
Third-Party Risk Management (TPRM) has historically been a tedious, 200-page paper exercise that felt like being catapulted back to 1979. But AI is changing that.In this episode, Ashish sits down with Igor Andriushchenko (CISO at Lovable) and Jasper Mills (CEO of Ethira) to discuss the collision of TPRM and AI.We dive into the hidden risks of Shadow AI, exploring the chaos that ensues when non-technical teams spin up unauthorized AI tools without security oversight. Jasper and Igor explain why the future of vendor risk involves treating AI agents like a contracted workforce, managing their lifecycles, and preparing for the 2027 era of "agent-to-agent" negotiations where humans are entirely removed from the loop.We also cover the impact of DORA (Digital Operational Resilience Act) regulations, the Build vs. Buy debate for AI security tooling, and how to use autonomous agents to finally automate tedious vendor questionnaires.Guest Socials - Igor's Linkedin + Jasper LinkedinPodcast Twitter - @CloudSecPod If you want to watch videos of this LIVE STREAMED episode and past episodes - Check out our other Cloud Security Social Channels:-Cloud Security Podcast- Youtube- Cloud Security Newsletter If you are interested in AI Security, you can check out our sister podcast - AI Security PodcastQuestions asked:(00:00) Introduction(02:00) Jasper and Igor's Backgrounds (Athira and Lovable) (04:00) Why Traditional Third-Party Risk Management is Abysmal (06:20) DORA Regulations and the Collision of AI and Compliance (11:30) Using AI to Automate Vendor Assessments and Questionnaires (16:30) The Build vs. Buy Debate for AI TPRM Tools (22:30) Shadow AI: "Giving a Kindergarten a Nuclear Bomb" (25:30) Using AI Agents for Automated Vendor Discovery and Inventory (28:30) 2027: The Future of Agent-to-Agent Negotiations (30:40) Treating AI Agents Like a Contracted Workforce (34:10) Enforcing Contractual Accountability through AI Guardrails
Podzilla Summary coming soon
Sign up to get notified when the full AI-powered summary is ready.
Free forever for up to 3 podcasts. No credit card required.

The 4 Pillars of AI SOC:From Threat Hunting to Vibe Hunting

Native Cloud Firewalls Falling Short in a Multicloud World

How Claude Mythos Changes Vulnerability Management: From CVSS to Exploitability

AISPM Isn't Enough: How to Apply Zero Trust to AI Agents
Free AI-powered recaps of Cloud Security Podcast and your other favorite podcasts, delivered to your inbox.
Free forever for up to 3 podcasts. No credit card required.