This session explores the growing challenge of managing third-party risk in healthcare—where every vendor can become an open attack vector. Steve Ryan, senior manager and head of healthcare services at BARR Advisory, shares how to assess and tier vendor risk, conduct effective onboarding reviews, and build ongoing monitoring strategies. With a focus on industry frameworks like HITRUST, HIPAA, and SOC 2, this session offers practical guidance on building cyber resilience and developing incident response plans tailored to vendor-related breaches.