Difference between revisions of "Governance, Risk and Compliance"

From Open Risk Manual
 
Line 1: Line 1:
 
== Definition ==
 
== Definition ==
'''Governance, Risk and Compliance '''. GRC is the umbrella term covering an organization's approach across these three areas.
+
'''Governance, Risk and Compliance '''. GRC is the umbrella term covering an organization's approach across these three areas and the fulfillment of the respective requirements in a management systems context.
 +
 
 +
* [[Internal Governance]] refers to the controls and processes that make sure of the effectiveness, efficiency, economics, and ethics (and possibly environment sustainability) of an entity.
 +
* The [[Risk Management Function]] is the set of activities within an organization that are addressing Risk Management needs.
 +
* [[Compliance]] is the respect for the internal and external compulsory rules that an organization must follow.  
  
 
[[Category:Business Continuity]]
 
[[Category:Business Continuity]]
 
[[Category:Internal Governance]]
 
[[Category:Internal Governance]]

Revision as of 14:06, 4 October 2021

Definition

Governance, Risk and Compliance . GRC is the umbrella term covering an organization's approach across these three areas and the fulfillment of the respective requirements in a management systems context.

  • Internal Governance refers to the controls and processes that make sure of the effectiveness, efficiency, economics, and ethics (and possibly environment sustainability) of an entity.
  • The Risk Management Function is the set of activities within an organization that are addressing Risk Management needs.
  • Compliance is the respect for the internal and external compulsory rules that an organization must follow.