
Upcoming Events . . .
Latest Pontifications & Thoughts . . .
The GRC Mystery House
Governance, Risk Management, and Compliance – every organization does it. There are variations in the opinion of what we call GRC. Some like it and some do not. Some use… Continue reading The GRC Mystery House
The Titanic: An Analogy of Enterprise Risk
As we close out 2012 let us roll the years back from 2012 to 1912. One hundred years a go was the disaster of the Titanic. What can we learn… Continue reading The Titanic: An Analogy of Enterprise Risk
Improving Policies Through Metrics
Thank you for joining me on this journey through Effective Policy Management. Today we come full circle and bring the effective policy management process to closure. Let’s review where we… Continue reading Improving Policies Through Metrics
Get Your GRC House in Order: Fundamental Steps Before Buying GRC Technology
Your organization could be at risk because of the scattered and disconnected approaches of past compliance information and processes. To prevent unanticipated risk exposure, your organization may require a governance,… Continue reading Get Your GRC House in Order: Fundamental Steps Before Buying GRC Technology
What is risk management?
Risk management is maturing, but as a result needs to be understood correctly and reminded that it does not rule the roost. I have three teenage boys (19, 18, and… Continue reading What is risk management?
Concluding the GRC Analyst Rant
If you have been following my posts, you will know that I created a firestorm of discussion on: Rethinking GRC, Analyst Rant, Gartner’s 2012 EGRC Magic Quadrant. If you go to… Continue reading Concluding the GRC Analyst Rant
Accepting Nominations for the 2013 GRC Technology Innovation Awards
ANNOUNCEMENT: GRC 20/20 is accepting nominations for the 2013 GRC Technology Innovation Awards. To nominate a technology solution – please download the form. The GRC Technology Innovation Awards are to… Continue reading Accepting Nominations for the 2013 GRC Technology Innovation Awards
Effective Policy Enforcement Involves Technology
I find that ineffective and unenforced policies are rampant within organizations, and are a thorn in the side of compliance and policy managers. Mismanagement of policy has grown exponentially… Continue reading Effective Policy Enforcement Involves Technology
Policy Communication in a YouTube Generation
So you wrote a policy—now what? Policies are only effective if you can show that they have been communicated and understood. Having a written policy that nobody knows about is… Continue reading Policy Communication in a YouTube Generation
Maintaining Policies and Keeping Them Relevant
The webinar on policy management addresses a common flaw – the failure to properly maintain policies once issued. Every policy should go into a periodic review to ensure it remains accurate… Continue reading Maintaining Policies and Keeping Them Relevant
Measuring Policy Compliance and Metrics
This webinar looks at the critical issue of ensuring policy adherence, compliance, and metrics for managing polices. Attendees will learn the challenges, best practices, and benefits of a measurable and trackable… Continue reading Measuring Policy Compliance and Metrics
Increasing Compliance Effectiveness, Efficiency, and Agility with Technology
Compliance obligations and risk to the business is like the hydra in mythology — organizations combat risk, only to find more risk springing up to threaten the organization. Managing GRC… Continue reading Increasing Compliance Effectiveness, Efficiency, and Agility with Technology