


Upcoming Events . . .
Latest Pontifications & Thoughts . . .
-
Establishing Investigations Oversight
In the previous posts we discussed Why Investigations Matter and Varied Approaches to Investigations Scattered Across the Organization, we now turn our attention to the issues of having proper oversight for investigation processes within the organization. Organizations are developing strategies to consistently manage a growing body of GRC-related processes that have historically been scattered across the organization……
-
Varied Approaches to Investigations Scattered Across the Organization
In the previous newsletter/post we discussed Why Investigations Matter, we now turn our attention to the issues of having Varied Approaches to Investigations Scattered Across the Organization. The problem is that organizations do not have a standardized methodology to consistently address investigations across the enterprise. Today’s typical organization struggles with manual, scattered, and ad hoc……
-
Why Investigations Matter
Investigations have many names, in parts of the organization they may be called issues, loss, matters, events, cases, and incidents. I now turn our attention to a series of posts/newsletters on the topic of effectively managing corporate investigations. Investigations, done right, minimize or control loss, uncover systemic issues, identify risk areas, and provide information that……
-
Is there a place to go for a list of all regulations we need to comply with?
This question was recently posted to the Corporate Integrity LinkedIN Group. The specifics are as follows: We are looking for a list of all regulations that we need to comply with. I know that OCEG is putting together a database of this information for members, but I am wondering if there are other sources that……
-
GRC 2011: Gripes & Directions
No matter if you use the term or not – GRC (Governance, Risk Management, & Compliance) is a reality. We are in 2011 and it has been ten years now since I first started using the term GRC in research and interactions with organizations. The truth of the matter is – GRC as an acronym……
-
Regulatory Intelligence Enabled by a GRC Technology Platform
The core elements of a regulatory intelligence process can be delivered in a GRC software platform. The solution will allow the compliance and legal functions to profile regulations, link regulatory content aggregators, and have new developments or alerts pushed into the application and disseminated to the appropriate subject-matter expert for review and analysis. Technology tailored……
-
Approaching Regulatory Change as a Consistent Process
The old paradigm of regulatory change management is clearly a recipe for disaster given the volume, pace of change and the broader operational impact of today’s laws and regulations. Just as the CFO needs a financial system or the sales department needs CRM, legal and compliance need regulatory intelligence. Organizations should explore how technology……
-
Manual and Ad Hoc Regulatory Change Processes
Over the years, many organizations have matured in their view of internal risk-intelligence issues. However, monitoring external regulatory environments remains a broken process. To date, regulatory risk is managed in a very sporadic and ad hoc fashion with little accountability and oversight — if at all. Most organizations rely on manual ad hoc processes……
-
Regulatory Intelligence: Bombardment of Regulations upon Organizations
After a brief hiatus, I turn our attention back to the issues of policy management and compliance. We will now explore (over several posts) the issue of Regulatory Intelligence and Monitoring. Hordes of regulation bear down on the organization Business is under siege by legion of laws and regulations. Compliance itself has become difficult……
-
GRC Market Developments: Reflections on IBM/OpenPages, Wolters Kluwer/FRS Global, and Thomson Reuters
New GRC strategies, mergers, acquisitions . . . the last few weeks have been hopping for a market research analyst.Every time I sat down to blog on my thoughts someone else has come out without an announcement resulting in a whirlwind of buyer, market, and press questions.Between sessions at the OCEG GRC 360 Executive……
-
Why GRC & What Is It?
Why GRC & What Is It? GRC, simply put, is to provide collaboration between silos of governance, risk, and compliance. It is to get different business roles to share information and work in harmony. Harmony is a good metaphor, we do not want discord where the different parts of the organization are going down different……
-
Policy Communication in a YouTube Generation
I am a man on a mission. Make that a business on a mission – to completely refocus organizations on how they approach policy management and communication. To take business to the new frontier, to boldly go . . . You get the picture. Policies are in a complete and disappointing disarray. In my……
