutions, helping organizations understand evolving vendor risks and adopt data-driven, scalable approaches to building secure third-party ecosystems through modern technology.

CPE Webinar | Translating the NIST AI RMF into Measurable Risk Outcomes

Sep 17 / IT GRC Forum
On this webinar, we break down how to translate the NIST AI Risk Management Framework into practical, measurable outcomes that organizations can track, report, and improve over time. The session focuses on helping attendees understand how to operationalize the framework in real environments, strengthen governance structures, and align AI risk practices with business impact.

Our expert panel, including Apostol Vassilev, Ph.D., Research Supervisor in the Computer Security Division at NIST, will explore how the framework’s core components map to actionable controls that can be embedded into daily workflows. The discussion examines how qualitative AI risks can be converted into consistent, repeatable metrics that support monitoring, assurance, and decision‑making.

Attendees will also learn approaches for integrating AI risk oversight into existing GRC and audit processes, enabling organizations to move from periodic review cycles to more adaptive and continuous assurance. The webinar highlights common implementation challenges and offers proven strategies for achieving meaningful, measurable outcomes that withstand regulatory and stakeholder scrutiny. This session is designed to equip participants with the clarity and confidence needed to operationalize AI risk management at scale.