Remove 2003 Remove Evaluation Remove Risk Management
article thumbnail

What Is GRC? Governance, Risk, and Compliance Explained

BMC

GRC as an acronym stands for governance , risk , and compliance , but the term GRC means much more than that. The OCEG (formerly known as “Open Compliance and Ethics Group”) states that the term GRC was first referenced as early as 2003, but was mentioned in a peer reviewed paper by their co-founder in 2007.

article thumbnail

Statutory Cyber Incident Reporting in the USA

Plan B Consulting

The first state to have this type of law was California in 2003 and all states have, on the whole, followed the basic tenets of their law. The SEC has published proposed rules to enhance and standardise disclosures regarding cybersecurity risk management, strategy, governance, and cyber security incident reporting by public companies.

Banking 40
article thumbnail

What Is GRC? Governance, Risk, and Compliance Explained

BMC

GRC as an acronym stands for governance , risk , and compliance , but the term GRC means much more than that. The OCEG (formerly known as “Open Compliance and Ethics Group”) states that the term GRC was first referenced as early as 2003, but was mentioned in a peer reviewed paper by their co-founder in 2007.