


Upcoming Events . . .
Latest Pontifications & Thoughts . . .
-
About GRC 20/20
About GRC 20/20 Research, LLC 20/20 vision is perfect clarity in sight: clarity to see and process surrounding context and achieve situational awareness — to observe the world around you, be aware of risks, and react accordingly. Clarity of Governance, Risk Management & Compliance GRC 20/20 Research, LLC (GRC 20/20) provides clarity of insight into…
-
Research Terms & Conditions
These terms and conditions govern the use of GRC 20/20 Content (content includes, but is not limited to: website, research, intellectual property, and information in all forms). If you have any questions please email [email protected].
-
Characteristics of GRC 3.0
In the previous post I reviewed the history of GRC. In this post we examine the characteristics of GRC 3.0. REMEMBER: every organization does GRC. You may not call it GRC but your organization has some approach to governance, risk management, and compliance. The question is how mature is the organizations approach. The definition of…
-
ISO31000 and GRC: complementary?
ISO 31000 standard proposes a structured approach for any risk management program to include the vocabulary, principles, framework and process for the management of risk. GRC typically encompasses activities such as corporate governance, risk management and corporate compliance with applicable laws and regulations. What are the differences and what is the added value of each…
-
GRC 3.0 – A History of GRC
GRC is “a capability to reliably achieve objectives while addressing uncertainty and acting with integrity." The reliable achievement of objectives is the governance piece, addressing uncertainty is about risk management, and acting with integrity is the compliance angle. All three of these provide a natural flow. Governance provides direction and objectives giving the context for…
