The Changing Nature Of Governance, RIsk And Compliance
News outlets over the past year have given us almost daily examples of change in the GRC landscape. The recent stories coming out of Davos have been no exception... giving us some truly fascinating debates on the necessity and detriment of regulations. As quoted in a Wall Street Journal article on Sunday, Deutsche Bank AG Chief Executive Josef Ackermann argued against heavy-handed regulation, saying, "We should stop the blame game and we should start looking forward... if you don't have a strong financial sector to support the this recovery... you're making a huge mistake and you will regret that later on," he said. French President Nicholas Sarkozy summed up the opposing argument in his keynote, explaining, "There is indecent behavior that will no longer be tolerated by public opinion in any country of the world... That those who create jobs and wealth may earn a lot of money is not shocking. But that those who contribute to destroying jobs and wealth also earn a lot of money is morally indefensible."
Risk and compliance professionals, whether they side more with Ackermann or Sarkozy, still have to ready themselves for continued backlash against large financial firms (and corporations as a whole). US Representative Barney Frank said he’s expecting Congress to pass new regulation this spring, but assured the audience that they had learned valuable lessons about stifling competition from the Sarbanes Oxley Act. But just in case he had forgotten, Lloyd’s of London Chairman Lord Levene joked, “Sarbanes Oxley was a huge success, not for New York and Wall Street, but for London and the City... We wanted to build a statue to Messrs. Sarbanes and Oxley for sending so much business to us.”
As government regulations change, GRC vendors continue to evolve their offerings as well. In my recent GRC Trends 2010 report, I mentioned the increasing role of technologies like BPM, BI, and CCM will play. For another look at the GRC technology landscape, check out CFO Magazine’s great, well-rounded piece from yesterday, GRC: The Solution Remains Elusive.
Reduce Email Archives up to 60%
Are you considering implementing a proactive archiving and eDiscovery solutions? This paper summarizes 15 separate soft cost savings when implementing Symantec Enterprise Vault and the Clearwell eDiscovery Platform.
Aberdeen Report: To Patch, or Not to Patch? (Not If, But How)
The report explores the correlation between the current use of patch management and the level of endpoint-related risk that companies are effectively accepting.
Recent Comments
- The CISO's Survival Guide to Securing Data
- Data Privacy and Protection in Production Environments: New Research from Ponemon Institute
- FireEye Advanced Threat Protection KnowledgeVault
- Five Tips to Consider in a Data Security Strategy for Smartphones and Tablets
- Moving Your Email to the Trusted Cloud
- Comprehensive Server Protection

