With over a decade of experience at Monash University and 20 years in the education sector, I currently serve as the Third Party Cyber Risk Manager. In this role, I oversee and mitigate cybersecurity risks associated with third-party vendors and partners, while providing advice and feedback on cybersecurity-related policies and procedures. Previously, I was a Senior IT Risk and Compliance Consultant, where I offered expertise on IT risk controls, co-led security audits, and contributed to developing comprehensive cybersecurity policies. My earlier roles at Monash included Automation and Operations Leader and Technical Applications Team Leader, where I focused on operational efficiency, process improvement, and team leadership. I bring skills in third party risk management, strategic consulting, IT risk management, security audits, and automation, with certifications in ISO27001 Lead Auditor/Implementer and Certified in Risk and Information Systems Control (CRISC).
Do's and don'ts at each stage of the third-party management lifecycle
Contractual safeguards and governance essentials
Common third-party risk management mistakes and how to avoid them
Risk-tiered assessment frameworks for resource-constrained teams
Essential vendor vetting practices
Sponsorship Enquiries
Arron.Penman@terrapinn.com
Speaking Enquiries:
Elizabeth.Paterson@terrapinn.com
Marketing Enquiries:
Natalie.Mcclelland@terrapinn.com
Start-Up Enquiries
Joseph.Zeko@terrapinn.com