Speaker Profile
Kevin R. Thompson
Kevin R. Thompson is an experienced GRC (Governance, Risk Management, and Compliance) and HITRUST Consulting Specialist with over a decade of expertise in enhancing organizations' cybersecurity and compliance frameworks. With certifications including CCSFP (Certified HITRUST CSF Practitioner) and CHSPA (Certified HIPAA Security Professional), Kevin has a proven track record of leading high-impact projects across various regulatory landscapes such as HIPAA, SOC, FEDRAMP, PCI, GDPR, and NIST.
Kevin's career spans roles as a vCISO Support Manager at Sunstone Secure, where he directed comprehensive cybersecurity initiatives, and as a GRC/HITRUST Manager at Cognizant, where he oversaw HITRUST certification and compliance projects. His proficiency in leveraging AI tools like Google Gemini and ChatGPT has empowered him to craft robust policies, training materials, and KPI presentations that align regulatory requirements with business objectives.
With strong skills in risk management, policy development, and audit processes, Kevin brings a wealth of experience in corporate governance, incident response, and data privacy. His deep understanding of cybersecurity frameworks, combined with his ability to drive operational efficiency and mitigate risks, makes him an expert in delivering impactful training and consultancy in governance and compliance.
Certifications:
• Certified HITRUST CSF Practitioner (CCSFP)
• Certified HIPAA Security Professional Accelerated (CHSPA)
Core Competencies:
• Regulatory Compliance & Risk Management
• Cybersecurity and Data Privacy
• Policy Development & Corporate Governance
• Incident Response & Audit Processes

Kevin R. Thompson
November 11 2025
12 : 00 PM EST
90 Minutes
Third-Party Risk Management - Managing risks associated with third-party vendors and partners
Third-Party Risk Management – OverviewThird-Party Risk Management (TPRM) is the process of identifying, assessing, and mitigating risks associated with vendors, suppliers, and business partners. As organizations increasingly rely on third parties for critical operations, managing risks related to data security, compliance, and operational resilience is essential.Areas Covered Risk As..

Kevin R. Thompson
December 04 2025
12 : 00 PM EST
90 Minutes
HIPAA/Security Awareness Training (Onboarding and Annual)
HIPAA/Security Awareness Training – OverviewHIPAA/Security Awareness Training ensures that employees understand how to protect sensitive patient health information (PHI/ePHI) and comply with HIPAA regulations. This training is required for onboarding new employees and conducted annually to reinforce privacy, security, and breach prevention best practices.Areas Covered HIPAA Compliance Requirements – Privacy..

Kevin R. Thompson
February 17 2026
01 : 00 PM EST
90 Minutes
Business Continuity and Disaster Recovery Planning - Techniques and strategies for ensuring business continuity and disaster recovery in compliance with regulations
Business Continuity and Disaster Recovery Planning – OverviewBusiness Continuity (BC) and Disaster Recovery (DR) planning are essential for ensuring that organizations can sustain operations and recover quickly from disruptions such as cyberattacks, natural disasters, or system failures. BC focuses on maintaining critical business functions during a crisis, while DR emphasizes restoring IT infrastructure, d..