SlideShare una empresa de Scribd logo
1 de 10
Descargar para leer sin conexión
SS
Ten Slides in Ten Minutes:
Company Realities – Governance, Risk & Compliance
[Capturing the Hearts and Minds of Prospects & Clients]

Presented by:

Bill Graham APM.APMP
bill.graham@sales-synthesis.co.za
December, 2013

1
Sustainable Business Issues

• Governance
• Risk
• Legislative
• Security:
o Internal
o External
o Physical

2
Establishment of a Sustainable Business centric GRC Framework
Governance describes the overall management approach through which
senior executives direct and control the entire organisation. Governance
activities ensure that critical management information reaching the executive
team is sufficiently complete, accurate and timely to enable appropriate
management decision making and actions
Risk Management is the set of processes through which management
identifies, analyses, and, where necessary, responds appropriately to risks
that might adversely affect realisation of the organisation's business
objectives

Compliance means conforming with stated requirements through
management processes that identify the applicable requirements (e.g. laws,
regulations, contracts, strategies and policies) and prioritise, fund and initiate
any corrective actions deemed necessary.
Source: Various

3
Establishment of a Sustainable Business centric GRC Framework
Some companies use independent 3rd parties to undertake a first-level framework definition

G

R

Source: Various

C

4
Establishment of a Sustainable Business centric GRC Framework
Governance

Board Level

• Regulations establish board responsibilities

Executive
Management

• Ensure that the strategies support business aspirations

Governance is not a spectator sport
Leadership
Structure

• Delivery of value to the business
• Mitigation of identified risks

Processes

Source: Sales Synthesis

5
Establishment of a Sustainable Business centric GRC Framework
Risk Management
Risk Propensity

Reporting

Risk ID & Quantify

Compliance
Statutory

$

economic
Social
Environs

P()

Fragility Analysis

Source: Melrose Atteridge

Action

GRC Frameworks are well documented and supported

6
Establishment of a Sustainable Business centric GRC Framework
Compliance
Major Shifts in the Global Compliance Landscape:

• Standards bodies are tightening enforcement
• International breach notification laws
• More regulations = more (prescriptive) rules

• “Check list” approach not working any more
• Increased costs and risk i.e. litigation for compromised data; brand reputation
• More transparency = greater consequences

• Compliance is being forced to the “next level”
• Compliance is now a management issue

Source: Consult to Comply

GRC Frameworks are well documented and supported

7
Establishment of a Sustainable Business centric GRC Framework
Compliance
Compliance at the Next Level:
• Have you developed a sustainable business-centric compliance strategy?
• Do you have a consistent controls framework?

• Do you have the appropriate level of controls specific to your business?
• Can you easily articulate and defend your controls to auditors?
• Can you produce multiple reports for different purposes?

• Can you reduce repetitive manual tasks and redundant controls?
• Is compliance fully embedded in your business process?
• Are you prepared for the next round of upcoming regulations?

Source: Consult to Comply

GRC Frameworks are well documented and supported

8
Compliance Mapping

Risk Propensity

Reporting

Risk ID & Quantify

Compliance
Statutory

$

Compliance
Mapping

economic
Social
Environs

P()

Fragility Analysis

GRC Frameworks
Source: Melrose Atteridge & Consult to Comply

Action

are well documented and supported

9
The Governance, Risk & Compliance (GRC) Landscape
GRC permeates across the Business - an example of IT GRC

Source: Unknown

10

Más contenido relacionado

La actualidad más candente

GRC Governance, Risk mgmt. & Compliance Executive
GRC Governance, Risk mgmt. & Compliance ExecutiveGRC Governance, Risk mgmt. & Compliance Executive
GRC Governance, Risk mgmt. & Compliance ExecutiveMax Neira Schliemann
 
CMLGroup - What is GRC?
CMLGroup - What is GRC?CMLGroup - What is GRC?
CMLGroup - What is GRC?CML Group
 
Grc governance, risk management & compliance
Grc  governance, risk management & complianceGrc  governance, risk management & compliance
Grc governance, risk management & complianceHR Globe Consulting
 
Enterprise Governance, Risk and Compliance
Enterprise Governance, Risk and ComplianceEnterprise Governance, Risk and Compliance
Enterprise Governance, Risk and ComplianceAxis Technology, LLC
 
Governance, Risk, Compliance & Trust (OCEG graphics removed)
Governance, Risk, Compliance & Trust (OCEG graphics removed)Governance, Risk, Compliance & Trust (OCEG graphics removed)
Governance, Risk, Compliance & Trust (OCEG graphics removed)Alex Todd
 
138 مبادرة #تواصل_تطوير المحاضرة ال 138 من المبادرة دكتور مهندس / أكرم حسن اس...
138 مبادرة #تواصل_تطوير المحاضرة ال 138 من المبادرة دكتور مهندس / أكرم حسن اس...138 مبادرة #تواصل_تطوير المحاضرة ال 138 من المبادرة دكتور مهندس / أكرم حسن اس...
138 مبادرة #تواصل_تطوير المحاضرة ال 138 من المبادرة دكتور مهندس / أكرم حسن اس...Egyptian Engineers Association
 
Governance Risk and Compliance - in Higher Education - Australia
Governance Risk and Compliance - in Higher Education - AustraliaGovernance Risk and Compliance - in Higher Education - Australia
Governance Risk and Compliance - in Higher Education - AustraliaMarissa McCauley
 
Busines Continuity And Compliance
Busines Continuity And ComplianceBusines Continuity And Compliance
Busines Continuity And Compliancesalamali
 
Compliance Framework
Compliance FrameworkCompliance Framework
Compliance Frameworkbarnetdh
 
Governance, Risk & Compliance Management Solution
Governance, Risk & Compliance Management SolutionGovernance, Risk & Compliance Management Solution
Governance, Risk & Compliance Management SolutionRishabh Software
 
Best Practices for Access Reviews - How to Reduce Risks and Improve Operation...
Best Practices for Access Reviews - How to Reduce Risks and Improve Operation...Best Practices for Access Reviews - How to Reduce Risks and Improve Operation...
Best Practices for Access Reviews - How to Reduce Risks and Improve Operation...PECB
 
GRC 101 ISACA Bengaluru on 28th Dec 2013
GRC 101 ISACA Bengaluru on 28th Dec 2013GRC 101 ISACA Bengaluru on 28th Dec 2013
GRC 101 ISACA Bengaluru on 28th Dec 2013FixNix Inc.,
 
