| Topic: |
Third Party Assurance - current mechanisms and future challenges - Paul Felstead (KPMG)
Insights
into how assurance and management mechanisms over third party services are
being used to manage risk and as part of the IT, security and governance
framework, as well as the purpose and value of various types of third party
assurance reports, such as certification, agreed upon procedures, and control
assurance frameworks (eg. SAS 70, ITF, AAF).
We will also discuss the challenges of combining assurance activities to
provide an optimised level of an assurance.
Paul Felstead is a Principal Advisor
within the Financial Services IT Advisory function and has been with KPMG since
January 2008. Prior to re-joining KPMG,
he worked at Experian Limited in Nottingham
for 18 months within the Corporate Risk Function. Paul has a National Service Line Leadership
role for IT Assurance Services in the UK,
and within Europe. This focuses mainly on SAS 70 and other
similar assurance engagements. Paul
holds the ISACA CISM and CGEIT designations.
Identifying and managing third party risk - Elaine Carr (Barclays Bank plc)
The purpose of the talk is to give an insight into what is third party risk, why it is important for companies to recognise this risk and what are some of the key controls to manage and mitigate exposure to and dependency on third parties.
Elaine Carr is currently the Head of Audit for Third Parties at Barclays Bank PLC. She has over twenty years audit experience working for banks, life and pensions companies and outsource service providers to the finance sector. During the last 8 years Elaine has specifically focused on auditing third party risk and significant on shore and offshore service providers.
|