Upcoming Events . . .

Latest Pontifications & Thoughts . . .

  • 11 – Advancing GRC analytics, SAP's HANA Analytics Foundation for SAP GRC Solutions

    The 2013 GRC Technology Innovator awards was filled with competition.  The number of submissions more than doubled over 2012.  With 57 submissions there were only twelve slots for winners.  GRC… Continue reading 11 – Advancing GRC analytics, SAP's HANA Analytics Foundation for SAP GRC Solutions

  • 12 – Efficiencies in reporting, ControlPanelGRC’s AutoAuditor

    The 2013 GRC Technology Innovator awards was filled with competition.  The number of submissions more than doubled over 2012.  With 57 submissions there were only twelve slots for winners.  GRC… Continue reading 12 – Efficiencies in reporting, ControlPanelGRC’s AutoAuditor

  • The GRC Mystery House

    Governance, Risk Management, and Compliance – every organization does it.  There are variations in the opinion of what we call GRC.  Some like it and some do not.  Some use… Continue reading The GRC Mystery House

  • The Titanic: An Analogy of Enterprise Risk

    As we close out 2012 let us roll the years back from 2012 to 1912.  One hundred years a go was the disaster of the Titanic.  What can we learn… Continue reading The Titanic: An Analogy of Enterprise Risk

  • Improving Policies Through Metrics

    Thank you for joining me on this journey through Effective Policy Management. Today we come full circle and bring the effective policy management process to closure. Let’s review where we… Continue reading Improving Policies Through Metrics

  • Get Your GRC House in Order: Fundamental Steps Before Buying GRC Technology

    Your organization could be at risk because of the scattered and disconnected approaches of past compliance information and processes. To prevent unanticipated risk exposure, your organization may require a governance,… Continue reading Get Your GRC House in Order: Fundamental Steps Before Buying GRC Technology

  • What is risk management?

    Risk management is maturing, but as a result needs to be understood correctly and reminded that it does not rule the roost. I have three teenage boys (19, 18, and… Continue reading What is risk management?

  • Concluding the GRC Analyst Rant

    If you have been following my posts, you will know that I created a firestorm of discussion on: Rethinking GRC, Analyst Rant, Gartner’s 2012 EGRC Magic Quadrant.  If you go to… Continue reading Concluding the GRC Analyst Rant

  • Accepting Nominations for the 2013 GRC Technology Innovation Awards

    ANNOUNCEMENT: GRC 20/20 is accepting nominations for the 2013 GRC Technology Innovation Awards. To nominate a technology solution – please download the form. The GRC Technology Innovation Awards are to… Continue reading Accepting Nominations for the 2013 GRC Technology Innovation Awards

  • Effective Policy Enforcement Involves Technology

    I find that ineffective and unenforced policies are rampant within organizations, and are a thorn in the side of compliance and policy managers.   Mismanagement of policy has grown exponentially… Continue reading Effective Policy Enforcement Involves Technology

  • Policy Communication in a YouTube Generation

    So you wrote a policy—now what? Policies are only effective if you can show that they have been communicated and understood. Having a written policy that nobody knows about is… Continue reading Policy Communication in a YouTube Generation

  • Maintaining Policies and Keeping Them Relevant

    The webinar on policy management addresses a common flaw – the failure to properly maintain policies once issued.  Every policy should go into a periodic review to ensure it remains accurate… Continue reading Maintaining Policies and Keeping Them Relevant