Tag: Risk Management
-

Why risk and compliance leaders should attend #RISK Expo Europe 2026
Read more: Why risk and compliance leaders should attend #RISK Expo Europe 2026Introduction: why #RISK Europe 2026 should be on every risk leader’s radar Risk is moving faster, crossing more business functions and creating pressure than ever before. Cyber risk now touches third-party oversight. Operational resilience depends on supplier visibility. AI governance is becoming a compliance, security and board reporting issue. This means risk leaders and their teams have a lot to…
-

Why easy login can create risk in GRC and Conflict of Interest systems
Read more: Why easy login can create risk in GRC and Conflict of Interest systemsBy Mike VidoniSenior GRC Client Executive & Customer Success, CoreStream GRC Key takeaways Introduction: When does convenience become a control weakness? GRC teams need people to use their systems. A Conflict of Interest process cannot work properly if employees, or board members struggle to complete disclosures because the process is unnecessarily complicated. But login design is not simply a usability decision. It…
-

What is ISO 27001? A practical guide to information security management
Read more: What is ISO 27001? A practical guide to information security managementAbstract ISO 27001 gives organizations a structured way to manage information security risk. But for many teams, the real challenge is not understanding the standard. It is maintaining the evidence, ownership and control visibility needed to prove the system works. This guide should explain what ISO 27001 is, why it matters, how certification works, what Annex A controls cover, and why…
-

5 overlooked retail GRC risks senior leaders should be watching
Read more: 5 overlooked retail GRC risks senior leaders should be watchingKey takeaways Retail leaders are focused on growth, margin, resilience, customer trust and operational performance. For GRC teams to add real value, they need to connect risk and controls to those outcomes, not manage them in isolation. Recent retail examples show why this matters. Lindsay Haselhurst, Chief Operating Officer at Currys, said retail crime statistics “make for difficult reading”, but the…
-

Stop playing defense: The comprehensive guide to enterprise risk management for value-based GRC leaders
Read more: Stop playing defense: The comprehensive guide to enterprise risk management for value-based GRC leadersThe enterprise risk management wake-up call Enterprise risk management (ERM) has been talked about for years. Yet, in practice, many programs still amount to little more than documentation and reporting. While, they may look reassuring on paper, they are rarely tested when it matters. In our conversation with our expert community, we have seen that…
-

Preview: Michael Rasmussen’s Perspective on CoreStream GRC’s Enterprise Risk Management Solution
Read more: Preview: Michael Rasmussen’s Perspective on CoreStream GRC’s Enterprise Risk Management SolutionCoreStream GRC for Enterprise Risk Management We invited renowned GRC analyst and expert Michael Rasmussen, who coined the term Governance, Risk, and Compliance (GRC), to conduct an impartial review of our Enterprise Risk Management (ERM) solution. To ensure a comprehensive and unbiased evaluation, Michael spoke directly with several of our enterprise risk users to gather…
-

Top tips for choosing your next GRC tool
Read more: Top tips for choosing your next GRC toolBased on the Pool Re’s experience in selecting a new GRC platform, here are three key factors to focus on when evaluating potential solutions. 1. Prioritize user experience A great GRC system should be intuitive and easy to use, especially for business users who aren’t working in it every day. “If you need to engage…
-

Lessons from ESRM UK 2025: Why Risk is About Outcomes, Not Obstacles
Read more: Lessons from ESRM UK 2025: Why Risk is About Outcomes, Not ObstaclesEnterprise Security Risk Management UK Event Risk and Compliance leaders from across the UK gathered in London for ESRM UK 2025, a flagship event exploring the evolving world of Enterprise Security Risk Management. Hosted on March 5th, the conference brought together experts from major organizations including Co-op, Jaguar Land Rover, and General Bank of Canada,…
-

What is the role of a Digital Risk Officer (DRO) and why is it important for your business?
Read more: What is the role of a Digital Risk Officer (DRO) and why is it important for your business?Key takeaways Digital risk is no longer just about websites, social channels, or digital assets. It now spans AI, cyber security, data protection, third-party technology, cloud platforms, regulatory evidence, brand reputation, and business resilience. PwC’s Global Compliance Survey 2025 found that 71% of organizations expect digital transformation initiatives over the next 3 years to require…