The TPRM Tug-of-War: Trust, Tools, and the AI Tradeoff episode artwork

EPISODE · Jul 31, 2025 · 50 MIN

The TPRM Tug-of-War: Trust, Tools, and the AI Tradeoff

from GRC Uncensored

This week, the crew sits down with Henry Stanley—founder of Fabrik and engineer-turned-GRC troublemaker-to dig into the messy reality of third-party risk management (TPRM). With experience across fintech, startups, and security consulting, Henry brings a pragmatic but optimistic view of how the industry can move forward.From the limits of SOC 2 and the myth of standardization to the risks and rewards of AI-powered questionnaires, the group unpacks why TPRM is so fragmented—and why that’s not necessarily a bad thing. They also get real about AI in audits, the future role of assurance professionals, and why human connection still matters.06:30 – Why TPRM Is Fragmented by Nature09:00 – SOC 2 Isn’t Enough (And Never Was)13:30 – Does Anyone Really Trust Audit Reports?17:30 – Blacklists, Quality Checks & the SOC 2 Vibe Check20:00 – The Rise of AI in Vendor Assessments25:30 – AI Answers vs. AI Confidence28:30 – Auditing the Auditors (and Their AI)32:00 – Reasonable Assurance in an AI World35:30 – Skepticism, Trust, and Human-in-the-Loop Auditing38:00 – Does AI Kill Creativity? A Side Quest44:00 – Will TPRM Be Agent-to-Agent in the Future?Guest: Henry Stanley, Founder of Security Program.ioHosts: Troy Fine, Kendra CooleyProducer: Elliot VolkmanRuntime: ~56 minutes Hosted on Acast. See acast.com/privacy for more information.

This week, the crew sits down with Henry Stanley—founder of Fabrik and engineer-turned-GRC troublemaker-to dig into the messy reality of third-party risk management (TPRM). With experience across fintech, startups, and security consulting, Henry brings a pragmatic but optimistic view of how the industry can move forward.From the limits of SOC 2 and the myth of standardization to the risks and rewards of AI-powered questionnaires, the group unpacks why TPRM is so fragmented—and why that’s not necessarily a bad thing. They also get real about AI in audits, the future role of assurance professionals, and why human connection still matters.06:30 – Why TPRM Is Fragmented by Nature09:00 – SOC 2 Isn’t Enough (And Never Was)13:30 – Does Anyone Really Trust Audit Reports?17:30 – Blacklists, Quality Checks & the SOC 2 Vibe Check20:00 – The Rise of AI in Vendor Assessments25:30 – AI Answers vs. AI Confidence28:30 – Auditing the Auditors (and Their AI)32:00 – Reasonable Assurance in an AI World35:30 – Skepticism, Trust, and Human-in-the-Loop Auditing38:00 – Does AI Kill Creativity? A Side Quest44:00 – Will TPRM Be Agent-to-Agent in the Future?Guest: Henry Stanley, Founder of Security Program.ioHosts: Troy Fine, Kendra CooleyProducer: Elliot VolkmanRuntime: ~56 minutes Hosted on Acast. See acast.com/privacy for more information.

NOW PLAYING

The TPRM Tug-of-War: Trust, Tools, and the AI Tradeoff

0:00 50:22

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

Untethered with Lindsay Tuttle NP Lindsay Tuttle NP Lindsay Tuttle is the creator and founder of Lindsay Tuttle NP, a thriving practice helping women heal their health and lives through freeing themselves and becoming unstuck. Lindsay has close to 20 years experience working in health and wellness, and through her own journey resolving chronic illness, realized she could help others do the same.Lindsay started this podcast to be able to bring together practitioners, healers, free thinkers and the like to come together in a place to uplift one another and have radical and uncensored conversations, pulling back the veil when it comes to health and truly thriving. The goal is that you leave listening feeling refreshed, empowered, inspired, you become untethered and experience expanded freedom in your life. Woman's Day Uncensored Woman's Day Recorded inside the Woman's Day offices each week, 'Woman's Day Uncensored' goes beyond the pages to uncover even more gossip from the team that put the magazine together. Uncensored Crypto Decentralized Publishing The greatest technological transformation since the advent of the Internet is here. The blockchain promises to disrupt everything from how we work, vote, earn, and invest, to how we communicate, and play. Yet, most people are unaware of the transformation taking place on a global scale. The Uncensored Crypto podcast changes that, delivering straight talk about Bitcoin and other cryptocurrencies, Web3, the blockchain,  DeFi, NFTs and more. Host Michael Hearne interviews the disruptors at the forefront of the crypto revolution who are shaping our economic, financial, and political future. You’ll hear them chat openly about their successes, failures and wealth building strategies. With their help, you can harness the power of crypto and the blockchain to change your life and help transform the world. China Unscripted Chris Chappell From the team that brought you the satirical TV news show China Uncensored comes a...well...less scripted look at China. Chris Chappell and his team are off the teleprompter and on the mic to interview China experts, or discuss the issues of the day. And frankly, anything else they feel like discussing.

Frequently Asked Questions

How long is this episode of GRC Uncensored?

This episode is 50 minutes long.

When was this GRC Uncensored episode published?

This episode was published on July 31, 2025.

What is this episode about?

This week, the crew sits down with Henry Stanley—founder of Fabrik and engineer-turned-GRC troublemaker-to dig into the messy reality of third-party risk management (TPRM). With experience across fintech, startups, and security consulting, Henry...

Can I download this GRC Uncensored episode?

Yes, you can download this episode by clicking the download button on the episode player, or subscribe to the podcast in your preferred podcast app for automatic downloads.
URL copied to clipboard!