Vendor Management - PCI DSS, ISO 27001, E13PA,HIPPA & FFIEC
Vendor Management - PCI DSS, ISO 27001, E13PA,HIPPA & FFIECVendor Management - PCI DSS, ISO 27001, E13PA,HIPPA & FFIEC
Vendor Management - PCI DSS, ISO 27001, E13PA,HIPPA & FFIECControlCase
 
Business Impact Analysis - The Most Important Step during BCMS Implementation
Business Impact Analysis - The Most Important Step during BCMS ImplementationBusiness Impact Analysis - The Most Important Step during BCMS Implementation
Business Impact Analysis - The Most Important Step during BCMS ImplementationPECB
 
Third Party Risk Management
Third Party Risk ManagementThird Party Risk Management
Third Party Risk ManagementEC-Council
 

La actualidad más candente (20)

GRC Governance, Risk mgmt. & Compliance Executive
GRC Governance, Risk mgmt. & Compliance ExecutiveGRC Governance, Risk mgmt. & Compliance Executive
GRC Governance, Risk mgmt. & Compliance Executive
 
CMLGroup - What is GRC?
CMLGroup - What is GRC?CMLGroup - What is GRC?
CMLGroup - What is GRC?
 
Grc governance, risk management & compliance
Grc  governance, risk management & complianceGrc  governance, risk management & compliance
Grc governance, risk management & compliance
 
Enterprise Governance, Risk and Compliance
Enterprise Governance, Risk and ComplianceEnterprise Governance, Risk and Compliance
Enterprise Governance, Risk and Compliance
 
Creating Value Through Enterprise Risk Management
Creating Value Through Enterprise Risk Management Creating Value Through Enterprise Risk Management
Creating Value Through Enterprise Risk Management
 
Governance, Risk, Compliance & Trust (OCEG graphics removed)
Governance, Risk, Compliance & Trust (OCEG graphics removed)Governance, Risk, Compliance & Trust (OCEG graphics removed)
Governance, Risk, Compliance & Trust (OCEG graphics removed)
 
138 مبادرة #تواصل_تطوير المحاضرة ال 138 من المبادرة دكتور مهندس / أكرم حسن اس...
138 مبادرة #تواصل_تطوير المحاضرة ال 138 من المبادرة دكتور مهندس / أكرم حسن اس...138 مبادرة #تواصل_تطوير المحاضرة ال 138 من المبادرة دكتور مهندس / أكرم حسن اس...
138 مبادرة #تواصل_تطوير المحاضرة ال 138 من المبادرة دكتور مهندس / أكرم حسن اس...
 
Governance Risk and Compliance - in Higher Education - Australia
Governance Risk and Compliance - in Higher Education - AustraliaGovernance Risk and Compliance - in Higher Education - Australia
Governance Risk and Compliance - in Higher Education - Australia
 
Busines Continuity And Compliance
Busines Continuity And ComplianceBusines Continuity And Compliance
Busines Continuity And Compliance
 
Thematic compliance
Thematic complianceThematic compliance
Thematic compliance
 
Compliance Framework
Compliance FrameworkCompliance Framework
Compliance Framework
 
Governance, Risk & Compliance Management Solution
Governance, Risk & Compliance Management SolutionGovernance, Risk & Compliance Management Solution
Governance, Risk & Compliance Management Solution
 
it grc
it grc it grc
it grc
 
Risk Technology Strategy, Selection and Implementation
Risk Technology Strategy, Selection and ImplementationRisk Technology Strategy, Selection and Implementation
Risk Technology Strategy, Selection and Implementation
 
Best Practices for Access Reviews - How to Reduce Risks and Improve Operation...
Best Practices for Access Reviews - How to Reduce Risks and Improve Operation...Best Practices for Access Reviews - How to Reduce Risks and Improve Operation...
Best Practices for Access Reviews - How to Reduce Risks and Improve Operation...
 
GRC 101 ISACA Bengaluru on 28th Dec 2013
GRC 101 ISACA Bengaluru on 28th Dec 2013GRC 101 ISACA Bengaluru on 28th Dec 2013
GRC 101 ISACA Bengaluru on 28th Dec 2013
 
GRC Fundamentals
GRC FundamentalsGRC Fundamentals
GRC Fundamentals
 
Vendor Management - PCI DSS, ISO 27001, E13PA,HIPPA & FFIEC
Vendor Management - PCI DSS, ISO 27001, E13PA,HIPPA & FFIECVendor Management - PCI DSS, ISO 27001, E13PA,HIPPA & FFIEC
Vendor Management - PCI DSS, ISO 27001, E13PA,HIPPA & FFIEC
 
Business Impact Analysis - The Most Important Step during BCMS Implementation
Business Impact Analysis - The Most Important Step during BCMS ImplementationBusiness Impact Analysis - The Most Important Step during BCMS Implementation
Business Impact Analysis - The Most Important Step during BCMS Implementation
 
Third Party Risk Management
Third Party Risk ManagementThird Party Risk Management
Third Party Risk Management
 

Destacado

Oracle OpenWorld 2014 GRC events and sessions
Oracle OpenWorld 2014 GRC events and sessionsOracle OpenWorld 2014 GRC events and sessions
Oracle OpenWorld 2014 GRC events and sessionsOracle
 
Canadian Compliance Essentials: What U.S. companies coming to Canada need to ...
Canadian Compliance Essentials: What U.S. companies coming to Canada need to ...Canadian Compliance Essentials: What U.S. companies coming to Canada need to ...
Canadian Compliance Essentials: What U.S. companies coming to Canada need to ...This account is closed
 
Fixnix GRC Suite A Glance
Fixnix GRC Suite A GlanceFixnix GRC Suite A Glance
Fixnix GRC Suite A GlanceFixNix Inc.,
 
Aras PLM Requirements Management
Aras PLM Requirements ManagementAras PLM Requirements Management
Aras PLM Requirements ManagementAras
 
Lets understand the GRC market well with Ponemon analysis- FixNix
Lets understand the GRC market well with Ponemon analysis- FixNixLets understand the GRC market well with Ponemon analysis- FixNix
Lets understand the GRC market well with Ponemon analysis- FixNixFixNix Inc.,
 
Enterprise policy-management
Enterprise policy-managementEnterprise policy-management
Enterprise policy-managementAmit Bhargava
 
Forrester GRC Q1 2016 Report
Forrester GRC Q1 2016 ReportForrester GRC Q1 2016 Report
Forrester GRC Q1 2016 ReportDaryl Resnick
 
PAC Webinar - "Show me the money!" - evaluating market opportunities in cyber...
PAC Webinar - "Show me the money!" - evaluating market opportunities in cyber...PAC Webinar - "Show me the money!" - evaluating market opportunities in cyber...
PAC Webinar - "Show me the money!" - evaluating market opportunities in cyber...Nicolas Beyer
 
