Upcoming Events . . .

Latest Pontifications & Thoughts . . .

  • Benefits of a Policy & Training Management Strategy and Architecture

    Benefits of a Policy & Training Management Strategy and Architecture

    The organization requires a policy and training management architecture that is context-driven and adaptable to a dynamic and changing environment. Compared to the ad hoc method in use in most… Continue reading Benefits of a Policy & Training Management Strategy and Architecture

  • Policy Management Information & Technology Architecture

    Policy Management Information & Technology Architecture

    Policy & Training Management Information Architecture The policy and training management information architecture supports the process architecture and overall policy and training management strategy. With processes defined and structured in the… Continue reading Policy Management Information & Technology Architecture

  • Compliance Automation: The Role of Technology in Today’s Dynamic Organization

    Compliance Automation: The Role of Technology in Today’s Dynamic Organization

    Compliance is not easy. Organizations across industries have global clients, partners, and business operations. Adding to the complexity of global business, today’s organization is dynamic and constantly changing. The modern… Continue reading Compliance Automation: The Role of Technology in Today’s Dynamic Organization

  • GRC 20/20’s Effective Policy Management Process Lifecycle

    GRC 20/20’s Effective Policy Management Process Lifecycle

    The policy and training management strategy and policy is supported and made operational through the policy and training management architecture.  The organization requires complete situational and holistic awareness of policies… Continue reading GRC 20/20’s Effective Policy Management Process Lifecycle

  • Uncontrolled Spreadsheets, Documents, and Emails, Oh My!

    Uncontrolled Spreadsheets, Documents, and Emails, Oh My!

    Business is complex. Exponential change in regulations, globalization, distributed operations, processes, competitive velocity, business relationships, and legal matters encumbers organizations of all sizes across industries. Like battling the multi-headed Hydra… Continue reading Uncontrolled Spreadsheets, Documents, and Emails, Oh My!

  • Developing a Policy Management Strategy

    Developing a Policy Management Strategy

    Organizations need a coordinated cross-department strategy for managing policies and training programs across the enterprise.  The goal is to develop a common framework and approach so that policies and training… Continue reading Developing a Policy Management Strategy

  • Policy & Training Management Demands Attention

    Policy & Training Management Demands Attention

    The Foundational Role of Policies in GRC Strategies Policies are critical to the organization as they establish boundaries of behavior for individuals, processes, relationships, and transactions. Starting at the policy… Continue reading Policy & Training Management Demands Attention

  • Developing a Vendor Risk Management Strategy – Info/CyberSecurity Perspective

    Developing a Vendor Risk Management Strategy – Info/CyberSecurity Perspective

    Organizations are porous: the modern organization is not defined by brick and mortar walls but is a complex web of business relationships. These relationships span vendors, suppliers, outsourcers, service providers,… Continue reading Developing a Vendor Risk Management Strategy – Info/CyberSecurity Perspective

  • Considerations and Lessons Learned from GRC RFPs

    Considerations and Lessons Learned from GRC RFPs

    The GRC technology market landscape is broad with over 800 solution providers across seventeen segments of GRC (see bottom of this post for a breakout of GRC segments). Approximately seventy… Continue reading Considerations and Lessons Learned from GRC RFPs

  • Increasing Exposure of Third Party Risks 

    Increasing Exposure of Third Party Risks 

    The Modern Organization is an Interconnected Mess of Relationships Brick and mortar business is a thing of the past: physical buildings and conventional employees no longer define an organization. The… Continue reading Increasing Exposure of Third Party Risks 

  • GRC in Uncertain Times: 2016 and into 2017

    GRC in Uncertain Times: 2016 and into 2017

    In the past month there have been a lot of posts, articles, and discussion on the impact of Trump’s presidency on the GRC market, particularly compliance. Some fear that the need… Continue reading GRC in Uncertain Times: 2016 and into 2017

  • How to Identify UBOs in an Unpredictable World

    How to Identify UBOs in an Unpredictable World

    Business operates in a world of chaos, where relationship risk is ever present. What’s the secret to understanding and identifying ultimate beneficial owners? The modern organization is an interconnected web… Continue reading How to Identify UBOs in an Unpredictable World