Her Story
About Heather
Heather Kadavy is a recognized leader in Third-Party Risk Management (TPRM) with nearly 35 years of experience across financial services, enterprise risk, cybersecurity, and regulatory compliance. As Director of Membership Success at the Third Party Risk Association (TPRA), she plays a pivotal role in advancing the global TPRM community—bringing together practitioners, providers, and thought leaders to strengthen the broader governance, risk, and compliance ecosystem.
Throughout her career, Heather has built and led enterprise-wide risk programs, overseeing complex third-party portfolios and driving meaningful improvements in vendor governance, due diligence, and resiliency. Beyond her technical expertise, she is widely known as a trusted advisor, educator, and connector—someone who elevates others while shaping the future of the profession.
Heather’s approach is grounded in the belief that strong relationships are at the heart of effective risk management. She combines deep industry knowledge with authenticity, collaboration, and a genuine passion for helping others grow. Through her work, she continues to influence the next generation of risk leaders and foster a more connected, resilient TPRM community.
Her Interview
Ten minutes with Heather
01What do you attribute your success to?
I attribute my success to a combination of strong values, meaningful relationships, and a commitment to continuous growth. The foundation instilled by my parents—centered on integrity and a strong work ethic—has guided me throughout my career. I’ve also been fortunate to be surrounded by supportive colleagues and a network that has both challenged and encouraged me along the way.
Equally important has been my perspective on challenges. I’ve consistently approached them as opportunities to create solutions and drive progress, rather than simply identify problems. That mindset, combined with a strong personal drive, has fueled my commitment to ongoing learning and professional development, allowing me to grow alongside an ever-evolving industry.
02What’s the best career advice you’ve ever received?
The best advice I’ve received is to never become too comfortable with where you are today—always strive to make tomorrow better. That mindset has stayed with me throughout my career. I’ve also learned not to let doubt from others derail me. If you are focused on making people better, improving processes, and driving stronger solutions, you are inherently growing yourself as well.
Another piece of advice that has deeply influenced me—something my dad often said—is that you can learn something in every room you enter, if you’re open to it. That perspective has shaped how I show up as a leader and a professional: staying curious, valuing different viewpoints, and continuously learning from those around me.
03What advice would you give to young women entering your industry?
My advice to young women entering this industry is to stay confident in your voice and your perspective, even when it feels like others may not immediately see your value. Trust that you bring something important to the table, and don’t be afraid to contribute early and often.
Be intentional about your growth—seek out mentors, stay curious, and never stop learning. Some of the most meaningful lessons will come from unexpected places, so remain open to every room you enter and every conversation you have.
Equally important, focus on being part of the solution. Don’t just identify challenges—help build better ones. That mindset will set you apart and build credibility quickly.
Finally, surround yourself with people who challenge and support you. Your network matters, and the relationships you build will shape not only your career, but your confidence and trajectory as well.
04What are the biggest challenges or opportunities in your field right now?
The biggest challenges in Third-Party Risk Management today stem from the increasing complexity and interconnectedness of risk. Organizations are no longer managing isolated vendor relationships—they are managing deeply embedded ecosystems where cyber risk, regulatory compliance, operational resilience, and supply chain dependencies are all converging into a single, continuous risk landscape.
One of the most significant challenges is keeping pace with the speed of change. Regulatory expectations are expanding and becoming more fragmented across jurisdictions, while cyber threats continue to evolve in sophistication and scale. At the same time, organizations are being asked to provide greater transparency, real-time oversight, and stronger assurance over increasingly complex third-party networks.
Equally important is the opportunity this creates. We are at a point where TPRM is shifting from a compliance-driven function to a strategic enabler of resilience and trust. The integration of AI, automation, and better data practices presents a real opportunity to move from static, point-in-time assessments to more continuous, intelligence-driven risk management.
For me, the opportunity is clear: organizations that invest in stronger collaboration across functions, improve data quality, and truly integrate risk disciplines will not only manage risk more effectively—they will be better positioned to operate with confidence in an increasingly uncertain environment.
05What values are most important to you in your work and personal life?
The values most important to me—both professionally and personally—start with integrity and authenticity. I believe trust is earned through consistency between what you say and what you do, and that principle has guided every stage of my career.
Equally important is a commitment to continuous learning and growth. I’ve always believed you can learn something from every experience and every person you encounter, as long as you remain open to it. That mindset has helped me stay adaptable and continue evolving in a constantly changing industry.
Collaboration and respect for others are also core to how I operate. I value building meaningful relationships and creating environments where people feel heard, supported, and empowered to contribute.
Finally, I place a strong value on resilience and purpose—choosing to focus on solutions, pushing through challenges, and striving to leave things better than I found them, whether that’s a process, a team, or a community.
Keep Exploring
More Influential Women · Nebraska
Join Influential Women and start making an impact. Register now.