Dave Govan (VP of Sales, Sailthru) - Aligning a Go to Market Strategy with Sa...
Dave Govan (VP of Sales, Sailthru) - Aligning a Go to Market Strategy with Sa...Dave Govan (VP of Sales, Sailthru) - Aligning a Go to Market Strategy with Sa...
Dave Govan (VP of Sales, Sailthru) - Aligning a Go to Market Strategy with Sa...Sales Hacker
 
Forrester wave enterprise_grc_platforms_q4_2011
Forrester wave enterprise_grc_platforms_q4_2011Forrester wave enterprise_grc_platforms_q4_2011
Forrester wave enterprise_grc_platforms_q4_2011dudugolf
 
Glenmark analyst ppt
Glenmark analyst pptGlenmark analyst ppt
Glenmark analyst pptKevin Simon
 
SAP GRC 10 Access Control
SAP GRC 10 Access ControlSAP GRC 10 Access Control
SAP GRC 10 Access ControlNasir Gondal
 
The competitive landscape of the Internet of Things
The competitive landscape of the Internet of ThingsThe competitive landscape of the Internet of Things
The competitive landscape of the Internet of ThingsIoTAnalytics
 
Governance, risk and compliance framework
Governance, risk and compliance frameworkGovernance, risk and compliance framework
Governance, risk and compliance frameworkCeyeap
 
Territory Planning - The Sales Journey.com
Territory Planning - The Sales Journey.comTerritory Planning - The Sales Journey.com
Territory Planning - The Sales Journey.comthesalesjourney
 
10. sales training territory management
10. sales training   territory management10. sales training   territory management
10. sales training territory managementEarl Stevens
 
How to plan your sales territory
How to plan your sales territoryHow to plan your sales territory
How to plan your sales territoryCamilo Rojas
 

Destacado (20)

Oracle OpenWorld 2014 GRC events and sessions
Oracle OpenWorld 2014 GRC events and sessionsOracle OpenWorld 2014 GRC events and sessions
Oracle OpenWorld 2014 GRC events and sessions
 
Vc us v4.0
Vc us v4.0Vc us v4.0
Vc us v4.0
 
Canadian Compliance Essentials: What U.S. companies coming to Canada need to ...
Canadian Compliance Essentials: What U.S. companies coming to Canada need to ...Canadian Compliance Essentials: What U.S. companies coming to Canada need to ...
Canadian Compliance Essentials: What U.S. companies coming to Canada need to ...
 
5
 5 5
5
 
Fixnix GRC Suite A Glance
Fixnix GRC Suite A GlanceFixnix GRC Suite A Glance
Fixnix GRC Suite A Glance
 
Aras PLM Requirements Management
Aras PLM Requirements ManagementAras PLM Requirements Management
Aras PLM Requirements Management
 
Lets understand the GRC market well with Ponemon analysis- FixNix
Lets understand the GRC market well with Ponemon analysis- FixNixLets understand the GRC market well with Ponemon analysis- FixNix
Lets understand the GRC market well with Ponemon analysis- FixNix
 
Enterprise policy-management
Enterprise policy-managementEnterprise policy-management
Enterprise policy-management
 
Forrester GRC Q1 2016 Report
Forrester GRC Q1 2016 ReportForrester GRC Q1 2016 Report
Forrester GRC Q1 2016 Report
 
PAC Webinar - "Show me the money!" - evaluating market opportunities in cyber...
PAC Webinar - "Show me the money!" - evaluating market opportunities in cyber...PAC Webinar - "Show me the money!" - evaluating market opportunities in cyber...
PAC Webinar - "Show me the money!" - evaluating market opportunities in cyber...
 
Dave Govan (VP of Sales, Sailthru) - Aligning a Go to Market Strategy with Sa...
Dave Govan (VP of Sales, Sailthru) - Aligning a Go to Market Strategy with Sa...Dave Govan (VP of Sales, Sailthru) - Aligning a Go to Market Strategy with Sa...
Dave Govan (VP of Sales, Sailthru) - Aligning a Go to Market Strategy with Sa...
 
Forrester wave enterprise_grc_platforms_q4_2011
Forrester wave enterprise_grc_platforms_q4_2011Forrester wave enterprise_grc_platforms_q4_2011
Forrester wave enterprise_grc_platforms_q4_2011
 
Glenmark analyst ppt
Glenmark analyst pptGlenmark analyst ppt
Glenmark analyst ppt
 
GRC
GRCGRC
GRC
 
SAP GRC 10 Access Control
SAP GRC 10 Access ControlSAP GRC 10 Access Control
SAP GRC 10 Access Control
 
The competitive landscape of the Internet of Things
The competitive landscape of the Internet of ThingsThe competitive landscape of the Internet of Things
The competitive landscape of the Internet of Things
 
Governance, risk and compliance framework
Governance, risk and compliance frameworkGovernance, risk and compliance framework
Governance, risk and compliance framework
 
Territory Planning - The Sales Journey.com
Territory Planning - The Sales Journey.comTerritory Planning - The Sales Journey.com
Territory Planning - The Sales Journey.com
 
10. sales training territory management
10. sales training   territory management10. sales training   territory management
10. sales training territory management
 
How to plan your sales territory
How to plan your sales territoryHow to plan your sales territory
How to plan your sales territory
 

Similar a GRC Framework for Sustainable Business

7 Grc Myths Webinar 20110127 Final (2)
7 Grc Myths Webinar 20110127 Final (2)7 Grc Myths Webinar 20110127 Final (2)
7 Grc Myths Webinar 20110127 Final (2)GBBLUME
 
13 Top GRC Tools for an Integrated Governance, Risk and Compliance Strategy
13 Top GRC Tools for an Integrated Governance, Risk and Compliance Strategy13 Top GRC Tools for an Integrated Governance, Risk and Compliance Strategy
13 Top GRC Tools for an Integrated Governance, Risk and Compliance StrategyQuekelsBaro
 
Internal Audit’s Evolving Role in Corporate GRC Strategy
Internal Audit’s Evolving Role in Corporate GRC StrategyInternal Audit’s Evolving Role in Corporate GRC Strategy
Internal Audit’s Evolving Role in Corporate GRC StrategyDavid Fernandes
 
Governance Risk Compliance Framework.pptx
Governance Risk Compliance Framework.pptxGovernance Risk Compliance Framework.pptx
Governance Risk Compliance Framework.pptxIsorobot
 
