About Forrester
Forrester Research, Inc. is an independent research company that provides pragmatic and forward-thinking advice to global leaders in business and technology.

Vikram leads the forecast team, which is responsible for producing all forecasts within M&S research. He is focused on the consumer commerce areas including retail, travel, and financial services. He is keenly involved in understanding the evolution of consumers' online behavior and technology adoption.
Vikram came to Forrester Research through its acquisition of Jupiter Research, where he started in July 2000. Prior to Jupiter, Vikram worked at IRI, a leading market research company, where he worked closely with some of the leading CPG companies.
Vikram often appears on TV, radio, and comments in the press on the US online retail and travel industry. He has been quoted in The L.A. Times, Business Week, The New York Times, CNN Money, and American Banker. He has also appeared on CNBC, Bloomberg TV, and Radio, NPR, Fox Business News, and ABC.
Vikram earned an M.B.A. from Virginia Tech and a B.Com from N.M College in Mumbai, India.
Executive Overview: The Governance, Risk, And Compliance Playbook
Unexpected events are at best distracting and at worst catastrophic for an organization as it strives to meet its objectives. Risk and compliance professionals must help their colleagues anticipate...
What is the size of the governance, risk, and compliance (GRC) market, and what is the market growth rate in India? Who are the major GRC vendors in India, and what are the areas of opportunity?
How are governance, risk, and compliance (GRC) platforms priced? What can I expect for implementation costs?
Continuous Improvement: The Governance, Risk, And Compliance Playbook
When you're challenged by a constantly changing regulatory landscape, business environment, and risk profile, it's easy to overlook the critical role corporate culture plays in keeping compliance and...
Strategic Plan: The Governance, Risk, And Compliance Playbook
Governance, risk management, and compliance (GRC) are far too often positions of emergency response. What's worse, as you constantly rush to respond to new mandates, enforce policies, or pull...

We're looking for software that assists with the management and auditing of gifts that our employees receive from customers and suppliers.
GRC Programs Are Set To Increase Their Breadth More Than Their Maturity
Those who have been involved with GRC initiatives or technologies may often conceive of a tipping point, where GRC comes of age and its value propositions and use cases become clear for all global...
Developing And Managing Efforts To Control Unacceptable Levels Of Risk
From understanding comes action. Your risk management efforts up to this point will have yielded a list of concerns; a measure of how much these concerns could affect objectives; and a decision of...

Business Case: The Governance, Risk, And Compliance Playbook
As the governance, risk, and compliance (GRC) platform market matures, product vendors struggle to point to credible return on investment figures, and potential buyers similarly struggle when asked...
Road Map: The Governance, Risk, And Compliance Playbook
The governance, risk management, and compliance (GRC) technology market is one of fluctuation, confusion, and contention. Many technologies relevant for governance, risk management, and compliance...

Organization: The Governance, Risk, And Compliance Playbook
Governance, risk, and compliance (GRC) encompass an incredibly broad set of functions for organizations in any geography, in any industry. In fact, almost all employees play some role in helping...

Processes: The Governance, Risk, And Compliance Playbook
As a risk professional, you are currently in a position to exert more influence on your organization and increase the value you and your team can offer. Many of you will feel pressure to develop...

Governance, risk, and compliance (GRC) as a concept continues its steady march toward recognition as an accepted business practice. And even if they aren't using the term, organizations around the...
What would you see as the governance, risk, and compliance characteristics of each of the following groups: 1) laggards; 2) middle of the pack; and 3) early adopters? Are there any special...
As Leaders, BWise, MetricStream, IBM OpenPages, And RSA Archer Continue To Push The Envelope
Innovation among top enterprise GRC platform vendors has kept up an impressive pace as vendors aim to stay one step ahead of their customers' own advancements in governance, risk, and compliance...

The Forrester Information Security Maturity Model is a framework that consists of four main security domains (oversight, technology, process, and people) with 25 functions and 123 low-level...

We (IT security management) are currently discussing our tasks in relation to those of the auditing department. We would like to get advice about a typical or legally defined separation between the...
Among risk professionals who have successfully navigated their organization through a crisis, almost all will say that they had grossly underestimated the difficulty of communicating effectively...
Estimating Levels Of Risk Exposure To Help Guide Informed Decisions
Opposition to adopting formal risk management tends to use the process of risk measurement as its attack target — it's too subjective, it's too complicated, or it's too much investment just to...
Practical Steps To Start Uncovering And Treating The Hidden Risks In Third-Party Relationships
The growing reliance on third-party providers is an increasingly uncomfortable trend for security and risk professionals. Financial pressures and efficient delivery models create great incentives for...
RSA Archer, Agiliance, Rsam, Symantec, and Modulo Are All Leaders For Very Different Reasons
IT governance, risk, and compliance (GRC) vendors continue to show strong technical and strategic advances, while the market itself still struggles to define its direction. A small set of vendors...
In the cyclical nature of increasing and decreasing industry regulations, we are clearly on an upswing. Regulators that have faced public scorn for lax oversight are reacting with newfound...
Documenting The Sources Of Uncertainty That Might Affect Your Organization, Project, Asset, Or Objective
Enterprise risk management (ERM) programs are helping to break down organizational silos so that executives can gain insight on the risks that may affect all aspects of their business. Unfortunately,...