• What GRC leaders are really asking for now: key takeaways from our April community event

    What GRC leaders are really asking for now: key takeaways from our April community event

    On 23 April, at CoreStream GRC’ latest community event, we brought together clients, partners and senior GRC leaders in London for our April customer community showcase. Even with tube strikes disrupting the city, people still made the effort to attend, join remotely, and contribute. That mattered. It said a lot about the kind of community…

  • Anthropic, OpenAI, and the UK government just sent the same cyber warning – here’s what you need to know as a GRC leader

    Anthropic, OpenAI, and the UK government just sent the same cyber warning – here’s what you need to know as a GRC leader

    Last week’s AI headlines did not just signal another round of model launches. They signaled a shift in cyber risk that business leaders should take seriously. In the space of a few days, Anthropic unveiled Mythos, OpenAI expanded trusted access to a more cyber-capable model for verified defenders and the UK government issued an open…

  • Gifts and Entertainment software RFP template: questions and scoring 

    Gifts and Entertainment software RFP template: questions and scoring 

    Enter your details and we’ll email you the G&E RFP template: From talking with our expert community, we know that for a lot of teams, the search for gifts and entertainment software starts when the current process stops feeling defensible.  Maybe declarations still sit across email chains, spreadsheets, shared folders, or basic forms that were never built for sensitive compliance…

  • As the US cools and Europe pushes on, ESG reporting is becoming a governance problem

    As the US cools and Europe pushes on, ESG reporting is becoming a governance problem

    Recent ESG headlines are not pointing in one simple direction. In the U.S., the political environment has become less supportive of climate-related regulation under the current administration, but investor pressure has not disappeared. In the past week alone, investors pressed Amazon, Microsoft, and Google for sharper disclosure on the water and power demands of their…

  • The ICO has put AI hiring under the risk and compliance spotlight. Enterprise leaders should pay attention.

    The ICO has put AI hiring under the risk and compliance spotlight. Enterprise leaders should pay attention.

    On 31 March 2026 UK’s Information Commissioner’s Office (ICO), called on businesses to review their use of automated decisions in recruitment and published fresh expectations for organizations using automated decision-making in hiring. The regulator said it had engaged with more than 30 employees, wrote to 16 organizations likely to be using automated decision-making in candidate…

  • The value-based guide to GDPR: EU and UK privacy compliance optimization

    The value-based guide to GDPR: EU and UK privacy compliance optimization

    At its best, General Data Protection Regulation (GDPR) was never meant to be a paperwork regime. It was meant to change behavior. GDPR is a framework for making better decisions about data, proving accountability, reducing operational confusion, building trust, and protecting the business as it grows. That is the part too many organizations still miss…