DGIQ 2018 Presentation: A Lawyer, a Salesperson and the Operations Guy Walk ...
DGIQ 2018 Presentation:  A Lawyer, a Salesperson and the Operations Guy Walk ...DGIQ 2018 Presentation:  A Lawyer, a Salesperson and the Operations Guy Walk ...
DGIQ 2018 Presentation: A Lawyer, a Salesperson and the Operations Guy Walk ...DATUM LLC
 
A Lawyer, a Salesperson and the Operations Guy Walk into a Bar . . .
A Lawyer, a Salesperson and the Operations Guy Walk into a Bar . . .A Lawyer, a Salesperson and the Operations Guy Walk into a Bar . . .
A Lawyer, a Salesperson and the Operations Guy Walk into a Bar . . .jadams6
 
Spire Brief - Risk Consulting
Spire Brief - Risk ConsultingSpire Brief - Risk Consulting
Spire Brief - Risk ConsultingPrashant Jain
 
Achieving GRC Excellence White Paper.pdf
Achieving GRC Excellence White Paper.pdfAchieving GRC Excellence White Paper.pdf
Achieving GRC Excellence White Paper.pdfinfosecTrain
 
Achieving GRC Excellence White Paper (6).pdf
Achieving GRC Excellence White Paper (6).pdfAchieving GRC Excellence White Paper (6).pdf
Achieving GRC Excellence White Paper (6).pdfInfosec train
 
Compliance Internal Investigation
Compliance Internal Investigation Compliance Internal Investigation
Compliance Internal Investigation Nexsen Pruet
 
Insights on grc grc technology au1488
Insights on grc grc technology au1488Insights on grc grc technology au1488
Insights on grc grc technology au1488Ashwin Kumar
 
Audit _ Assurance - Internal Audit and Risk Advisory - SBC Credentials.pdf
Audit _ Assurance - Internal Audit and Risk Advisory - SBC Credentials.pdfAudit _ Assurance - Internal Audit and Risk Advisory - SBC Credentials.pdf
Audit _ Assurance - Internal Audit and Risk Advisory - SBC Credentials.pdfSteadfast Business Consulting
 
GRC Tools_ A Must-Have for Any Organization in a Regulated Industry.pdf
GRC Tools_ A Must-Have for Any Organization in a Regulated Industry.pdfGRC Tools_ A Must-Have for Any Organization in a Regulated Industry.pdf
GRC Tools_ A Must-Have for Any Organization in a Regulated Industry.pdfUnder Controls
 

Similar a GRC Framework for Sustainable Business (20)

task 1
task 1task 1
task 1
 
Governance, Risk management and Compliance Integrated Systems
Governance, Risk management and Compliance Integrated SystemsGovernance, Risk management and Compliance Integrated Systems
Governance, Risk management and Compliance Integrated Systems
 
7 Grc Myths Webinar 20110127 Final (2)
7 Grc Myths Webinar 20110127 Final (2)7 Grc Myths Webinar 20110127 Final (2)
7 Grc Myths Webinar 20110127 Final (2)
 
13 Top GRC Tools for an Integrated Governance, Risk and Compliance Strategy
13 Top GRC Tools for an Integrated Governance, Risk and Compliance Strategy13 Top GRC Tools for an Integrated Governance, Risk and Compliance Strategy
13 Top GRC Tools for an Integrated Governance, Risk and Compliance Strategy
 
Internal Audit’s Evolving Role in Corporate GRC Strategy
Internal Audit’s Evolving Role in Corporate GRC StrategyInternal Audit’s Evolving Role in Corporate GRC Strategy
Internal Audit’s Evolving Role in Corporate GRC Strategy
 
GRC.docx
GRC.docxGRC.docx
GRC.docx
 
Governance Risk Compliance Framework.pptx
Governance Risk Compliance Framework.pptxGovernance Risk Compliance Framework.pptx
Governance Risk Compliance Framework.pptx
 
Slide
SlideSlide
Slide
 
Concept of Governance - Management of Operational Risk for IT Officers/Execut...
Concept of Governance - Management of Operational Risk for IT Officers/Execut...Concept of Governance - Management of Operational Risk for IT Officers/Execut...
Concept of Governance - Management of Operational Risk for IT Officers/Execut...
 
DGIQ 2018 Presentation: A Lawyer, a Salesperson and the Operations Guy Walk ...
DGIQ 2018 Presentation:  A Lawyer, a Salesperson and the Operations Guy Walk ...DGIQ 2018 Presentation:  A Lawyer, a Salesperson and the Operations Guy Walk ...
DGIQ 2018 Presentation: A Lawyer, a Salesperson and the Operations Guy Walk ...
 
A Lawyer, a Salesperson and the Operations Guy Walk into a Bar . . .
A Lawyer, a Salesperson and the Operations Guy Walk into a Bar . . .A Lawyer, a Salesperson and the Operations Guy Walk into a Bar . . .
A Lawyer, a Salesperson and the Operations Guy Walk into a Bar . . .
 
Integrated_GRC
Integrated_GRCIntegrated_GRC
Integrated_GRC
 
Spire Brief - Risk Consulting
Spire Brief - Risk ConsultingSpire Brief - Risk Consulting
Spire Brief - Risk Consulting
 
Achieving GRC Excellence White Paper.pdf
Achieving GRC Excellence White Paper.pdfAchieving GRC Excellence White Paper.pdf
Achieving GRC Excellence White Paper.pdf
 
Achieving GRC Excellence White Paper (6).pdf
Achieving GRC Excellence White Paper (6).pdfAchieving GRC Excellence White Paper (6).pdf
Achieving GRC Excellence White Paper (6).pdf
 
GRC-Xrev
GRC-XrevGRC-Xrev
GRC-Xrev
 
Compliance Internal Investigation
Compliance Internal Investigation Compliance Internal Investigation
Compliance Internal Investigation
 
Insights on grc grc technology au1488
Insights on grc grc technology au1488Insights on grc grc technology au1488
Insights on grc grc technology au1488
 
Audit _ Assurance - Internal Audit and Risk Advisory - SBC Credentials.pdf
Audit _ Assurance - Internal Audit and Risk Advisory - SBC Credentials.pdfAudit _ Assurance - Internal Audit and Risk Advisory - SBC Credentials.pdf
Audit _ Assurance - Internal Audit and Risk Advisory - SBC Credentials.pdf
 
GRC Tools_ A Must-Have for Any Organization in a Regulated Industry.pdf
GRC Tools_ A Must-Have for Any Organization in a Regulated Industry.pdfGRC Tools_ A Must-Have for Any Organization in a Regulated Industry.pdf
GRC Tools_ A Must-Have for Any Organization in a Regulated Industry.pdf
 

