Chapter 7. IT Governance, Risk, and Compliance

by Rob Zanella

Inevitably, as companies strive to achieve more effective governance, the focus turns to IT. With computer systems ubiquitous throughout the many departments and geographies of almost every organization, IT can help provide the consistency needed to effectively systematize governance. Therefore, IT governance, risk, and compliance play an integral role in any GRC initiative.

This chapter focuses on the key roles and responsibilities within the IT Compliance Group in support of GRC and the key guidelines and practices that can help enable a successful IT risk and compliance environment.

Get Under Control: Governance Across the Enterprise now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.