Standards and guidelines

Putting Principles into Practice®

Apply the standards of the GRC Capability Model (Red Book), and guidance provided in domain supplements, to “put principles into practice” throughout risk management, compliance and ethics programs in your organization. Then, assess how well you are applying Red Book standards by using the GRC Assessment Toolkit (Burgundy Book) to evaluate your program design and operating effectiveness.

Thumbnail
GRC-XML Risk and Control Taxonomy Version 1.0
Thumbnail
OCEG worked with a committee of hundreds of esteemed experts, including many in-house GRC professionals, external advisors and...