PYA's Katie Croswell and Erin Walker discuss healthcare third-party risk management, including vendor inventories, risk tiering, due diligence, ongoing monitoring, offboarding, governance, and board oversight. Healthcare organizations rely on third parties across clinical, operational, financial, technology, and administrative functions. In this episode of PYA's Healthcare Regulatory Roundup, Katie Croswell and Erin Walker discuss how organizations can build a risk-based third-party risk management program that extends from vendor inventory and due diligence through ongoing monitoring, offboarding, governance, and board oversight. The discussion covers vendor risk classification, cybersecurity and compliance diligence, operational and financial considerations, offshoring, cross-functional governance, incident-response testing, and the information leadership and boards should receive to evaluate whether TPRM is functioning effectively. Webinar presented September 16, 2026. Regulatory guidance, cybersecurity threats, and compliance expectations discussed in the session may change over time. Webinar page, key takeaways, action items, FAQ, slides, and transcript: https://www.pyapc.com/insights/hcrr-118-webinar-managing-third-party-risk-compliance-and-cybersecurity.