
Gregory C. Rasner, CISSP, CIPM, CCNA, ITIL, is the founder of Third Party Threat Hunting and former SVP of Cybersecurity Third-Party Risk at Truist, where he led a 20+ person team. He has 25+ years in IT and cybersecurity, has authored four books on third-party risk, AI risk, and Zero Trust, and created the TPCRA certification with the Third Party Risk Association. He is the founder and CEO of Third Party Threat Hunting, and the author of four books on cybersecurity, third-party risk, Zero Trust, and AI risk management: Cybersecurity and Third-Party Risk: Third-Party Threat Hunting(Wiley, 2021), Zero Trust and Third-Party Risk: Reduce the Blast Radius (Wiley, 2023), Privileged Access Management: Strategies for Zero Trust in the Enterprise (Apress, 2025, co-authored with Maria Rasner), and AI & Third-Party Risk: Strategies for Success with Your AI-Enabled Vendors and Partners (Apress, 2026). A fifth book, GRC and AI: How to Tame the Risk, co-authored with Dr. Richard Chingobme, is forthcoming from Apress in early 2027.
Our training modules are directly adapted from our published research and real-world threat hunting engagements. Designed for practitioners who need practical skills, not theoretical overviews

Building a 4-Agent Autonomous Defense Architecture to Neutralize Zero-Day Vulnerabilities in Real-Time
Welcome to the Security Agent Mesh (SAM) Cybersecurity Architecture Masterclass. Modern cybersecurity environments are undergoing a paradigm shift. Traditional vendor risk management, periodic security audits, and manual vulnerability response teams are increasingly incapable of keeping pace with machine-speed exploits and continuously changing cloud infrastructure.
This four hour certificate course is based upon my latest book and has two hours of hands-on workshop to ensure attendees learn how to identify and manage AI risk in their vendors and solutions.
As organizations increasingly rely on cloud-based Software-as-a-Service (SaaS) solutions, understanding and mitigating associated risks is critical. This virtual training provides an in-depth exploration of key security considerations when evaluating and managing SaaS applications.
This course is four hours of hands-on learning and provides for a certificate at the end with 4 CPEs.

Sanctions compliance and Office of Foreign Assets Control (OFAC) enforcement are no longer just concerns for financial institutions. Modern supply chains, cloud software vendors, sub-processors, and international partners face intense regulatory scrutiny from the U.S. Department of the Treasury, Department of Justice (DOJ), and international regulatory bodies.
Below are descriptions and links (click on the pictures) to training that we offer through Third Party Risk Association
The TPCRA Certification is a specialized qualification that validates expertise in assessing third-party cybersecurity controls, managing cyber risk assessments, and evidencing proficiency in cybersecurity assessment techniques, as well as establishing credibility for third-party risk management professionals.
As organizations increasingly rely on cloud-based Software-as-a-Service (SaaS) solutions, understanding and mitigating associated risks is critical. This virtual training provides an in-depth exploration of key security considerations when evaluating and managing SaaS applications.
This certificate course is 4 hours of training on how to best identify and manage AI risk in your vendors and their solutions. This is based upon my latest book.
Copyright © 2026 Third Party Threat Hunting - All Rights Reserved.
We use cookies to analyze website traffic and optimize your website experience. By accepting our use of cookies, your data will be aggregated with all other user data.