GRC Solutions Council

The OCEG GRC Solutions Council develops tools, guidelines, frameworks and related resources designed to help all organizations align their IT resources with GRC capabilities. Membership in the Technology Council is only available to OCEG Enterprise Members. For more information and membership requirements, please contact techchair@oceg.org.

A more radical view of what the Audit Committee should worry about in 2012 blog

PwC, and I am sure others, have given us their traditional, annual guide to the questions audit committees should address in 2012.

I think these are OK, but are they enough?

Read more
Excellent guidance on corporate governance from Australia blog

The ASX Corporate Governance Council, chaired by the Australian Securities Exchange (ASX), has released a second edition of Corporate Governance Principles and Recommendations (see here for the ASX announcement and related resources, or

Read more
Norman’s most popular 2011 posts on GRC, risk management, audit, and more blog

These are the posts on my personal blog that obtained the most views. The #1 post, on risk appetite, garnered nearly 3,000 views.

I will later share the top posts on the IIA blog.

Read more
Risk is not a quarterly exercise; it should be a way of life blog

The only way risk management has value is if it affects the way you do business. It must influence decisions and actions; otherwise, it is no more than decoration. Risk management should not be a ‘check-the-box’ activity. Used well, it can help an organization achieve and sustain optimal long-term performance.

Read more
Protiviti suggests Refocusing the Internal Audit Agenda blog

In their latest issue of The Bulletin, Protiviti summarizes recent developments in the business environment and suggests internal audit teams should capitalize on changing expectations. They highlight these areas:

Read more
OCEG Tech Council August Announcements blog

Greetings!

Summer is passing us by - I trust everyone is doing well.

Read more
Is there a proven link between corporate governance, ratings, and corporate performance? blog

In my IIA blog, I review a book on corporate governance (or at least a 5 page excerpt I find interesting). In the post, I quote sections where linkage is discussed, especially related to the HealthSouth Corp.

Read more
The GRC Survey: The results are in blog

The survey I ran at the end of 2010 had some interesting results. You can see the report, with my summary and comments, here.

Overall, there was an encouraging level of support for the OCEG definition of GRC and the perception that their business-oriented view of GRC has value.

Read more
Continuous auditing: putting theory into practice blog

One internal auditing topic that has been of great interest to me over the years is that of continuous auditing. I believe that the technique offers a great opportunity for internal auditing to move to the next level of service and value to its stakeholders – providing them with the assurance they need, when they need it.

Read more
Syndicate content