Risk Tide Core · Self-paced · Foundational

Third-Party Risk Management Clarity for CPAs

Most TPRM training was not built for CPAs. This course is.

CPAs are increasingly on the front lines of third-party risk: you audit it, advise on it, and are accountable for it. This focused course gives you the practical knowledge to evaluate vendor risk programs, meet regulatory expectations, and ask the right questions at every stage of the vendor lifecycle. No prior TPRM experience required.

CPAsInternal auditRisk & complianceLegal & complianceFinance & procurementBusiness stakeholders
1 NASBA-eligible CPE Shareable certificate ~1 hour · 4 modules
The course at a glance
1 hourDuration
Self-pacedFormat
1 CPENASBA eligible
$59One-time
What’s included

Everything a CPA needs to get clear on third-party risk

4 Modules

From why TPRM now lands on the CPA’s desk to how to audit a program and tell whether it actually works.

Regulatory Reality

What regulators and external stakeholders increasingly expect from a third-party risk program, and where scrutiny is growing.

The Auditor’s Mindset

Evaluate whether a TPRM program is actually working, not just whether it exists, with a structured review across risk tiers.

1 CPE Credit

NASBA-eligible CPE that meets requirements for qualifying professionals, including CPAs.

Shareable Certificate

Earn a certificate of completion you can post on LinkedIn and add to your resume.

Start Anytime

On-demand, self-paced video and text course. Start today and complete it on your schedule.

Take a look inside

See exactly what the course looks like

Before you enroll, take a quick tour of TPRM Clarity for CPAs. This is the real thing: the lesson format, how the four modules flow, and the kind of vendor risk and audit scenarios you will work through. Know the look and feel before you sign up.

A demo of TPRM Clarity for CPAs. The full course is 4 modules, about 1 hour, 1 NASBA-eligible CPE credit.

Inside the course

Four modules, one clear map of vendor risk

From why third-party risk now lands on your desk to how to audit the program that manages it. Every module and what you will be able to do.

01

Why TPRM Is Now a CPA Issue

Foundations

Why third-party risk has become a core CPA responsibility and how the auditor’s role is evolving.

  1. 01Recognize why TPRM has become a core responsibility for CPAs, not just IT or procurement teams, and explain how the auditor’s role in this space is evolving.
  2. 02Identify real-world examples of third-party risk events and understand their financial and reputational impact on organizations.
02

The TPRM Lifecycle: A CPA’s Map

Lifecycle

Every stage of the lifecycle and what audit-ready documentation looks like at each phase.

  1. 01Evaluate each stage of the TPRM lifecycle and explain what audit-ready documentation looks like at each phase.
  2. 02Assess a risk-tiering methodology to categorize vendors by risk level and identify when enhanced due diligence is required.
  3. 03Recognize the most common TPRM failures that surface during audits and understand how to detect them early.
03

The Lens Today: Where TPRM Meets Regulatory Reality

Regulation

The regulatory requirements relevant to third-party oversight and where scrutiny is growing.

  1. 01Identify select regulatory requirements relevant to third-party oversight and explain how they apply to a CPA’s role.
  2. 02Recognize areas of increasing regulatory scrutiny, including emerging risks, and what they signal for TPRM programs.
04

How Do I Audit a TPRM Program?

Assurance

The auditor’s mindset: assess whether a program is doing what it is intended to do.

  1. 01Recognize an auditor’s mindset to assess whether a TPRM program is doing what it is intended to do and what the industry expects.
  2. 02Identify how a structured vendor review across risk tiers can surface gaps in program consistency and risk-tiering decisions.
  3. 03Identify how issues and findings move from identification through escalation and resolution.
Module 1 of 4
1 CPE credit hour Awarded on completion

Your CPE hours, and how to report them

This course awards 1 CPE hour on completion, all of it self-paced, structured self-study on third-party risk. How you report the time depends on which credential you hold.

  • CPAs. Risk Tide is a NASBA-registered CPE sponsor, so this is NASBA-eligible CPE, ready to log toward your license. This is the one we sponsor directly. Requirements vary by state: check your jurisdiction.
  • ABA professional certifications. Third-party risk sits in the exam domains for CERP and CRCM in particular. Search for Risk Tide Solutions in ABA’s Certification Manager to apply the credit. ABA uses the same 50-minute credit hour as NASBA. ABA’s CE rules.
  • ISACA certifications. ISACA’s policy recognizes structured self-study with no annual limit, provided the activity is relevant to your certification’s domains. Whether this course meets that test is your call as the certificate holder. ISACA’s CPE policy.

Whichever you report to, the paperwork is the same, and it is what all three ask you to keep: a certificate of completion showing the CPE hours earned, the course, the topic, and Risk Tide Solutions as the provider.

How you report is up to you. We award the hours and give you the documentation. Whether a course qualifies under your credential, and how you log it, is determined by you and the body that issued the credential. We do not report on your behalf.

FAQ

Questions, answered

Why do CPAs need third-party risk management training?

Because vendor risk now shows up in your work whether you asked for it or not. CPAs audit third-party risk programs, advise clients who rely on vendors, and are increasingly accountable for how that risk is managed. Regulators and external stakeholders keep raising the bar, and most TPRM training was never written with a CPA’s role in mind.

Do I need prior TPRM experience?

No. The course is foundational and has no prerequisites. It starts with why TPRM matters to CPAs and builds up to how to audit a program, in plain language.

How long is the course, and what is the format?

About one hour across four self-paced online modules, delivered as video and text. Start anytime and complete it on your schedule.

Do I earn CPE credit?

Yes. The course awards 1 NASBA-eligible CPE credit, meeting CPE requirements for qualifying professionals, including CPAs.

Who is this course for?

Certified Public Accountants first, and anyone who works alongside them: internal auditors, risk and compliance professionals, legal and compliance teams, finance and procurement, and business stakeholders who own vendor relationships.

Do I get a certificate?

Yes. You earn a shareable certificate of completion you can post on LinkedIn and add to your resume.

Garit Gemeinhardt, Co-Founder and Head of Learning Experiences at Risk Tide
Meet your course creator

Garit Gemeinhardt

Co-Founder & Head of Learning Experiences

Garit brings more than 15 years of industry experience into every training. He combines real-world insight with practical application to create engaging sessions that challenge perspectives and prepare professionals to lead with confidence.

“Most risk training teaches you what risk is. We teach you what to do with it.”

More about the Risk Tide team
Enroll today

Ready to get clear on third-party risk?

Get up to speed on the risk regulators keep raising, and earn CPE doing it. One hour, 1 NASBA-eligible CPE credit, and a certificate for your resume, for $59.

Enroll now, $59

Rolling this out to a team or firm? Ask about volume pricing and enterprise access. Book a time with our team →