InfosecTrain Hosts TPRM: Third-Party Risk Management Fast-Track Bootcamp


Posted February 24, 2026 by infosectrain

InfosecTrain, a leading cybersecurity training provider, is hosting a 2-Day TPRM: Third-Party Risk Management Fast-Track Bootcamp. This bootcamp is a two-day program that will explain how organizations manage risks from third-party relationships.

 
๐—ช๐—ต๐—ฎ๐˜
InfosecTrain, a leading cybersecurity training provider, is hosting a 2-Day TPRM: Third-Party Risk Management Fast-Track Bootcamp. This bootcamp is a two-day program that will explain how organizations manage risks from third-party relationships. It will cover TPRM fundamentals, its scope across the vendor lifecycle, and how it works alongside procurement and vendor management with clear ownership and accountability. Key risk concepts, including risk appetite, inherent versus residual risk, and their impact on vendor selection, due diligence, and monitoring, will be explored. The bootcamp will also discuss alignment with frameworks like ISO/IEC 27001:2022 and SOC 2. Day two will focus on program execution, governance, third-party categorization, challenges, and professional growth opportunities within TPRM and GRC roles.

๐—ช๐—ต๐—ฒ๐—ป
28 - 29 March 2026
7:00 PM โ€“ 11:00 PM

๐—ฆ๐—ฝ๐—ฒ๐—ฎ๐—ธ๐—ฒ๐—ฟ
Kavitha
17+ Years of Experience
Information Security | IT Governance | Compliance Audit | ISO 27001 | IT Service Management

๐—ช๐—ต๐˜† ๐—”๐˜๐˜๐—ฒ๐—ป๐—ฑ
Attending this bootcamp will equip professionals with practical skills to navigate the complexities of third-party risk in real-world organizational settings. It will help develop sound judgment in assessing risk, setting thresholds, and ensuring accountability across functions. Participants will gain insights into aligning TPRM with organizational strategies, regulatory expectations, and governance requirements. The program will also support cross-functional collaboration with teams like InfoSec, Legal, and Procurement, strengthening professional influence and decision-making. Additionally, it will provide guidance on career growth in TPRM and broader governance, risk, and compliance roles, making it valuable for those looking to formalize their expertise and advance in risk management and third-party oversight.

Agenda (Two Days of Transformative Learning)

๐‘ซ๐’‚๐’š 1: ๐‘ป๐‘ท๐‘น๐‘ด ๐‘ญ๐’๐’–๐’๐’…๐’‚๐’•๐’Š๐’๐’๐’”, ๐‘น๐’Š๐’”๐’Œ ๐‘ช๐’๐’๐’„๐’†๐’‘๐’•๐’” & ๐‘ญ๐’“๐’‚๐’Ž๐’†๐’˜๐’๐’“๐’Œ ๐‘จ๐’๐’Š๐’ˆ๐’๐’Ž๐’†๐’๐’•

๐— ๐—ผ๐—ฑ๐˜‚๐—น๐—ฒ ๐Ÿญ: ๐—œ๐—ป๐˜๐—ฟ๐—ผ๐—ฑ๐˜‚๐—ฐ๐˜๐—ถ๐—ผ๐—ป ๐˜๐—ผ ๐—ง๐—ต๐—ถ๐—ฟ๐—ฑ-๐—ฃ๐—ฎ๐—ฟ๐˜๐˜† ๐—ฅ๐—ถ๐˜€๐—ธ ๐— ๐—ฎ๐—ป๐—ฎ๐—ด๐—ฒ๐—บ๐—ฒ๐—ป๐˜
What is Third-Party Risk Management (TPRM)?
Scope of TPRM across the vendor lifecycle
Why TPRM is critical in todayโ€™s risk and regulatory landscape

๐— ๐—ผ๐—ฑ๐˜‚๐—น๐—ฒ ๐Ÿฎ: ๐—ฃ๐—ฟ๐—ผ๐—ฐ๐˜‚๐—ฟ๐—ฒ๐—บ๐—ฒ๐—ป๐˜, ๐—ฉ๐—ฒ๐—ป๐—ฑ๐—ผ๐—ฟ ๐— ๐—ฎ๐—ป๐—ฎ๐—ด๐—ฒ๐—บ๐—ฒ๐—ป๐˜ & ๐—ง๐—ฃ๐—ฅ๐—  โ€“ ๐—–๐—น๐—ฒ๐—ฎ๐—ฟ ๐—•๐—ผ๐˜‚๐—ป๐—ฑ๐—ฎ๐—ฟ๐—ถ๐—ฒ๐˜€
Procurement vs Vendor Management vs TPRM
How these functions work together
Clear ownership, responsibilities, and outcomes
Avoiding role overlap and governance gaps