Más de Bill Graham CP.APMP

Ten Slides in Ten Minutes - Rejuvenating a Sales Organisation
Ten Slides in Ten Minutes - Rejuvenating a Sales OrganisationTen Slides in Ten Minutes - Rejuvenating a Sales Organisation
Ten Slides in Ten Minutes - Rejuvenating a Sales OrganisationBill Graham CP.APMP
 
Ten Slides in Ten Minutes - Thinking about the Sales Phase of the SDLC
Ten Slides in Ten Minutes - Thinking about the Sales Phase of the SDLCTen Slides in Ten Minutes - Thinking about the Sales Phase of the SDLC
Ten Slides in Ten Minutes - Thinking about the Sales Phase of the SDLCBill Graham CP.APMP
 
Ten Slides in Ten Minutes - Bid Qualification across Workstreams
Ten Slides in Ten Minutes - Bid Qualification across WorkstreamsTen Slides in Ten Minutes - Bid Qualification across Workstreams
Ten Slides in Ten Minutes - Bid Qualification across WorkstreamsBill Graham CP.APMP
 
Ten slides in Ten Minutes - Orchestras or Carthorses
Ten slides in Ten Minutes - Orchestras or CarthorsesTen slides in Ten Minutes - Orchestras or Carthorses
Ten slides in Ten Minutes - Orchestras or CarthorsesBill Graham CP.APMP
 
Ten Slides in Ten Minutes - Business Growth Into Africa
Ten Slides in Ten Minutes - Business Growth Into AfricaTen Slides in Ten Minutes - Business Growth Into Africa
Ten Slides in Ten Minutes - Business Growth Into AfricaBill Graham CP.APMP
 
Ten Slides in Ten Minutes - Thinking about Sales Operations
Ten Slides in Ten Minutes - Thinking about Sales OperationsTen Slides in Ten Minutes - Thinking about Sales Operations
Ten Slides in Ten Minutes - Thinking about Sales OperationsBill Graham CP.APMP
 
Ten Slides in Ten Minutes - Pondering Imperfect Proposals
Ten Slides in Ten Minutes - Pondering Imperfect ProposalsTen Slides in Ten Minutes - Pondering Imperfect Proposals
Ten Slides in Ten Minutes - Pondering Imperfect ProposalsBill Graham CP.APMP
 
Ten Slides in Ten Minutes - Organisations and Time Machines
Ten Slides in Ten Minutes - Organisations and Time MachinesTen Slides in Ten Minutes - Organisations and Time Machines
Ten Slides in Ten Minutes - Organisations and Time MachinesBill Graham CP.APMP
 
Ten Slides in Ten Minutes - Bid Management versus Project Management
Ten Slides in Ten Minutes - Bid Management versus Project ManagementTen Slides in Ten Minutes - Bid Management versus Project Management
Ten Slides in Ten Minutes - Bid Management versus Project ManagementBill Graham CP.APMP
 
Ten Slides in Ten Minutes - Thinking about the Virtual Bid Team
Ten Slides in Ten Minutes - Thinking about the Virtual Bid TeamTen Slides in Ten Minutes - Thinking about the Virtual Bid Team
Ten Slides in Ten Minutes - Thinking about the Virtual Bid TeamBill Graham CP.APMP
 
Ten Slides in Ten Minutes - Parable of the Pink Ponies
Ten Slides in Ten Minutes - Parable of the Pink PoniesTen Slides in Ten Minutes - Parable of the Pink Ponies
Ten Slides in Ten Minutes - Parable of the Pink PoniesBill Graham CP.APMP
 
Ten Slides in Ten Minutes - Thinking about Sales Events
Ten Slides in Ten Minutes - Thinking about Sales EventsTen Slides in Ten Minutes - Thinking about Sales Events
Ten Slides in Ten Minutes - Thinking about Sales EventsBill Graham CP.APMP
 
Ten Slides in Ten Minutes - I Never Know What to Say to You
Ten Slides in Ten Minutes - I Never Know What to Say to YouTen Slides in Ten Minutes - I Never Know What to Say to You
Ten Slides in Ten Minutes - I Never Know What to Say to YouBill Graham CP.APMP
 
Ten Slides in Ten Minutes - Guerrillas in the Midst
Ten Slides in Ten Minutes - Guerrillas in the MidstTen Slides in Ten Minutes - Guerrillas in the Midst
Ten Slides in Ten Minutes - Guerrillas in the MidstBill Graham CP.APMP
 
Ten slides in Ten Minutes - Thinking about Practical and Pertinent Presentations
Ten slides in Ten Minutes - Thinking about Practical and Pertinent PresentationsTen slides in Ten Minutes - Thinking about Practical and Pertinent Presentations
Ten slides in Ten Minutes - Thinking about Practical and Pertinent PresentationsBill Graham CP.APMP
 
Ten Slides in Ten Minutes - Client Crusades and Campaigns
Ten Slides in Ten Minutes - Client Crusades and CampaignsTen Slides in Ten Minutes - Client Crusades and Campaigns
Ten Slides in Ten Minutes - Client Crusades and CampaignsBill Graham CP.APMP
 
Ten Slides in Ten Minutes - Sex, Lies and Proposal Management
Ten Slides in Ten Minutes - Sex, Lies and Proposal ManagementTen Slides in Ten Minutes - Sex, Lies and Proposal Management
Ten Slides in Ten Minutes - Sex, Lies and Proposal ManagementBill Graham CP.APMP
 
Ten Slides in Ten Minutes - From Parking Lot to Proposal Win
Ten Slides in Ten Minutes - From Parking Lot to Proposal WinTen Slides in Ten Minutes - From Parking Lot to Proposal Win
Ten Slides in Ten Minutes - From Parking Lot to Proposal WinBill Graham CP.APMP
 
Ten Slides in Ten Minutes - The Bid Centre
Ten Slides in Ten Minutes - The Bid CentreTen Slides in Ten Minutes - The Bid Centre
Ten Slides in Ten Minutes - The Bid CentreBill Graham CP.APMP
 
Ten Slides in Ten Minutes - To Bid or not to Bid
Ten Slides in Ten Minutes - To Bid or not to BidTen Slides in Ten Minutes - To Bid or not to Bid
Ten Slides in Ten Minutes - To Bid or not to BidBill Graham CP.APMP
 

Más de Bill Graham CP.APMP (20)

