The FAIR Institute Blog

Coming Soon: Learn from these 10 FAIRCON25 Videos

Written by Jeff B. Copeland | Nov 20, 2025 9:43:17 PM

Image: Tony Martin-Vegue speaking at FAIRCON25

The 10th Anniversary FAIR Conference 2025 has wrapped but the videos of conference sessions will soon start to drop on the FAIR Institute site Resources Page with hours of exclusive insights and tips from the world’s best risk managers and risk-aware business leaders. 

It’s a massive learning experience. Here are 10 samples:

1. Cutting Through the Noise: Applying Cyber Risk Quantification Across Security GRC

Michael Prieur, Senior Director, Security GRC, Centene

Often a first task for a new quantitative risk management program, Michael gives a step by step guide for cleaning up a GRC or risk register with FAIR. 

2.  Managing Vendor Risk in an Interconnected World

Harsha Reddy, Head of IT Security, Veterinary Emergency Group (VEG)

Presents a sophisticated approach to tiering vendors for risk.

Alexander Antukh at FAIRCON25

3.  Critical Equation: TPRM + OT

Alexander Antukh, CISO, AboitizPower

Gaston Pumar, Global Head of Security Governance, AboitizPower

Unusual cross discipline approach makes a rigorous application of FAIR to determine ALE. 

 

4.  Securing Identities, Securing the Enterprise: The Power of Identity Governance

Valentin Ortiz Ferretiz, Cybersecurity Operations Manager, Peloton

“Identity is the new perimeter. Measurable action is the only way forward.” How to achieve visibility with automation and continuous validation 

5.  Operationalizing Decision Support in the Age of AI

Zach Cossairt, Fmr. Integrated Risk Program Senior Manager; Senior Director, Risk Advisory, SAFE

Tony Martin-Vegue, Risk Management Researcher & Author

Timely advice for implementing AI, including balancing human vs machine work. 

 

6.  From Checkbox to Chess Move: Building a Risk-Driven GRC Program  

Adrienne Allen, Fmr. Senior Director, Technology Risk & Controls, Coinbase

Avoiding common pitfalls and blind spots in GRC management.

7.  From Noise to Action: Managing IT Operational Risk with a Security Risk Operations Center

A new approach to structure your team to make risk analysis “clear, connected, actionable.”

8.  The Six Levers That Actually Move Risk (Hint: It's Not Just Controls)

Tony Martin-Vegue, Risk Management Researcher & Author

Out-of-the-box thinking on risk factors to capture the full range of your loss exposure.

9.  All is FAIR in Love and War - Leveraging CRQ for Tactical Decision Support

Michelle Griffith, VP, Business Security & GRC, IHG

Jimmy Lummis, Director of Information Security, IHG

Some breakthrough practices here, from integrating FAIR with CTEM to running daily risk reviews. 

Laura Voicu at FAIRCON25

 

10.  The $ Value of Faster Vulnerability Remediation (How Much Risk Reduction Does Faster Patching Buy You?)

Laura Voicu, Security Consultant & Independent Researcher, Apropos Security

Finally, a solid link between traditional patch management metrics and cyber risk quantification.  

Read more of our coverage of the 2025 FAIR Conference