Chapter 6. Governance of Risk and Compliance

by Robert Cirabisi and Kenneth V. Handal

Every organization is exposed to events that have some likelihood of adversely impacting its objectives. This exposure includes laws and regulations—such as the Foreign Corrupt Practices Act (FCPA) and privacy regulations—that can result in significant consequences to a business. Proper management of, for example, relationships with vendors, customers, or other third parties, and of confidential information of employees and third parties, is required to avoid risk of fines and penalties. This is a common view of risk—one that is very much focused on compliance with laws and regulations.

In order to mitigate these risks, organizations perform governance activities ...

Get Under Control: Governance Across the Enterprise now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.