Upcoming Events . . .

Latest Pontifications & Thoughts . . .

  • Preparing for Tax Compliance in 2023

    Preparing for Tax Compliance in 2023

    The modern organization is a complex array of transactions, processes, and relationships. This is challenging to manage within a single jurisdiction, but becomes even more complex, bridging on the word chaotic, when the organization deals with an interconnected mess of subsidiaries, divisions, relationships, and cross-border transactions. Even a small organization faces a complex web of…

  • Ensuring Engagement Throughout the Policy Lifecycle

    Ensuring Engagement Throughout the Policy Lifecycle

    GRC 20/20’s Michael Rasmussen will be speaking on the blog below in an ESG context on the webinar: Policy & Training Management: A Foundation of a Successful ESG Program From time to time, people ask why policies matter. The answer, at its most basic, is that when an organization fails to establish strong policies, the…

  • The What, Why & How of an Ethical Compliance Culture

    The What, Why & How of an Ethical Compliance Culture

    GRC 20/20’s Michael Rasmussen will be speaking on the blog below in an ESG context on the webinar: Policy & Training Management: A Foundation of a Successful ESG Program The scenarios of ethical and compliance exposure across business operations and frontline employees are unlimited. Some involve malicious employees, others could be inadvertent mistakes, while some…

  • GRC in a United Kingdom Context

    GRC in a United Kingdom Context

    Last week I had an amazing week of GRC interactions, or G[P]RC with the P being performance), in the Middle East. I was the keynote at the G[P]RC Summit in Riyadh and in Dubai. I am also interacting on a few RFP development projects in the Middle East as well. The Middle East is the…

  • Measuring the Cost of Non-Compliance

    Measuring the Cost of Non-Compliance

    Integrity is everything to an organization. If I could rebrand the Chief Ethics and Compliance Officer (CECO) I would call it the Chief Integrity Officer, but we already have a CIO in the Chief Information Officer. Ethics and compliance done correctly is the bastion of corporate integrity and corporate ethical culture. That is what compliance…

  • How Mortgage Lenders Can Leverage Automation to Strengthen Compliance in a Turbulent Economy

    How Mortgage Lenders Can Leverage Automation to Strengthen Compliance in a Turbulent Economy

    In today’s ever-changing economy, mortgage lenders and service providers face a growing number of regulations and risks in compliance. This opens up an opportunity for organizations to rearchitect their compliance processes and leverage automation to remain competitive in this uncertain environment. — Mortgage lenders and service providers, as a segment of the financial services industry,…

  • 2022 GRC Research Year in Review

    2022 GRC Research Year in Review

    Wow! 2022, what a rollercoaster of a year for GRC – governance, risk management, and compliance. Top discussions this past year have been around ESG, risk agility, resilience, third-party risk in the extended enterprise, compliance and regulatory change, and policy management. We are still feeling the impact of the COVID pandemic combined with geopolitical risk…

  • Where Policy Management Fails

    Where Policy Management Fails

    After exploring Where Third-Party Risk Management Fails and Where Risk Management Fails, I now turn my attention to my biggest soapbox, Where Policy Management Fails . . . First it is essential to understand that policies are critically important to governance, risk management, and compliance. Through policies organizations can have reliable processes, transactions, and behavior…

  • State of GRC: A Future of Agility, Resiliency & Integrity

    State of GRC: A Future of Agility, Resiliency & Integrity

    Below is an abstract and the video of my keynote from the Konnect 2022 conference. My next keynote will be at #RISK in London on November 16th and 17th where I will also be the chair/host of the conference, and doing a special executive breakout session on ESG. The keynote video details the challenges organizations…

  • Where Risk Management Strategy & Technology Fail . . .

    Where Risk Management Strategy & Technology Fail . . .

    Last week we explored where third-party risk management strategy and technology fail, this week we turn our attention to where enterprise/operational/integrated risk management strategies and technologies fail. Yes, that world of ERM, ORM, IRM which is fraught with misconceptions, complexities, and too often solutions that create blind spots on risk.  The modern organization demands that…

  • Strengthen Your Cybersecurity Management Policy With the Human Firewall

    Strengthen Your Cybersecurity Management Policy With the Human Firewall

    The need for cybersecurity is growing with the dynamic, distributed, disrupted, and particularly digital nature of business. Digital transformation is making cybersecurity even more critical to protect the organization, maintain resilience, and compete in today’s chaotic and digital business environment. The threats to business come from all angles and include the malicious, but also the…

  • ESG and the Geopolitical Complexities of Supplier Risk

    ESG and the Geopolitical Complexities of Supplier Risk

    How do you define the modern organization?  There is no binary boundary to the organization anymore, no more black and white. It is impossible to clearly state that this is where the organization ends. The organization is NO LONGER defined by brick-and-mortar walls and traditional employees. There are shades of grey as the modern organization…