
On demand webinars
TPRM in motion: Governance, ownership, and execution
Move beyond theory to operationalize your TPRM policy. Discover how to assign clear ownership and choose the right sourcing model for your organization.

Description
This webcast provides a structured and practical view on TPRM Governance and Controls, focusing on how organizations can establish clear ownership, enable effective oversight, and implement robust control mechanisms across the entire third‑party lifecycle. We will explore how governance frameworks translate into operating models and day‑to‑day controls, and why alignment between governance, operating model, and control execution is essential for control effectiveness.
Participants will gain insights into leading governance frameworks, understand how policies are operationalized through controls, and learn how to design, implement, and monitor TPRM controls in a risk‑based and efficient way. The session also addresses key considerations such as organizational setup and the strategic decision between in‑house, external, or hybrid models to support governance and control objectives.
About the speakers

Netta Johanna Nyholm is EY Europe West Leader for Third‑Party Risk Management, bringing over 20 years of experience in consulting across industries.
Her experience spans the development and implementation of regulatory‑compliant policies and guidelines, the establishment of structured third‑party and outsourcing frameworks, and the execution of third‑party audits and assurance activities.
She has supported clients in building and operationalizing end‑to‑end Contract Lifecycle Management solutions, including contract risk services and the implementation of mitigating and monitoring measures.
Netta has extensive global experience in the setup and testing of internal control systems, process re‑engineering initiatives, and the establishment of scalable Centers of Excellence and managed service models operating across APAC, EMEIA, and the Americas.

Amélie Balland is part of EY Germany’s Consulting practice, based in Cologne, with a focus on Third‑Party Risk Management (TPRM).
She brings a young professional perspective to TPRaaS (Third Party Risk as a Service) ‑based operating models, with a particular focus on how governance structures, controls and standardized processes can be designed pragmatically and effectively to support scalable third‑party risk oversight.
Related resources


Strengthening IT and cyber resilience for modern enterprises

Modernising control self‑assessment in EMEA: From manual burden to intelligent assurance
Culture eats strategy for breakfast: The internal audit “so what?”
Strengthening IT and cyber resilience for modern enterprises
Modernising control self‑assessment in EMEA: From manual burden to intelligent assurance
Discover why industry leaders choose Optro
SCHEDULE A DEMO
