Beyond Vendor Risk: Real-Time GRC, AI, and Protecting App User Data – Jadee Hanson – CSP #221
CISO Jadee Hanson shares how Vanta “drinks its own champagne,” running on NIST CSF with quarterly baseline reviews and using Vanta’s GRC platform to turn every release into live UAT for privacy, governance, and compliance. We rethink third-party management—why point-in-time risk scores are fading and how AI drives continuous monitoring and outcome-based assurance. Bottom line: don’t just audit—instrument your controls and prove trust in real time.
Jadee leads Vanta’s security program, overseeing Security Engineering, Security Operations, Information Technology, and Governance, Risk, and Compliance (GRC). With over 20 years of experience, Jadee is not only protecting Vanta’s business and shaping the product roadmap, she’s also influencing the future of GRC and redefining how modern enterprises earn and prove trust in the digital age of AI.






