Monthly Archives: October 2009

Integrated GRC: Improving Risk Assessment Using the Correct Risk Assessment Approach

Many of the organizations that I speak with on the topic of integrated GRC are looking for ways to improve their overall risk assessment processes. As the first part of part series of blog posts on the topic of risk … Continue reading

Posted in GRC, Risk Management | Tagged , , , , , | Leave a comment

The Problem With Belief Based Auditing

I few months ago I joined the Board of a non-profit health care organization. We have a budget of over $100 million a year. Like health care organizations everywhere we are fighting rising costs. Like the auditing profession, many of … Continue reading

Posted in Compliance, GRC, Internal Audit, Risk Management, Sarbanes-Oxley | Tagged , , , , | Leave a comment

Establishing the Context – A Required Step for Strategic ERM and GRC

Effective enterprise risk management and governance, risk, and compliance processes begins with establishing the context of the risk assessment. In the risk management literature, the “context” is commonly thought of as the opportunity, strategy, outcome or process on which stake-holders … Continue reading

Posted in GRC, Risk Management | Tagged , , , | Leave a comment