For Security & Risk Professionals (Length: 13 pages)

October 7, 2008

Best Practices: Implementing A Governance, Risk, And Compliance Program

by Chris McClean

with Stephanie Balaouras, Khalid Kark, Alissa Dill, Lauren E. Nelson


Executive Summary (This is a document excerpt)

Software applications for managing governance, risk, and compliance (GRC) continue to mature with impressive features and functions. Even more impressive are the organizational and strategic advancements companies are making by closely linking these three traditionally distinct functions; benefits include reduced risk exposure, lower audit costs, better overall compliance, and more informed decision-making. To identify the best practices for implementing a GRC program and realizing these benefits, Forrester interviewed 21 professionals who have demonstrated success in this area and 23 software vendors that market GRC products. To replicate similar success in your GRC program, you will need to focus on selling GRC value, practicing good GRC project management, and embedding GRC into corporate culture.

Buy Risk-Free

Download and print PDF immediately. Price: US $499

Our Money-Back Guarantee: If you are not completely satisfied, return it for a full refund within three weeks of your online purchase.

Already a Forrester Client?
Log in to read this document.

Add to cart

TABLE OF CONTENTS

NOTES & RESOURCES

itemGRC Is A Light At The End Of A Very Daunting Tunnel

itemGRC Implementation Best Practices

itemBest Practice No. 1: Become A GRC Salesperson

itemBest Practice No. 2: Remember The Basics Of Project Management

itemBest Practice No. 3: Embed GRC Into The Culture

itemForrester's GRC Implementation Next Practices

itemIdentifying Your Challenges

itemSupplemental Material

For this report Forrester interviewed 21 professionals who have successfully implemented a GRC program as well as 23 GRC software vendors.

Related Research Documents

itemThe Forrester Wave™: IT Risk And Compliance Software, Q2 2008

June 30, 2008

itemTrends 2008: The Changing Landscape For Governance, Risk, And Compliance Professionals

February 22, 2008

itemThe Forrester Wave™: Enterprise Governance, Risk, And Compliance Platforms, Q4 2007

December 21, 2007

Find Documents In Related Categories

This document falls under the following categories. Click on a link below to find similar documents.

Analyst: Chris McClean
Technology: Governance, Risk, & Compliance, Security & Risk, Security Program Governance
Geography: Asia Pacific, Europe, North America

Archived Teleconference:
corner border corner
Ratings and Comments
NOT YET RATED
corner border corner