Quick Contact
Get in touch and see how Risk Reward can help you
Our London team are ready to answer questions, provide information & choices to help make your public seminar booking in a prompt, professional & friendly manner.
Location: UK EU MENA GCC Time Zones
First Date: Oct 10 - 12 2022
Duration: 3 days
Programme Director: Dennis Cox
Experience the highly-interactive expert-led social learning through Virtual Classroom via Cisco WebEx from Risk Reward.
All our 2022 Virtual Classroom events feature shared (or discrete) live chat between delegates and the expert, participate in topical surveys, polling questions, group exercises and case studies for a tried -and- true engaging and gratifying learning experience.
Need Face to Face or bring into your organisation? Simply contact us for significant cost savings and dates to best suit your professional development and business goals.
"Materials were good, if high-level. Instructor is very good, speaks well and is extremely knowledgeable and well-informed. This is the 2nd class I've attended of his and he is very good (D. Cox)."Bank Internal Auditor, US Bank, New York
0830 – 430 PM European Central Time Daily
Day 1
Session 1: The Importance of Third-Party Risk Management
Session 2: Assessment of Third-Party Service Providers
Session 3: The Governance Framework
Day 2
Session 4: Risk Assessing Third Parties
Session 5: The Process of Taking on Third-Party Service Provider
Session 6: High Risk Areas
Day 3
Session 7: Technical areas and third-party risk management
Session 8: What this is likely to mean in practice
Session 9 -10: Case Studies, Q&A, Group Discussion
"Overall, the class material was great and the materials taught were very timely in the current COVID-19 environment. "Risk manager, US Bank, New York
Identified by the USA OCC as among the top ten concerns for banks in 2022
The recent crisis has raised the profile of third-party risk management often referred to as outsourcing.
Banks started to use different ways of working and communicating and in so doing changed their risk profiles. Third parties represent part of the way that any bank operates, with increasing reliance upon an ever increasing number of independent firms. Their effective and efficient operation has become mission critical to the success of any bank.
The US regulators have raised concerns about third-party risks and whether these have been appropriately managed within banks, impacting customer service and regulatory compliance. In July 2021 the FDIC, the OCC and Federal Reserve Board published proposed interagency guidance on Third-Party Relationships and the management of risks. These important guidelines raise a number of important issues which any bank firm would seek to address.
Case studies driven, delegates will explore each of the latest regulatory requirements, the impact on their organisation and review what this is likely to mean in practice.
""Good overall look at bank environment and related risks, and a nice refresher for me having been out of the audit environment for quite a while. I appreciated Dennis' diverse level of experience in audit/fraud/risk.""Bank Internal Auditor, US Bank, New York
Designed primarily for Risk Managers, Internal Auditors, Business Managers, Compliance staff, Controls staff and Senior management, yet recent delegates included those from IT, Operations, Legal and HR.
Delegates who complete the course will receive a Certificate in New USA Rules on Third- Party Relationship Risk Management in Banking, and for those who require a demonstration of competency by examination for CPE/CPD points a 20-multiple choice questions exam, fully proctored via email with results report, is available at no additional charge.
The Importance of Third-Party Risk Management
Case Study: What makes a third-party service provider critical?
Due Diligence, Collaborative Arrangements and Third-Party Selection
Case Study: What should be the contents of the due diligence conducted? What are the key issues that are identified in specific cases?
Contract Negotiation
Oversight and Accountability
Case Study: In which areas are outsourcing policies required? What do they need to address?
Case Study: What approach should internal audit take with regard to outsourcing and third-party risk management?
Risk Assessing Third Parties
• How to ensure that all third-parties are identified
• Considering occasional providers
• Risk assessing third parties
• What perspective is appropriate?
• Where is the data?
• How often should this be reconsidered?
• What is the impact of the analysis?
Case Study: What are the constituents of the risk assessment grid?
Ongoing Monitoring
• The role of monitoring
• Key factors
• Reviewing goal alignment
• Reviewing audits
• Monitoring performance
• Monitoring information security
• Monitoring business resumption contingency planning
• Monitoring recovery processes
• Monitoring complaints
Termination
• The issues to address
• Factors that matter
• Information security
• Associated risks
High Risk Areas
• Cloud computing
• Software vendors and suppliers
• Payment service providers
• Business continuity providers
• Systems testing
Case Studies: Consider the risk management implications of each of these areas.
Technical areas and third-party risk management
• Legal
• Accountants
• Tax advisors
• Economists
• Consultants
Case Study: What work should be undertaken on specialists and how should they be bought into third-party risk management?
Supervisory Reviews of Third-Party Relationships
• What matters to regulators
• Review of risk management processes
• Review risk assessment
What this is likely to mean in practice
Case Study: What is the impact on your ability to manage your bank?
Summary with Group Discussion, Q&A
Delegates will gain a thorough understanding of the management of third-party risk management and the requirements set out in the proposed US guidelines. This knowledge will enable learners to grasp what this is likely to mean in practice and how the risk should be assessed and mitigated, specifically
• The role of third-party risk management
• The governance and reporting requirements
• How to risk assess a third-party
• What makes a third-party critical and what that is likely to mean in practice
• The level of due diligence to be conducted
• How to incorporate third-party risk management into operational resilience
• The impact on internal audit
A Tier 1 Global Bank risk expert will lead group case studies for an on- the- job learning style experience to immediately result in the application of learned concepts in the workplace immediately.
Highly interactive expert-led intensive presentation, Q&A, group real-time in-depth case studies, regulation and discussion supported by key principles and theory. The virtual learning platform uses safe, industry preferred encrypted Cisco WebEx to optimize live face-to-face visual interaction, discrete chat, for polling and quizzes.
(An invitation via email with access link is included for all participants.)
Course Fee (per person):
GBP £2,495.00 (+ UK VAT when applicable)