• bitcoinBitcoin(BTC)$85,472.00-0.45%
  • ethereumEthereum(ETH)$2,722.64-0.58%
  • tetherTether(USDT)$1.000.00%
  • binancecoinBNB(BNB)$779.62-0.67%
  • rippleXRP(XRP)$1.562.27%
  • usd-coinUSDC(USDC)$1.000.00%
  • solanaSolana(SOL)$116.900.00%
  • tronTRON(TRX)$0.342705-0.86%
  • zcashZcash(ZEC)$1,627.956.00%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.031.76%
  • HyperliquidHyperliquid(HYPE)$95.31-0.05%
  • dogecoinDogecoin(DOGE)$0.0994281.90%
  • moneroMonero(XMR)$562.17-2.16%
  • whitebitWhiteBIT Coin(WBT)$85.87-0.50%
  • USDSUSDS(USDS)$1.00-0.01%
  • chainlinkChainlink(LINK)$12.75-0.74%
  • cardanoCardano(ADA)$0.2503232.42%
  • RainRain(RAIN)$0.012852-4.40%
  • leo-tokenLEO Token(LEO)$8.98-0.05%
  • stellarStellar(XLM)$0.2138112.20%
  • bitcoin-cashBitcoin Cash(BCH)$343.4527.42%
  • nearNEAR Protocol(NEAR)$4.763.86%
  • uniswapUniswap(UNI)$9.7512.16%
  • Ethena USDeEthena USDe(USDE)$1.000.01%
  • litecoinLitecoin(LTC)$61.972.99%
  • avalanche-2Avalanche(AVAX)$10.850.95%
  • daiDai(DAI)$1.00-0.01%
  • CantonCanton(CC)$0.113129-4.33%
  • USD1USD1(USD1)$1.000.00%
  • hedera-hashgraphHedera(HBAR)$0.0950491.54%
  • suiSui(SUI)$1.010.49%
  • the-open-networkGram (prev. Toncoin)(GRAM)$1.441.86%
  • shiba-inuShiba Inu(SHIB)$0.0000061.44%
  • BittensorBittensor(TAO)$305.81-5.21%
  • Global DollarGlobal Dollar(USDG)$1.000.00%
  • crypto-com-chainCronos(CRO)$0.0652140.40%
  • MemeCoreMemeCore(M)$1.28-3.48%
  • paypal-usdPayPal USD(PYUSD)$1.00-0.01%
  • tether-goldTether Gold(XAUT)$4,319.23-0.15%
  • BitwayBitway(BTW)$0.959.92%
  • okbOKB(OKB)$121.770.19%
  • Circle USYCCircle USYC(USYC)$1.140.01%
  • Ripple USDRipple USD(RLUSD)$1.000.00%
  • BlackRock USD Institutional Digital Liquidity FundBlackRock USD Institutional Digital Liquidity Fund(BUIDL)$1.000.00%
  • aaveAave(AAVE)$147.624.72%
  • Ondo US Dollar YieldOndo US Dollar Yield(USDY)$1.15-0.01%
  • mantleMantle(MNT)$0.683.07%
  • EthenaEthena(ENA)$0.2125052.17%
  • OndoOndo(ONDO)$0.4325031.47%
  • pepePepe(PEPE)$0.000005-2.86%
TradePoint.io
  • Main
  • AI & Technology
  • Stock Charts
  • Market & News
  • Business
  • Finance Tips
  • Trade Tube
  • Blog
  • Shop
No Result
View All Result
TradePoint.io
No Result
View All Result

Getting the Board on Board with GRC – Especially as AI Adoption Increases

September 11, 2024
in AI & Technology
Reading Time: 4 mins read
A A
Getting the Board on Board with GRC – Especially as AI Adoption Increases
ShareShareShareShareShare

As regulations increase and new tech converges, the governance, risk and compliance (GRC) function is quickly becoming more important to the health, finances and security of enterprises today. However, GRC needs support to do its job well, and that requires support from the top down – which hasn’t always been easy to obtain.

Board members need to understand the value of GRC today, especially amid rising AI adoption, which introduces an organization to new risks faster than ever. In other words, you’ve got to get the board on board.

YOU MAY ALSO LIKE

Apple Links Landmarks On Its Maps App To Hidden Histories Podcast Episodes

Nokia Open-Sources AnyJev: A Training-Free Layer That Turns Any Open LLM Into a Calibrated Decision Model

Increasing regulations and new tech

Organizations today face all sorts of regulations that they must comply with. A major development in the U.S. has been new rules from the Securities and Exchange Commission (SEC) that require publicly traded companies to disclose a cybersecurity incident within four business days or risk fines.

We’re already seeing the SEC crack down. For instance, in May 2024, the Intercontinental Exchange, parent company of NYSE, was fined for failing to disclose a cyber intrusion within the required time frame.

We’re also seeing new and emerging attempts to regulate AI use. In the EU, for example, the AI Act was enacted in May. Late last year in the U.S., the Biden Administration released an Executive Order: Safe, Secure, and Trustworthy Development and Use of Artificial Intelligence. The order initiates what the Congressional Research Service referred to as “a government-wide effort to guide responsible artificial intelligence (AI) development and deployment through federal agency leadership, regulation of industry, and engagement with international partners.”

And of course, these are just the latest large government actions. An organization’s industry and location determine all manner of mandates and regulations that must be complied with – from GDPR, PCI and DORA to HIPAA and countless others.

While AI regulations are still new, the EU’s rules are likely to serve as a framework for other countries. And in the U.S., individual states have already begun developing new legislation. As companies rush to adopt AI into their information technology footprint, it’s important to understand not just the existing regulations but also those in the pipeline.

