Blog Posts Business Management

GRC 101 – an Introduction to Governance, Risk Management and Compliance

Blog: Capgemini CTO Blog

The acronym “GRC” stands for governance, risk management and compliance. But what is the scope of GRC and what are its boundaries? Is it a technology, a tool or a process? Does GRC refer to the platform? Should your organization maintain a separate GRC department? In this blog, I provide an introduction into what GRC is, answering key questions on where it acts and why it’s important.

What is GRC?

Many people think of a platform when referring to GRC. But GRC refers to a capability that helps an organization achieve its objectives, with responsibility running right across the organization. GRC is a set of processes and practices that runs across departments and functions. GRC might be enabled by a dedicated platform and other tools, although this is not mandatory. While organizations generally don’t need to maintain a separate GRC department, most organizations have a team in place to manage the GRC platform and tools.

What is the scope of GRC?

By definition, the scope of GRC doesn’t end with just governance, risk and compliance management, but also includes assurance and performance management. In practice, however, the scope is further getting extended to information security management, quality management, ethics and values management, and business continuity management.

In order to get a better understanding of GRC, we first need to understand the different dimensions of a business:

The dimensions of a business

GRC 101

 

The scope of GRC based on the definition and current trends

GRC 101

Why is GRC important?

An effective GRC implementation helps the organization to reduce risk and improve control effectiveness, security and compliance through an integrated and unified approach that reduces the ill effects of organizational silos and redundancies.

To find out more about Capgemini’s GRC services, contact: lakshminarsimhan.s@capgemini.com

Click here to learn more about how Capgemini’s Governance, Risk Management and Compliance service can ensure compliance, enhance your reputation and deliver real business value.

Click the links to read the other blogs in this series:

Audit and Compliance Productivity Driven by Artificial Intelligence

Leave a Comment

Get the BPI Web Feed

Using the HTML code below, you can display this Business Process Incubator page content with the current filter and sorting inside your web site for FREE.

Copy/Paste this code in your website html code:

<iframe src="https://www.businessprocessincubator.com/content/grc-101-an-introduction-to-governance-risk-management-and-compliance/?feed=html" frameborder="0" scrolling="auto" width="100%" height="700">

Customizing your BPI Web Feed

You can click on the Get the BPI Web Feed link on any of our page to create the best possible feed for your site. Here are a few tips to customize your BPI Web Feed.

Customizing the Content Filter
On any page, you can add filter criteria using the MORE FILTERS interface:

Customizing the Content Filter

Customizing the Content Sorting
Clicking on the sorting options will also change the way your BPI Web Feed will be ordered on your site:

Get the BPI Web Feed

Some integration examples

BPMN.org

XPDL.org

×