Ten Slides in Ten Minutes - Rejuvenating a Sales Organisation
Ten Slides in Ten Minutes - Rejuvenating a Sales OrganisationTen Slides in Ten Minutes - Rejuvenating a Sales Organisation
Ten Slides in Ten Minutes - Rejuvenating a Sales Organisation
 
Ten Slides in Ten Minutes - Thinking about the Sales Phase of the SDLC
Ten Slides in Ten Minutes - Thinking about the Sales Phase of the SDLCTen Slides in Ten Minutes - Thinking about the Sales Phase of the SDLC
Ten Slides in Ten Minutes - Thinking about the Sales Phase of the SDLC
 
Ten Slides in Ten Minutes - Bid Qualification across Workstreams
Ten Slides in Ten Minutes - Bid Qualification across WorkstreamsTen Slides in Ten Minutes - Bid Qualification across Workstreams
Ten Slides in Ten Minutes - Bid Qualification across Workstreams
 
Ten slides in Ten Minutes - Orchestras or Carthorses
Ten slides in Ten Minutes - Orchestras or CarthorsesTen slides in Ten Minutes - Orchestras or Carthorses
Ten slides in Ten Minutes - Orchestras or Carthorses
 
Ten Slides in Ten Minutes - Business Growth Into Africa
Ten Slides in Ten Minutes - Business Growth Into AfricaTen Slides in Ten Minutes - Business Growth Into Africa
Ten Slides in Ten Minutes - Business Growth Into Africa
 
Ten Slides in Ten Minutes - Thinking about Sales Operations
Ten Slides in Ten Minutes - Thinking about Sales OperationsTen Slides in Ten Minutes - Thinking about Sales Operations
Ten Slides in Ten Minutes - Thinking about Sales Operations
 
Ten Slides in Ten Minutes - Pondering Imperfect Proposals
Ten Slides in Ten Minutes - Pondering Imperfect ProposalsTen Slides in Ten Minutes - Pondering Imperfect Proposals
Ten Slides in Ten Minutes - Pondering Imperfect Proposals
 
Ten Slides in Ten Minutes - Organisations and Time Machines
Ten Slides in Ten Minutes - Organisations and Time MachinesTen Slides in Ten Minutes - Organisations and Time Machines
Ten Slides in Ten Minutes - Organisations and Time Machines
 
Ten Slides in Ten Minutes - Bid Management versus Project Management
Ten Slides in Ten Minutes - Bid Management versus Project ManagementTen Slides in Ten Minutes - Bid Management versus Project Management
Ten Slides in Ten Minutes - Bid Management versus Project Management
 
Ten Slides in Ten Minutes - Thinking about the Virtual Bid Team
Ten Slides in Ten Minutes - Thinking about the Virtual Bid TeamTen Slides in Ten Minutes - Thinking about the Virtual Bid Team
Ten Slides in Ten Minutes - Thinking about the Virtual Bid Team
 
Ten Slides in Ten Minutes - Parable of the Pink Ponies
Ten Slides in Ten Minutes - Parable of the Pink PoniesTen Slides in Ten Minutes - Parable of the Pink Ponies
Ten Slides in Ten Minutes - Parable of the Pink Ponies
 
Ten Slides in Ten Minutes - Thinking about Sales Events
Ten Slides in Ten Minutes - Thinking about Sales EventsTen Slides in Ten Minutes - Thinking about Sales Events
Ten Slides in Ten Minutes - Thinking about Sales Events
 
Ten Slides in Ten Minutes - I Never Know What to Say to You
Ten Slides in Ten Minutes - I Never Know What to Say to YouTen Slides in Ten Minutes - I Never Know What to Say to You
Ten Slides in Ten Minutes - I Never Know What to Say to You
 
Ten Slides in Ten Minutes - Guerrillas in the Midst
Ten Slides in Ten Minutes - Guerrillas in the MidstTen Slides in Ten Minutes - Guerrillas in the Midst
Ten Slides in Ten Minutes - Guerrillas in the Midst
 
Ten slides in Ten Minutes - Thinking about Practical and Pertinent Presentations
Ten slides in Ten Minutes - Thinking about Practical and Pertinent PresentationsTen slides in Ten Minutes - Thinking about Practical and Pertinent Presentations
Ten slides in Ten Minutes - Thinking about Practical and Pertinent Presentations
 
Ten Slides in Ten Minutes - Client Crusades and Campaigns
Ten Slides in Ten Minutes - Client Crusades and CampaignsTen Slides in Ten Minutes - Client Crusades and Campaigns
Ten Slides in Ten Minutes - Client Crusades and Campaigns
 
Ten Slides in Ten Minutes - Sex, Lies and Proposal Management
Ten Slides in Ten Minutes - Sex, Lies and Proposal ManagementTen Slides in Ten Minutes - Sex, Lies and Proposal Management
Ten Slides in Ten Minutes - Sex, Lies and Proposal Management
 
Ten Slides in Ten Minutes - From Parking Lot to Proposal Win
Ten Slides in Ten Minutes - From Parking Lot to Proposal WinTen Slides in Ten Minutes - From Parking Lot to Proposal Win
Ten Slides in Ten Minutes - From Parking Lot to Proposal Win
 
Ten Slides in Ten Minutes - The Bid Centre
Ten Slides in Ten Minutes - The Bid CentreTen Slides in Ten Minutes - The Bid Centre
Ten Slides in Ten Minutes - The Bid Centre
 
Ten Slides in Ten Minutes - To Bid or not to Bid
Ten Slides in Ten Minutes - To Bid or not to BidTen Slides in Ten Minutes - To Bid or not to Bid
Ten Slides in Ten Minutes - To Bid or not to Bid
 

Último

Effective Strategies for Maximizing Your Profit When Selling Gold Jewelry
Effective Strategies for Maximizing Your Profit When Selling Gold JewelryEffective Strategies for Maximizing Your Profit When Selling Gold Jewelry
Effective Strategies for Maximizing Your Profit When Selling Gold JewelryWhittensFineJewelry1
 
Lucia Ferretti, Lead Business Designer; Matteo Meschini, Business Designer @T...
Lucia Ferretti, Lead Business Designer; Matteo Meschini, Business Designer @T...Lucia Ferretti, Lead Business Designer; Matteo Meschini, Business Designer @T...
Lucia Ferretti, Lead Business Designer; Matteo Meschini, Business Designer @T...Associazione Digital Days
 
business environment micro environment macro environment.pptx
business environment micro environment macro environment.pptxbusiness environment micro environment macro environment.pptx
business environment micro environment macro environment.pptxShruti Mittal
 
