IAPP Privacy. Security. Risk. 2025

SAN DIEGO

28-31 October

Back to conference agenda

Strengthening Your Supply Chain: Managing Third-Party Risk

Thursday, 30 Oct.

15:45 - 16:45 EDT

Beginner level

BREAKOUT SESSIONPRIVACYAI GOVERNANCEAI LITERACYAI AND MACHINE LEARNINGPRIVACY ENGINEERING

David Doyle, Head of vCISO Services, Direct Defense
Heather Jackman, Former Deputy Procurement Executive CIA; Founder, The STAQ Group
Nancy Morgan, Former U.S Intelligence Community CDO; Strategic Advisor, The Cantellus Group

 

In the age of ubiquitous technology and a more interconnected digital landscape, it is imperative to develop a deep understanding of your supply chain ecosystem to safeguard valuable assets: people, data, intellectual property, systems, infrastructure and facilities. Not just within your company, department or agency, but mapping your supply chains to include third-party partners and suppliers who are critical to your success. In an AI-enabled global landscape, the dependencies on third-party providers are increasing from software to hardware, from infrastructure to networks, from undersea cables to satellites, from data to models and analytics. We will identify strategies to get started, roles and responsibilities, and how to define terms and conditions for accountability and reporting mechanisms. Learn where and when these critical conversations get started and how decisions get codified.

 

What you will learn:

  • Learning how to map your supply chain ecosystem including third-party partners and suppliers. 
  • Practical insights on roles and responsibilities and considerations when developing terms and conditions for third-party partnership agreements and service level agreements and related artifacts such as software and hardware bill of materials, data cards, model cards and more. 
  • Understanding how third-party partners play into corporate risk management programs and reporting.