From the course: Leveraging AI for Governance, Risk, and Compliance
GRC overview
From the course: Leveraging AI for Governance, Risk, and Compliance
GRC overview
- I'll start at the top with governance, risk, and compliance, or GRC. Although you may see the G, the R, and the C lumped together as one role, these are truly three different job responsibilities. Let's start at the top. Governance is defined as overseeing the control or direction of something. So think about your policies, procedures, frameworks, and foundations. Next up is risk. Broadly speaking, it's the possibility of something bad happening. This could be an exploit or vulnerability, insider threat, or natural disaster. Last but not least, there is compliance. This is simply doing what you agreed to do or asked to do. This can range from heavy hitters, such as regulations in your industry, down to agreements made between businesses or with your customers or consumers. If you've been around GRC, this is just a quick refresher to the space, but if you're new, it helps you understand these three different but complimentary areas. This also helps lay the groundwork as we discuss what GRC has looked like over the years.