APRIL2024_UKRAINE_xml_0000000000000 .pdf
APRIL2024_UKRAINE_xml_0000000000000 .pdfAPRIL2024_UKRAINE_xml_0000000000000 .pdf
APRIL2024_UKRAINE_xml_0000000000000 .pdfRbc Rbcua
 
trending-flavors-and-ingredients-in-salty-snacks-us-2024_Redacted-V2.pdf
trending-flavors-and-ingredients-in-salty-snacks-us-2024_Redacted-V2.pdftrending-flavors-and-ingredients-in-salty-snacks-us-2024_Redacted-V2.pdf
trending-flavors-and-ingredients-in-salty-snacks-us-2024_Redacted-V2.pdfMintel Group
 
Supercharge Your eCommerce Stores-acowebs
Supercharge Your eCommerce Stores-acowebsSupercharge Your eCommerce Stores-acowebs
Supercharge Your eCommerce Stores-acowebsGOKUL JS
 
Send Files | Sendbig.comSend Files | Sendbig.com
Send Files | Sendbig.comSend Files | Sendbig.comSend Files | Sendbig.comSend Files | Sendbig.com
Send Files | Sendbig.comSend Files | Sendbig.comSendBig4
 
How To Simplify Your Scheduling with AI Calendarfly The Hassle-Free Online Bo...
How To Simplify Your Scheduling with AI Calendarfly The Hassle-Free Online Bo...How To Simplify Your Scheduling with AI Calendarfly The Hassle-Free Online Bo...
How To Simplify Your Scheduling with AI Calendarfly The Hassle-Free Online Bo...SOFTTECHHUB
 
The-Ethical-issues-ghhhhhhhhjof-Byjus.pptx
The-Ethical-issues-ghhhhhhhhjof-Byjus.pptxThe-Ethical-issues-ghhhhhhhhjof-Byjus.pptx
The-Ethical-issues-ghhhhhhhhjof-Byjus.pptxmbikashkanyari
 
Church Building Grants To Assist With New Construction, Additions, And Restor...
Church Building Grants To Assist With New Construction, Additions, And Restor...Church Building Grants To Assist With New Construction, Additions, And Restor...
Church Building Grants To Assist With New Construction, Additions, And Restor...Americas Got Grants
 
Pitch Deck Teardown: Xpanceo's $40M Seed deck
Pitch Deck Teardown: Xpanceo's $40M Seed deckPitch Deck Teardown: Xpanceo's $40M Seed deck
Pitch Deck Teardown: Xpanceo's $40M Seed deckHajeJanKamps
 
1911 Gold Corporate Presentation Apr 2024.pdf
1911 Gold Corporate Presentation Apr 2024.pdf1911 Gold Corporate Presentation Apr 2024.pdf
1911 Gold Corporate Presentation Apr 2024.pdfShaun Heinrichs
 
Healthcare Feb. & Mar. Healthcare Newsletter
Healthcare Feb. & Mar. Healthcare NewsletterHealthcare Feb. & Mar. Healthcare Newsletter
Healthcare Feb. & Mar. Healthcare NewsletterJamesConcepcion7
 
GUIDELINES ON USEFUL FORMS IN FREIGHT FORWARDING (F) Danny Diep Toh MBA.pdf
GUIDELINES ON USEFUL FORMS IN FREIGHT FORWARDING (F) Danny Diep Toh MBA.pdfGUIDELINES ON USEFUL FORMS IN FREIGHT FORWARDING (F) Danny Diep Toh MBA.pdf
GUIDELINES ON USEFUL FORMS IN FREIGHT FORWARDING (F) Danny Diep Toh MBA.pdfDanny Diep To
 
Traction part 2 - EOS Model JAX Bridges.
Traction part 2 - EOS Model JAX Bridges.Traction part 2 - EOS Model JAX Bridges.
Traction part 2 - EOS Model JAX Bridges.Anamaria Contreras
 
Cyber Security Training in Office Environment
Cyber Security Training in Office EnvironmentCyber Security Training in Office Environment
Cyber Security Training in Office Environmentelijahj01012
 
Excvation Safety for safety officers reference
Excvation Safety for safety officers referenceExcvation Safety for safety officers reference
Excvation Safety for safety officers referencessuser2c065e
 
Darshan Hiranandani [News About Next CEO].pdf
Darshan Hiranandani [News About Next CEO].pdfDarshan Hiranandani [News About Next CEO].pdf
Darshan Hiranandani [News About Next CEO].pdfShashank Mehta
 

Último (20)

Effective Strategies for Maximizing Your Profit When Selling Gold Jewelry
Effective Strategies for Maximizing Your Profit When Selling Gold JewelryEffective Strategies for Maximizing Your Profit When Selling Gold Jewelry
Effective Strategies for Maximizing Your Profit When Selling Gold Jewelry
 
Lucia Ferretti, Lead Business Designer; Matteo Meschini, Business Designer @T...
Lucia Ferretti, Lead Business Designer; Matteo Meschini, Business Designer @T...Lucia Ferretti, Lead Business Designer; Matteo Meschini, Business Designer @T...
Lucia Ferretti, Lead Business Designer; Matteo Meschini, Business Designer @T...
 
business environment micro environment macro environment.pptx
business environment micro environment macro environment.pptxbusiness environment micro environment macro environment.pptx
business environment micro environment macro environment.pptx
 
APRIL2024_UKRAINE_xml_0000000000000 .pdf
APRIL2024_UKRAINE_xml_0000000000000 .pdfAPRIL2024_UKRAINE_xml_0000000000000 .pdf
APRIL2024_UKRAINE_xml_0000000000000 .pdf
 
trending-flavors-and-ingredients-in-salty-snacks-us-2024_Redacted-V2.pdf
trending-flavors-and-ingredients-in-salty-snacks-us-2024_Redacted-V2.pdftrending-flavors-and-ingredients-in-salty-snacks-us-2024_Redacted-V2.pdf
trending-flavors-and-ingredients-in-salty-snacks-us-2024_Redacted-V2.pdf
 
Supercharge Your eCommerce Stores-acowebs
Supercharge Your eCommerce Stores-acowebsSupercharge Your eCommerce Stores-acowebs
Supercharge Your eCommerce Stores-acowebs
 
Send Files | Sendbig.comSend Files | Sendbig.com
Send Files | Sendbig.comSend Files | Sendbig.comSend Files | Sendbig.comSend Files | Sendbig.com
Send Files | Sendbig.comSend Files | Sendbig.com
 
The Bizz Quiz-E-Summit-E-Cell-IITPatna.pptx
The Bizz Quiz-E-Summit-E-Cell-IITPatna.pptxThe Bizz Quiz-E-Summit-E-Cell-IITPatna.pptx
The Bizz Quiz-E-Summit-E-Cell-IITPatna.pptx
 
How To Simplify Your Scheduling with AI Calendarfly The Hassle-Free Online Bo...
How To Simplify Your Scheduling with AI Calendarfly The Hassle-Free Online Bo...How To Simplify Your Scheduling with AI Calendarfly The Hassle-Free Online Bo...
How To Simplify Your Scheduling with AI Calendarfly The Hassle-Free Online Bo...
 
