Page 276 - Cyber Defense eMagazine Annual RSA Edition for 2024
P. 276
Why Companies Are Turning to Holistic GRC
Strategies
By Matt Kunkel, Co-Founder and CEO, LogicGate
The idea of holistic governance, risk, and compliance (GRC) isn’t exactly new. Modern businesses
engage in a wide range of GRC-related activities, and those activities generate a lot of data. But when
that data is siloed, its utility is limited. Businesses don’t just need to quantify their third-party risk—they
need to know how changes to that risk might impact other areas of the business. They don’t just need to
know which security controls they have in place—they need to know how adding or removing controls
might impact the organization’s overall risk posture. When it comes to security and compliance, data can’t
stand alone. Only when data is truly integrated can a holistic approach to GRC be put into practice.
Of course, that’s easier said than done. Ten years ago, it wasn’t even an option, because the technology
needed to integrate wide ranging security data in a holistic way simply didn’t exist. Today, it’s much easier
to accomplish – so why aren’t more companies adopting the solutions needed to make data silos a thing
276