Bootcamps · Analyst / Manager Track

Third-Party Risk Management Bootcamp

Become a Third-Party Risk Analyst.

Master the full third-party risk lifecycle — intake, inherent risk, vendor assessments, evidence review, decisions and monitoring — with a portfolio of real vendor work.

8 modulesLive cohortHands-on labsCapstone + portfolio
Track
Analyst / Manager Track
Format
Three ways to take it
Next cohort
Oct 15, 2026
Also runs
Jan · Apr · Jul
Certificate
Yes, on completion
Choose how you learn

One bootcamp. Three ways to take it.

Same role-based outcome — pick the format that fits your life. Read it at your own pace with graded feedback, watch the video track, or join the live quarterly cohort.

Coming soon

Instructor-led

Watch the instructor teach on video — a guided track with self-checks, per-module interview prep and a hands-on lab.

In development

In development
Available now

Self-paced

Read the full course in the portal at your own pace — lessons, graded quizzes and assignments your instructor reviews.

Available now in the Fourth Tech Hub

Quarterly

Live cohort

Real-time sessions with the practitioner on a quarterly schedule — accountable, interactive, and capped for attention. We open these as cohorts are scheduled.

Next cohort · Oct 15, 2026

Roles this prepares you for

  • TPRM Analyst
  • Vendor Risk Analyst
  • Third-Party Risk Manager
  • Supplier Risk Analyst

Standards & references

TPRM lifecycleSOC 2 reviewISO 27001 certificate reviewInherent Risk QuestionnaireVendor Risk AssessmentOngoing monitoring

You'll build a portfolio of

  • Inherent Risk Questionnaire
  • Vendor Risk Assessment
  • Vendor assessment summary
  • Contract risk note
  • Monitoring dashboard
The curriculum

The 8 modules.

1

Third-Party Risk Fundamentals

What TPRM is, why vendor risk matters, the vendor lifecycle and stakeholders.

2

Intake & Inherent Risk

Onboarding, data classification, criticality and Inherent Risk Questionnaire tiering.

3

Vendor Risk Assessment Methodology

Assessment scope, security domains, scoring logic and gap identification.

4

Reviewing Vendor Evidence

SOC 1/2 and ISO 27001 reviews, pentests, BCDR and incident-response maturity.

5

Risk Decisions & Business Alignment

Accept, mitigate or offboard; compensating controls and exception management.

6

Contracts, Clauses & Regulatory Alignment

Security clauses, audit rights, breach terms and subprocessor expectations.

7

Ongoing Monitoring & Portfolio

Reassessment cycles, external monitoring, KPIs and dashboards.

8

TPRM Job Readiness

Analyst vs manager work, interview questions and a capstone vendor assessment.

Hands-on labs

You don't watch. You do.

Inherent Risk QuestionnaireVendor Risk AssessmentSOC review worksheetRecommendation memoMonitoring trackerVendor risk dashboard
Next cohort · Oct 15, 2026

Reserve your seat — $2,000.

Seats are limited each quarter. Secure yours, or talk to us about whether this track fits your goals.