The-Ethical-issues-ghhhhhhhhjof-Byjus.pptx
The-Ethical-issues-ghhhhhhhhjof-Byjus.pptxThe-Ethical-issues-ghhhhhhhhjof-Byjus.pptx
The-Ethical-issues-ghhhhhhhhjof-Byjus.pptx
 
Church Building Grants To Assist With New Construction, Additions, And Restor...
Church Building Grants To Assist With New Construction, Additions, And Restor...Church Building Grants To Assist With New Construction, Additions, And Restor...
Church Building Grants To Assist With New Construction, Additions, And Restor...
 
Pitch Deck Teardown: Xpanceo's $40M Seed deck
Pitch Deck Teardown: Xpanceo's $40M Seed deckPitch Deck Teardown: Xpanceo's $40M Seed deck
Pitch Deck Teardown: Xpanceo's $40M Seed deck
 
1911 Gold Corporate Presentation Apr 2024.pdf
1911 Gold Corporate Presentation Apr 2024.pdf1911 Gold Corporate Presentation Apr 2024.pdf
1911 Gold Corporate Presentation Apr 2024.pdf
 
Healthcare Feb. & Mar. Healthcare Newsletter
Healthcare Feb. & Mar. Healthcare NewsletterHealthcare Feb. & Mar. Healthcare Newsletter
Healthcare Feb. & Mar. Healthcare Newsletter
 
GUIDELINES ON USEFUL FORMS IN FREIGHT FORWARDING (F) Danny Diep Toh MBA.pdf
GUIDELINES ON USEFUL FORMS IN FREIGHT FORWARDING (F) Danny Diep Toh MBA.pdfGUIDELINES ON USEFUL FORMS IN FREIGHT FORWARDING (F) Danny Diep Toh MBA.pdf
GUIDELINES ON USEFUL FORMS IN FREIGHT FORWARDING (F) Danny Diep Toh MBA.pdf
 
WAM Corporate Presentation April 12 2024.pdf
WAM Corporate Presentation April 12 2024.pdfWAM Corporate Presentation April 12 2024.pdf
WAM Corporate Presentation April 12 2024.pdf
 
Traction part 2 - EOS Model JAX Bridges.
Traction part 2 - EOS Model JAX Bridges.Traction part 2 - EOS Model JAX Bridges.
Traction part 2 - EOS Model JAX Bridges.
 
Cyber Security Training in Office Environment
Cyber Security Training in Office EnvironmentCyber Security Training in Office Environment
Cyber Security Training in Office Environment
 
Excvation Safety for safety officers reference
Excvation Safety for safety officers referenceExcvation Safety for safety officers reference
Excvation Safety for safety officers reference
 
Darshan Hiranandani [News About Next CEO].pdf
Darshan Hiranandani [News About Next CEO].pdfDarshan Hiranandani [News About Next CEO].pdf
Darshan Hiranandani [News About Next CEO].pdf
 

GRC Framework for Sustainable Business

  • 1. SS Ten Slides in Ten Minutes: Company Realities – Governance, Risk & Compliance [Capturing the Hearts and Minds of Prospects & Clients] Presented by: Bill Graham APM.APMP bill.graham@sales-synthesis.co.za December, 2013 1
  • 2. Sustainable Business Issues • Governance • Risk • Legislative • Security: o Internal o External o Physical 2
  • 3. Establishment of a Sustainable Business centric GRC Framework Governance describes the overall management approach through which senior executives direct and control the entire organisation. Governance activities ensure that critical management information reaching the executive team is sufficiently complete, accurate and timely to enable appropriate management decision making and actions Risk Management is the set of processes through which management identifies, analyses, and, where necessary, responds appropriately to risks that might adversely affect realisation of the organisation's business objectives Compliance means conforming with stated requirements through management processes that identify the applicable requirements (e.g. laws, regulations, contracts, strategies and policies) and prioritise, fund and initiate any corrective actions deemed necessary. Source: Various 3
  • 4. Establishment of a Sustainable Business centric GRC Framework Some companies use independent 3rd parties to undertake a first-level framework definition G R Source: Various C 4
  • 5. Establishment of a Sustainable Business centric GRC Framework Governance Board Level • Regulations establish board responsibilities Executive Management • Ensure that the strategies support business aspirations Governance is not a spectator sport Leadership Structure • Delivery of value to the business • Mitigation of identified risks Processes Source: Sales Synthesis 5
  • 6. Establishment of a Sustainable Business centric GRC Framework Risk Management Risk Propensity Reporting Risk ID & Quantify Compliance Statutory $ economic Social Environs P() Fragility Analysis Source: Melrose Atteridge Action GRC Frameworks are well documented and supported 6
  • 7. Establishment of a Sustainable Business centric GRC Framework Compliance Major Shifts in the Global Compliance Landscape: • Standards bodies are tightening enforcement • International breach notification laws • More regulations = more (prescriptive) rules • “Check list” approach not working any more • Increased costs and risk i.e. litigation for compromised data; brand reputation • More transparency = greater consequences • Compliance is being forced to the “next level” • Compliance is now a management issue Source: Consult to Comply GRC Frameworks are well documented and supported 7
  • 8. Establishment of a Sustainable Business centric GRC Framework Compliance Compliance at the Next Level: • Have you developed a sustainable business-centric compliance strategy? • Do you have a consistent controls framework? • Do you have the appropriate level of controls specific to your business? • Can you easily articulate and defend your controls to auditors? • Can you produce multiple reports for different purposes? • Can you reduce repetitive manual tasks and redundant controls? • Is compliance fully embedded in your business process? • Are you prepared for the next round of upcoming regulations? Source: Consult to Comply GRC Frameworks are well documented and supported 8
  • 9. Compliance Mapping Risk Propensity Reporting Risk ID & Quantify Compliance Statutory $ Compliance Mapping economic Social Environs P() Fragility Analysis GRC Frameworks Source: Melrose Atteridge & Consult to Comply Action are well documented and supported 9
  • 10. The Governance, Risk & Compliance (GRC) Landscape GRC permeates across the Business - an example of IT GRC Source: Unknown 10