The role of GRC and winning hearts and minds

The GRC function performs the due diligence to help ensure businesses are meeting all the various regulations and compliance mandates to which they’re subject. From driving policies and standards to overseeing risk register to inform decisions, GRC is the gatekeeper of compliance requirements.

Compliance is far from being seen as exciting and glamorous. Corporate leaders can often perceive it as a nuisance; they see it as getting in the way of business, but the reality today is that it’s extremely important to the business. In fact, it can even become a business enabler.

For this to happen, though, GRC needs board-level support to do its job well – and that can be easier said than done. One challenge, especially when it comes to cybersecurity and AI regulations, is that not all boards are savvy when it comes to technology and security. While awareness is growing, a report from September 2023 found that just 12% of S&P 500 companies had a board director with relevant cyber credentials. Getting the right information from the right places is another ongoing challenge.

Getting the board to care

One key factor is supporting the CISO and their peers who interact with the board to help bridge the gap between the GRC function and the board, to help the latter understand the former’s importance and value. Education is key. The board needs to understand its role and what’s expected of directors when there is, for instance, a breach that requires disclosure.

Companies are becoming more advanced in terms of how they collect and report on compliance metrics, which is a great step forward. But there’s a lot of information that needs to be prioritized. Information needs to be presented in a way that is simple, relevant and comprehensive without being overwhelming.

The board needs to ask questions to ensure they understand the risks that the organization needs to focus on and the real impact on the business if an incident occurs. It comes down to giving them the information they need to understand risk in an accessible way with a holistic view. GRC leads can help provide that risk quantification.

Five best practices for getting the board on board with GRC

Use these best practices to help board members work most effectively with the GRC team:

  • Inform board members on the risk framework in use to showcase structure and credibility, such as NIST CSF 2.0 or ISO27001. Communicate relevant compliance requirements and their implications in a way that is meaningful to the business.
  • Educate board members on the organization’s use of AI, including how and where it’s using AI across the business and the impacts of its use on compliance requirements and monitoring.
  • Engage with external experts to conduct independent assessments of the company’s risk profile and provide recommendations.
  • Support preparedness based on the standards used through risk assessment and ongoing monitoring, which helps to refine response capabilities.

GRC, security and AI

Successful cyber GRC functions provide consistent data and metrics across all organizational layers, ensuring everyone from operational staff to the board is working with the same information. In other words, GRC can support both strategic oversight and operational management from the same information. This approach provides transparency and adaptability to new regulations and threats.

GRC has always been important, but now AI has entered the regulatory picture. It’s changing the threat landscape, the operating model, the products and the services. Boards need to become savvier when it comes to cybersecurity and AI, especially specifics around how the company is using AI. Using the best practices discussed above, GRC leads have the opportunity to build the board’s knowledge of these topics in ways that can have lasting positive impacts on an organization’s security and compliance posture.

Credit: Source link

ShareTweetSendSharePin

Related Posts

Apple Links Landmarks On Its Maps App To Hidden Histories Podcast Episodes
AI & Technology

Apple Links Landmarks On Its Maps App To Hidden Histories Podcast Episodes

September 23, 2026
Nokia Open-Sources AnyJev: A Training-Free Layer That Turns Any Open LLM Into a Calibrated Decision Model
AI & Technology

Nokia Open-Sources AnyJev: A Training-Free Layer That Turns Any Open LLM Into a Calibrated Decision Model

September 23, 2026
Kyutai Releases Voice of Reason: A Speech-Native Model that Solves Spoken Math with Reinforcement Learning
AI & Technology

Kyutai Releases Voice of Reason: A Speech-Native Model that Solves Spoken Math with Reinforcement Learning

September 23, 2026
OpenAI Releases GPT-6 Sol and Luna: 50% Cheaper API Pricing and Benchmarks
AI & Technology

OpenAI Releases GPT-6 Sol and Luna: 50% Cheaper API Pricing and Benchmarks

September 23, 2026
Next Post
Anais Dotis-Georgiou, Developer Advocate at InfluxData – Interview Series

Anais Dotis-Georgiou, Developer Advocate at InfluxData - Interview Series

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result
MrBeast talks about his new novel with James Patterson

MrBeast talks about his new novel with James Patterson

September 17, 2026
Woman narrowly escapes Russian drone strike near Kyiv

Woman narrowly escapes Russian drone strike near Kyiv

September 21, 2026
NVIDIA And Google’s New Coalition Wants To Speed Up AI Data Center Power Grid Connections

NVIDIA And Google’s New Coalition Wants To Speed Up AI Data Center Power Grid Connections

September 17, 2026

About

Learn more

Our Services

Legal

Privacy Policy

Terms of Use

Bloggers

Learn more

Article Links

Contact

Advertise

Ask us anything

©2020- TradePoint.io - All rights reserved!

Tradepoint.io, being just a publishing and technology platform, is not a registered broker-dealer or investment adviser. So we do not provide investment advice. Rather, brokerage services are provided to clients of Tradepoint.io by independent SEC-registered broker-dealers and members of FINRA/SIPC. Every form of investing carries some risk and past performance is not a guarantee of future results. “Tradepoint.io“, “Instant Investing” and “My Trading Tools” are registered trademarks of Apperbuild, LLC.

This website is operated by Apperbuild, LLC. We have no link to any brokerage firm and we do not provide investment advice. Every information and resource we provide is solely for the education of our readers. © 2020 Apperbuild, LLC. All rights reserved.

No Result
View All Result
  • Main
  • AI & Technology
  • Stock Charts
  • Market & News
  • Business
  • Finance Tips
  • Trade Tube
  • Blog
  • Shop

© 2023 - TradePoint.io - All Rights Reserved!