๐— ๐—ผ๐—ฑ๐˜‚๐—น๐—ฒ ๐Ÿฏ: ๐—ช๐—ต๐˜† ๐—ง๐—ฃ๐—ฅ๐—  ๐— ๐—ฎ๐˜๐˜๐—ฒ๐—ฟ๐˜€ ๐—ง๐—ผ๐—ฑ๐—ฎ๐˜† & ๐—ข๐—ฟ๐—ด๐—ฎ๐—ป๐—ถ๐˜‡๐—ฎ๐˜๐—ถ๐—ผ๐—ป๐—ฎ๐—น ๐—ข๐˜„๐—ป๐—ฒ๐—ฟ๐˜€๐—ต๐—ถ๐—ฝ
Growing third-party ecosystems and outsourcing risks
Regulatory and customer expectations
Shared ownership model for effective TPRM
Enabling business without slowing it down

๐— ๐—ผ๐—ฑ๐˜‚๐—น๐—ฒ ๐Ÿฐ: ๐—ฅ๐—ถ๐˜€๐—ธ ๐—™๐˜‚๐—ป๐—ฑ๐—ฎ๐—บ๐—ฒ๐—ป๐˜๐—ฎ๐—น๐˜€ ๐—ณ๐—ผ๐—ฟ ๐—ง๐—ฃ๐—ฅ๐— 
What is risk and how it impacts organizations
Risk appetite and organizational tolerance
Inherent risk vs residual risk
Importance of residual risk in TPRM decision-making

๐— ๐—ผ๐—ฑ๐˜‚๐—น๐—ฒ ๐Ÿฑ: ๐—ฅ๐—ถ๐˜€๐—ธ ๐—”๐—ฝ๐—ฝ๐—ฒ๐˜๐—ถ๐˜๐—ฒ & ๐—œ๐˜๐˜€ ๐—œ๐—บ๐—ฝ๐—ฎ๐—ฐ๐˜ ๐—ผ๐—ป ๐—ง๐—ฃ๐—ฅ๐—  ๐——๐—ฒ๐—ฐ๐—ถ๐˜€๐—ถ๐—ผ๐—ป๐˜€
Risk-based vendor selection and onboarding
Depth of due diligence and monitoring
Risk escalation thresholds and reporting
Contractual and control implications

๐— ๐—ผ๐—ฑ๐˜‚๐—น๐—ฒ ๐Ÿฒ: ๐—ง๐—ฃ๐—ฅ๐—  ๐—”๐—น๐—ถ๐—ด๐—ป๐—บ๐—ฒ๐—ป๐˜ ๐˜„๐—ถ๐˜๐—ต ๐—œ๐—ป๐—ฑ๐˜‚๐˜€๐˜๐—ฟ๐˜† ๐—™๐—ฟ๐—ฎ๐—บ๐—ฒ๐˜„๐—ผ๐—ฟ๐—ธ๐˜€
Aligning TPRM with ISO/IEC 27001:2022
SOC 2 Trust Services Criteria and vendor risk
Governance, accountability, and evidence-based oversight
Positioning TPRM as a governance enabler

๐‘ซ๐’‚๐’š 2: ๐‘ป๐‘ท๐‘น๐‘ด ๐‘บ๐’•๐’“๐’–๐’„๐’•๐’–๐’“๐’†, ๐‘ฌ๐’™๐’†๐’„๐’–๐’•๐’Š๐’๐’ & ๐‘ท๐’“๐’๐’‡๐’†๐’”๐’”๐’Š๐’๐’๐’‚๐’ ๐‘ฎ๐’“๐’๐’˜๐’•๐’‰
Module 7: TPRM Fundamentals & Scope
Core fundamentals of a TPRM program
Scope of third parties (technology & non-technology)
Inclusion of vendors, partners, consultants, and contractors

๐— ๐—ผ๐—ฑ๐˜‚๐—น๐—ฒ ๐Ÿด: ๐—ง๐—ฃ๐—ฅ๐—  ๐—ฅ๐—ผ๐—น๐—ฒ๐˜€, ๐—ฅ๐—ฒ๐˜€๐—ฝ๐—ผ๐—ป๐˜€๐—ถ๐—ฏ๐—ถ๐—น๐—ถ๐˜๐—ถ๐—ฒ๐˜€ & ๐—š๐—ผ๐˜ƒ๐—ฒ๐—ฟ๐—ป๐—ฎ๐—ป๐—ฐ๐—ฒ
Roles of TPRM teams, leadership, and business units
Collaboration with InfoSec, Legal, Procurement, Audit
Shared accountability across the organization

