Upcoming Events . . .

Latest Pontifications & Thoughts . . .

  • Effective Risk Management in Context of the Pandemic

    Effective Risk Management in Context of the Pandemic

    The COVID-19 pandemic has caught a lot of organizations by surprise. But, should it have? We have had pandemics in the past—history teaches us this over and over. The World… Continue reading Effective Risk Management in Context of the Pandemic

  • GRC Supper Club: Operational Resiliency and the Interconnectedness of Risk

    GRC Supper Club: Operational Resiliency and the Interconnectedness of Risk

    The past two months have been a crazy whirlwind of webinars, phone calls, and video meetings. Organizations the world over have been asking for calls on how to respond to… Continue reading GRC Supper Club: Operational Resiliency and the Interconnectedness of Risk

  • Delivering 360° Contextual Awareness of Your GRC Program

    Delivering 360° Contextual Awareness of Your GRC Program

    Governance, risk management, and compliance — what we refer to collectively as GRC — is the capability to reliably achieve objectives [GOVERNANCE], address uncertainty [RISK MANAGEMENT], and act with integrity… Continue reading Delivering 360° Contextual Awareness of Your GRC Program

  • Why Third-Party 360° Situational Risk Awareness is Needed Now More Than Ever

    Why Third-Party 360° Situational Risk Awareness is Needed Now More Than Ever

    I am a James Bond fan and eagerly anticipate the next James Bond film, “No Time to Die.” Unfortunately, because of the global crisis we all now face, we have to wait until November… Continue reading Why Third-Party 360° Situational Risk Awareness is Needed Now More Than Ever

  • Centralizing Compliance and Ethics Communications in a Time of Crisis

    Centralizing Compliance and Ethics Communications in a Time of Crisis

    In a time of crisis, like what we face with the global pandemic, centralizing compliance and ethics communications and reporting is critical to streamline interactions, maintain corporate culture and integrity,… Continue reading Centralizing Compliance and Ethics Communications in a Time of Crisis

  • Being Unprepared for the Crisis Does Not Make it a Black Swan

    Being Unprepared for the Crisis Does Not Make it a Black Swan

    I may be going out on a limb and stepping on a lot of toes right now by frustrating some careers and reputations of risk managers. Simply put, this global… Continue reading Being Unprepared for the Crisis Does Not Make it a Black Swan

  • Communicating Policies in a Time of Crisis

    Communicating Policies in a Time of Crisis

    Policies are critical documents in organizations. They define how business is to be conducted as they establish boundaries and expectations for individual and process behavior. Policies enable and intersect all… Continue reading Communicating Policies in a Time of Crisis

  • Keep Calm & GRC On!

    Keep Calm & GRC On!

    These are crazy and uncertain times, but this does not mean governance, risk management, and compliance (GRC) comes to a halt in organizations. It is the opposite, this is the… Continue reading Keep Calm & GRC On!

  • Forrester GRC Wave = Tsunami of Confusion

    Forrester GRC Wave = Tsunami of Confusion

    I feel that I am in an alternate reality. This cannot possibly be the real world. Are we living in a DC multi-verse where there are different GRC technology realities… Continue reading Forrester GRC Wave = Tsunami of Confusion

  • 360° Control Automation, Monitoring & Enforcement

    360° Control Automation, Monitoring & Enforcement

    Business today is changing minute-by-minute and second-by-second. Processes and technology and their configurations are changing. Employees and their access into systems is changing as new employees are hired, others change roles… Continue reading 360° Control Automation, Monitoring & Enforcement

  • Managing Risk in Dynamic & Distributed Business

    Managing Risk in Dynamic & Distributed Business

    Organizations are dynamic and distributed. They are changing minute-by-minute and second-by-second. That is challenging many risk management programs, but the complexity of distributed business further chaos to the organization and… Continue reading Managing Risk in Dynamic & Distributed Business

  • 7 Habits of a Highly Effective Privacy Compliance Program

    7 Habits of a Highly Effective Privacy Compliance Program

    Privacy has become a front-and-center compliance risk in organizations around the world. GDPR (Europe), CCPA (California), APP (Australia), PIPEDA (Canada), PDO (Hong Kong), PIPA (Japan), ECTA (South Africa)…the world of… Continue reading 7 Habits of a Highly Effective Privacy Compliance Program