

Course Introduction
In today’s interconnected financial ecosystem, credit unions are increasingly reliant on third-party vendors to deliver critical services, support core operations, and enhance member experiences. While these partnerships offer strategic advantages, they also expose institutions to a range of risks from cybersecurity breaches and regulatory violations to operational disruptions and reputational damage. The Credit Union Vendor Risk Management course is designed to equip credit union professionals with the knowledge, tools, and frameworks needed to proactively identify, assess, manage, and mitigate vendor-related risks throughout the entire vendor lifecycle.
This intensive and practical course covers everything from establishing a robust vendor risk governance framework to handling vendor due diligence, contract negotiation, cybersecurity risk assessment, ongoing monitoring, and incident response. It draws on real-world case studies, regulatory guidance (such as from NCUA and FFIEC), and emerging risk trends to prepare participants to lead or support a strong vendor risk management (VRM) function.
Who Should Attend
This program is ideal for professionals across credit unions who are responsible for, or involved in, third-party oversight and risk management. It is particularly suited for:
- Vendor Management Officers & Procurement Teams
- Risk Management & Compliance Officers
- Internal Auditors & Assurance Teams
- IT and Cybersecurity Professionals
- Senior Management & Executive Leadership
No prior experience in vendor risk is required, although a basic understanding of risk and compliance functions will be beneficial.


Who Should Attend
This program is ideal for professionals across credit unions who are responsible for, or involved in, third-party oversight and risk management. It is particularly suited for:
- Vendor Management Officers & Procurement Teams
- Risk Management & Compliance Officers
- Internal Auditors & Assurance Teams
- IT and Cybersecurity Professionals
- Senior Management & Executive Leadership
No prior experience in vendor risk is required, although a basic understanding of risk and compliance functions will be beneficial.

Why Attend
Vendor-related failures can have significant consequences for credit unions—including regulatory penalties, financial loss, reputational damage, and member dissatisfaction. With regulatory bodies placing increased scrutiny on third-party relationships, it’s more critical than ever for credit unions to build mature and defensible vendor risk management programs.
By attending this course, you will gain practical, hands-on insights into building and managing an end-to-end vendor risk framework that aligns with regulatory standards and industry best practices. You’ll learn how to classify vendors based on risk, conduct thorough due diligence, negotiate strong contracts, monitor performance, and manage vendor-related incidents effectively. You’ll also explore how to integrate cybersecurity and ESG considerations into your vendor management approach, and how to leverage technology to streamline oversight.
Webinar Outline
Module 1: Introduction to Vendor Risk in Credit Unions
- Define vendor risk and its relevance to credit unions
- Recognize types of vendor risk
- Regulatory background: NCUA, FFIEC, OCC
Module 2: Governance & Policy Framework
- Design vendor risk policies and roles
- Establish oversight structures and escalation paths
Module 3: Vendor Risk Lifecycle: From Planning to Offboarding
- Planning, due diligence, contracting, monitoring, offboarding
- Tools: risk scoring matrix, contract checklists, audit logs
Module 4: Third-Party Cyber & Data Security Risk
- Cybersecurity threats from vendors
- Key controls: encryption, SOC 2, incident response, data protection
Module 5: Regulatory Compliance & Reporting
- Regulatory frameworks: NCUA, GLBA, FFIEC
- Reporting: risk dashboards, scorecards, board reports
Module 6: Vendor Risk Incident Management & Response
- Incident classification, response plans, communication, remediation
Module 7: Advanced Topics & Emerging Risks
- ESG, AI model risk, geopolitical & concentration risk
- Automation tools and analytics in VRM
Module 8: Capstone Exercise & Final Assessment
- Hands-on scenario with 4 sample vendors
- Deliverables: risk matrix, contract clauses, monitoring plan, board report
Learning Outcomes
Participants will:
- Understand and implement an end-to-end vendor risk framework
- Identify, assess, and prioritize vendor risks
- Conduct due diligence, negotiate contracts, and monitor performance
- Respond to vendor-related incidents effectively
- Align vendor oversight with compliance and audit requirements
- Integrate cybersecurity and emerging risk factors into VRM strategy
Tools & Resources
- Vendor Risk Assessment Templates
- Due Diligence Questionnaires
- SLA & Contract Clause Libraries
- Vendor Monitoring Dashboards
- Incident Response Playbooks
- Regulatory Guidelines & Checklists
Webinar Details
Dates & Times:
Tuesday, 5th August 2025
12:00 pm – 2:00 pm EST
St. Kitts and Nevis Time
Webinar Fees:
FREE
REGISTER
We have proudly worked with



