๐— ๐—ผ๐—ฑ๐˜‚๐—น๐—ฒ ๐Ÿต: ๐—ง๐—ต๐—ถ๐—ฟ๐—ฑ-๐—ฃ๐—ฎ๐—ฟ๐˜๐˜† ๐—–๐—ฎ๐˜๐—ฒ๐—ด๐—ผ๐—ฟ๐—ถ๐˜‡๐—ฎ๐˜๐—ถ๐—ผ๐—ป & ๐—ฉ๐—ฒ๐—ป๐—ฑ๐—ผ๐—ฟ ๐—–๐—น๐—ฎ๐˜€๐˜€๐—ถ๐—ณ๐—ถ๐—ฐ๐—ฎ๐˜๐—ถ๐—ผ๐—ป
Identifying and classifying third parties
Risk levels, criticality, and strategic importance
Why categorization is foundational to effective TPRM
Risk-based prioritization and resource allocation

๐— ๐—ผ๐—ฑ๐˜‚๐—น๐—ฒ ๐Ÿญ๐Ÿฌ: ๐—–๐˜‚๐—ฟ๐—ฟ๐—ฒ๐—ป๐˜ ๐—–๐—ต๐—ฎ๐—น๐—น๐—ฒ๐—ป๐—ด๐—ฒ๐˜€ ๐—ถ๐—ป ๐—ง๐—ฃ๐—ฅ๐—  ๐—ฃ๐—ฟ๐—ผ๐—ด๐—ฟ๐—ฎ๐—บ๐˜€
Governance and standardization gaps
Manual and inefficient assessments
Limited visibility and weak ongoing monitoring
Regulatory pressure and vendor fatigue

๐— ๐—ผ๐—ฑ๐˜‚๐—น๐—ฒ ๐Ÿญ๐Ÿญ: ๐—ฅ๐—ผ๐—ฎ๐—ฑ๐—บ๐—ฎ๐—ฝ ๐˜๐—ผ ๐—•๐—ฒ๐—ฐ๐—ผ๐—บ๐—ถ๐—ป๐—ด ๐—ฎ ๐—ง๐—ฃ๐—ฅ๐—  ๐—ฃ๐—ฟ๐—ผ๐—ณ๐—ฒ๐˜€๐˜€๐—ถ๐—ผ๐—ป๐—ฎ๐—น
Skills, knowledge areas, and career progression
Understanding how to grow in TPRM roles
Positioning yourself in governance, risk, and compliance domains

๐— ๐—ผ๐—ฑ๐˜‚๐—น๐—ฒ ๐Ÿญ๐Ÿฎ: ๐—ž๐—ป๐—ผ๐˜„๐—น๐—ฒ๐—ฑ๐—ด๐—ฒ ๐—–๐—ต๐—ฒ๐—ฐ๐—ธ & ๐—ช๐—ฟ๐—ฎ๐—ฝ-๐—จ๐—ฝ
Quiz and interactive discussion
Key takeaways from the bootcamp
Closing notes and next steps

๐—ž๐—ฒ๐˜† ๐—ง๐—ฎ๐—ธ๐—ฒ๐—ฎ๐˜„๐—ฎ๐˜†๐˜€
Practical understanding of TPRM foundations and vendor risk management
Hands-on exposure to frameworks and risk-based decision-making
Interactive activities, quizzes, and real-world scenarios
Clarity on TPRM roles and career growth in risk and compliance
Apply TPRM concepts to real-world vendor scenarios
Earn 8 CPE Credits

๐—ฅ๐—ฒ๐—ด๐—ถ๐˜€๐˜๐—ฟ๐—ฎ๐˜๐—ถ๐—ผ๐—ป ๐—Ÿ๐—ถ๐—ป๐—ธ:
https://www.infosectrain.com/bootcamp/third-party-risk-management-fast-track-bootcamp/

๐—”๐—ฏ๐—ผ๐˜‚๐˜ ๐—œ๐—ป๐—ณ๐—ผ๐˜€๐—ฒ๐—ฐ๐—ง๐—ฟ๐—ฎ๐—ถ๐—ป
InfosecTrain is a recognized leader in cybersecurity training, focused on enhancing awareness and expertise in data protection, cybersecurity, and compliance. Through expert-led sessions and informative events, InfosecTrain equips professionals and organizations to protect sensitive information and effectively navigate the constantly evolving cybersecurity landscape. To know more about training programs offered by InfosecTrain:
Please write back to [email protected] or call at IND: 1800-843-7890 (Toll-Free) / US: +1 657-221-1127 / UAE: +971 569-908-131
 
Contact Email [email protected]
Issued By Infosectrain
Phone 08767256840
Business Address Noida
Country India
Categories Education , Services , Technology
Tags tprm , cybersecurity , grc
Last Updated February 24, 2026