GRC for Security Managers: From Checklists to Influence
ID: d82bd31e-4616-577d-bc8c-3a33229e00c1
STIX ID: report--d82bd31e-4616-577d-bc8c-3a33229e00c1
Feed Name: Black Hills Infosec Blog
This transcript summarizes a webcast focused on improving Governance, Risk, and Compliance (GRC) effectiveness: presenters emphasize shifting perception from bureaucratic obstacle to value creator by building cross-functional relationships, communicating risk in business terms, prioritizing and right-sizing controls, and using technology, analytics, and AI to automate routine tasks. Practical advice includes starting with a charter and prioritized list, using clear metrics and dashboards, fostering stakeholder engagement outside of audits, accepting pragmatic (not perfect) implementations, and leading by example to drive cultural change.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
