10:40 AM Panel Discussion: The Compliance Labyrinth Managing Third-Party Risk in an Age of Regulatory Overload
Catherine de Joya Urtola, CAMS, SVP and Chief Compliance Officer, Bank of China (Hong Kong) Limited - Manila Branch
Kristoperson (Tops) Laguatan, Head - IT Risk Management Section / Deputy Data Privacy Office, Bank of Makati
John Patrick Lita, Founder, Unit 1870
Bram Ketting, Vice President of Business & Product Strategy, 3rdRisk
In today’s hyper-connected ecosystem, your organization’s resilience is inextricably linked to your vendors’ security and compliance postures. Yet, navigating a maze of evolving local and global regulations—from the Data Privacy Act and BSP circulars to GDPR and sector-specific mandates—makes managing third-party risk exponentially complex. This panel brings together regulators, CROs, CISOs, and legal experts to cut through the noise and provide a strategic roadmap for building a compliant, secure, and agile partner network
* Learn how to consolidate overlapping regulations into a single, adaptable control framework and prioritize third-party risks based on business criticality and data sensitivity.
* Discover essential clauses for vendor contracts, effective cross-departmental workflows (Legal, Procurement, Security), and how to leverage technology for continuous compliance monitoring and evidence collection.
* Gain clarity on where liability falls during a third-party breach, what evidence demonstrates "due diligence," and how to foster a collaborative—not just punitive—relationship with oversight bodies.