Automating GRC to Increase Business Value

GRC is neither a project nor a technology, but a corporate objective for improving governance through more- effective compliance and a better understanding of the impact of risk on business performance. GRC can vary dramatically depending on the businesses vertical market, and even further complexity can be found from one business unit to another. This complexity drives the need for different, highly specialized tools, which raises a huge set of cost, integration, and management issues. To address this challenge, many businesses are opting for an automated GRC (eGRC) solution, which aims to resolve the challenges associated with scattered and disconnected operational security processes through the centralization of data, alignment of processes and workflows, and clear enterprise-level visibility with trend and analysis metrics and reporting. 

 1 CPE Credit

The benefits of Automating GRC are substantial when businesses have a mature GRC program in place. On this self-study program you will learn some of the best practices organisations can adopt.

Participants who pass the exam will earn 1 CPE Credit from this program. 

Course Publication Date: September 1, 2020
Course Review Date: September 1, 2022

Facilitated by:

Colin Whittaker

Colin Whittaker, PCI Industry Alumni, Founder and Director Informed Risk Decisions Ltd. Colin has been instrumental in driving forward a risk and security strategy for payments over the last 15 years since he retired from the military in 2001, and took up the role of Head of Security at APACS. Whilst there he was one of the first people to be elected to the PCI SSC Board of Advisors where he was always keen to try and promote the differences in threat between Europe and UK, and the US. Since that election he hasn't moved far from the PCI domain. In 2010 he moved to Visa Europe and became the Vice President Payment System Risk with responsibilities for designing and operating the Visa Europe PCI compliance strategy for European merchants and service providers. He was also responsible for coordinating Visa Europe's approach to cardholder data breaches in Europe, and for the changes to the Visa Europe Compliance strategy through the creation of the Technology Innovation Program which gave the very first PCI DSS compliance relief for EMV chip accepting merchants. In 2015 he went independent and currently provides cyber security risk consultancy services to a wide range of public and private companies. Colin has presented on Information Security at major events around the world, and has published a number of papers on security.

Created by:

Chris Burton

Founder of Executive IT Forums, Inc. Program Director, IT GRC Forum. Chris has been working in the technology content marketing field for over 20 years focusing on enterprise cybersecurity and regulatory compliance in industries ranging from healthcare and finance to manufacturing and retail. In 2008 he founded Executive IT Forums, Inc, and set up the IT GRC Forum to produce educational content for Governance, Risk Management, and Compliance (GRC) Executives. Chris is primarily responsible for content design, course development, and delivery of educational programs, and he excels in helping clients to maximize the executive value achieved across GRC marketing campaigns.
NASBA Approved
GRCCPEacademy.org from Executive IT Forums, Inc.(Sponsor Id#: 112059) is registered with the National Association of State Boards of Accountancy (NASBA) as a sponsor of continuing professional education on the National Registry of CPE Sponsors. State boards of accountancy have final authority on the acceptance of individual courses for CPE credit. Complaints regarding registered sponsors may be submitted to the National Registry of CPE Sponsors through its website: www.nasbaregistry.org