Tag: Risk Management
-

CoreStream GRC & BRAVE: a differentiated transformative partnership helping directors move from managing risk to confident decision making
Read more: CoreStream GRC & BRAVE: a differentiated transformative partnership helping directors move from managing risk to confident decision makingObjectives@Risk™ Powered by CoreStream GRC combines objective-centric governance, risk and resilience expertise with flexible GRC technology to enable better decisions in an increasingly uncertain and fast-moving world. Organizations are operating in an environment where disruption is no longer an occasional event. Recent Corporate Governance Institute research highlighted the confidence paradox amongst boards. 85% are confident in the information they receive but only 35% feel they adequately understand and have access to…
-

There are no new risks, only new combinations: how pre-mortems and digital twins help GRC teams anticipate cascading risks
Read more: There are no new risks, only new combinations: how pre-mortems and digital twins help GRC teams anticipate cascading risksKey takeaways Introduction: when risks combine resilience can suffer When national governments began locking down in spring 2020, few risk registers anywhere carried a line for “global shortage of automotive microchips.” Carmakers, forecasting a pandemic-driven collapse in demand, canceled their orders just as consumer electronics manufacturers absorbed the freed-up capacity to build laptops and games consoles for people stuck at…
-

Risk
Read more: RiskWhat is risk? Risk is the effect of uncertainty on an organization’s objectives. In simple terms, risk is what could happen that may affect whether an organization achieves what it set out to do. In governance, risk, and compliance (GRC), risk matters because decisions are rarely made with perfect certainty. Organizations need a clear way…
-

CoreStream GRC to attend Gartner’s Enterprise Risk, Audit & Compliance Conference 2026
Read more: CoreStream GRC to attend Gartner’s Enterprise Risk, Audit & Compliance Conference 2026CoreStream GRC, the GRC platform that truly works for you, is pleased to be attending the Gartner Enterprise Risk, Audit & Compliance Conference 2026 in Grapevine, Texas, bringing together risk, audit, compliance, and governance leaders to explore the future of enterprise risk management, AI, regulatory intelligence, and business resilience. Traditional risk programs are often too rigid and retrospective to…
-

Why risk and compliance leaders should attend #RISK Expo Europe 2026
Read more: Why risk and compliance leaders should attend #RISK Expo Europe 2026Introduction: why #RISK Europe 2026 should be on every risk leader’s radar Risk is moving faster, crossing more business functions and creating pressure than ever before. Cyber risk now touches third-party oversight. Operational resilience depends on supplier visibility. AI governance is becoming a compliance, security and board reporting issue. This means risk leaders and their teams have a lot to…
-

Why easy login can create risk in GRC and Conflict of Interest systems
Read more: Why easy login can create risk in GRC and Conflict of Interest systemsBy Mike VidoniSenior GRC Client Executive & Customer Success, CoreStream GRC Key takeaways Introduction: When does convenience become a control weakness? GRC teams need people to use their systems. A Conflict of Interest process cannot work properly if employees, or board members struggle to complete disclosures because the process is unnecessarily complicated. But login design is not simply a usability decision. It…
-

What is ISO 27001? A practical guide to information security management
Read more: What is ISO 27001? A practical guide to information security managementAbstract ISO 27001 gives organizations a structured way to manage information security risk. But for many teams, the real challenge is not understanding the standard. It is maintaining the evidence, ownership and control visibility needed to prove the system works. This guide should explain what ISO 27001 is, why it matters, how certification works, what Annex A controls cover, and why…
-

5 overlooked retail GRC risks senior leaders should be watching
Read more: 5 overlooked retail GRC risks senior leaders should be watchingKey takeaways Retail leaders are focused on growth, margin, resilience, customer trust and operational performance. For GRC teams to add real value, they need to connect risk and controls to those outcomes, not manage them in isolation. Recent retail examples show why this matters. Lindsay Haselhurst, Chief Operating Officer at Currys, said retail crime statistics “make for difficult reading”, but the…
-

Stop playing defense: The comprehensive guide to enterprise risk management for value-based GRC leaders
Read more: Stop playing defense: The comprehensive guide to enterprise risk management for value-based GRC leadersThe enterprise risk management wake-up call Enterprise risk management (ERM) has been talked about for years. Yet, in practice, many programs still amount to little more than documentation and reporting. While, they may look reassuring on paper, they are rarely tested when it matters. In our conversation with our expert community, we have seen that…
-

Preview: Michael Rasmussen’s Perspective on CoreStream GRC’s Enterprise Risk Management Solution
Read more: Preview: Michael Rasmussen’s Perspective on CoreStream GRC’s Enterprise Risk Management SolutionCoreStream GRC for Enterprise Risk Management We invited renowned GRC analyst and expert Michael Rasmussen, who coined the term Governance, Risk, and Compliance (GRC), to conduct an impartial review of our Enterprise Risk Management (ERM) solution. To ensure a comprehensive and unbiased evaluation, Michael spoke directly with several of our enterprise risk users to gather…