About Forrester
Forrester Research, Inc. is an independent research company that provides pragmatic and forward-thinking advice to global leaders in business and technology.

Vikram leads the forecast team, which is responsible for producing all forecasts within M&S research. He is focused on the consumer commerce areas including retail, travel, and financial services. He is keenly involved in understanding the evolution of consumers' online behavior and technology adoption.
Vikram came to Forrester Research through its acquisition of Jupiter Research, where he started in July 2000. Prior to Jupiter, Vikram worked at IRI, a leading market research company, where he worked closely with some of the leading CPG companies.
Vikram often appears on TV, radio, and comments in the press on the US online retail and travel industry. He has been quoted in The L.A. Times, Business Week, The New York Times, CNN Money, and American Banker. He has also appeared on CNBC, Bloomberg TV, and Radio, NPR, Fox Business News, and ABC.
Vikram earned an M.B.A. from Virginia Tech and a B.Com from N.M College in Mumbai, India.
Executive Overview: The Governance, Risk, And Compliance Playbook
Unexpected events are at best distracting and at worst catastrophic for an organization as it strives to meet its objectives. Risk and compliance professionals must help their colleagues anticipate...
Rarely does vendor consolidation reflect such fragmentation of a market. Picking up on the recent acquisition trend of independent market leaders, IBM today announced plans to acquire long-time GRC...
Organization: The Governance, Risk, And Compliance Playbook
Governance, risk, and compliance (GRC) encompass an incredibly broad set of functions for organizations in any geography, in any industry. In fact, almost all employees play some role in helping...


I recently recorded a podcast with Stephanie Balaouras, discussing the potential for increased collaboration between crisis communication, business continuity, and risk management functions....
Documenting The Sources Of Uncertainty That Might Affect Your Organization, Project, Asset, Or Objective
Enterprise risk management (ERM) programs are helping to break down organizational silos so that executives can gain insight on the risks that may affect all aspects of their business. Unfortunately,...
Strategic Plan: The Governance, Risk, And Compliance Playbook
Governance, risk management, and compliance (GRC) are far too often positions of emergency response. What's worse, as you constantly rush to respond to new mandates, enforce policies, or pull...

Processes: The Governance, Risk, And Compliance Playbook
As a risk professional, you are currently in a position to exert more influence on your organization and increase the value you and your team can offer. Many of you will feel pressure to develop...

My colleague Boris Evelson, who covers business intelligence for Forrester and serves business process professionals, recently wrote a great post about the use of spreadsheets for business...
On the heels of Forrester's GRC Market Overview last month, this week we published my Governance, Risk, And Compliance Predictions: 2011 And Beyond report. Based on our research...
Last week saw news that yet another top GRC software vendor has been acquired, following in the footsteps of Paisley, Archer, OpenPages, among others. BWise has always been an impressive vendor in...
Determining Whether, When, And How To Treat Risks
The goal of a risk management program is to drive effective decisions and actions based on an understanding of how uncertainty may affect objectives. However, even mature programs that have...
Developing And Managing Efforts To Control Unacceptable Levels Of Risk
From understanding comes action. Your risk management efforts up to this point will have yielded a list of concerns; a measure of how much these concerns could affect objectives; and a decision of...

Today IBM announced plans to acquire the Fitch Group’s Algorithmics, a heavy-hitter in financial risk management software and services market, for $387 million. Here are my initial...
A few weeks ago, Stephanie Balaouras and I posted a podcast on a topic that has been a high priority for many of our customers — how to apply risk management techniques to IT security. We know...
What would you see as the governance, risk, and compliance characteristics of each of the following groups: 1) laggards; 2) middle of the pack; and 3) early adopters? Are there any special...
I’m proud to announce that this week Forrester launched our Governance, Risk, and Compliance Playbook, a collection of in-depth reports covering the critical information you need to implement a...
Making Sure Today's Compliance Dollars Tackle Tomorrow's Compliance Challenges
As long as the general population suffers as a result of corporate malfeasance and missteps, government oversight will continue to grow. If compliance is one of your responsibilities, the near future...
In my new report, The Risk Manager's Handbook: How To Measure And Understand Risks, I present industry best practices and guidance on ways to articulate the extent or size of a risk. More than...
Have you been having trouble getting your board of directors to care about information security? This weekend’s news that Nasdaq’s Directors Desk web application was...
Guest post from Researcher Nick Hayes. If you had to go up one level in a train station, would you take the stairs or use the escalator? Most people would choose the escalator. But what if the...
The Forrester Information Security Maturity Model is a framework that consists of four main security domains (oversight, technology, process, and people) with 25 functions and 123 low-level...

GRC Programs Are Set To Increase Their Breadth More Than Their Maturity
Those who have been involved with GRC initiatives or technologies may often conceive of a tipping point, where GRC comes of age and its value propositions and use cases become clear for all global...