Newsletters Welcome, Guest Log In | Register

Enterprise Software

Insights on enterprise software markets to help define smart strategy

About this Blogger RSS

Subscribe

Sign up now and get the best business technology insights direct to your inbox.

  • Daily Edge
  • CTO Edge Update
  • Business Tools & Templates
  • Aligning IT & Business Goals
  • Maximizing IT Investments

1

In Enterprise Software, GRC Should be Spelled G and R and C

Posted by Dennis Byron Aug 15, 2008 3:02:15 PM

A summary of my recently completed research into the governance, risk and compliance (GRC) offerings of leading software suppliers and what users think about the subject is available on IT Business Edge here.

 

It's my kick-off deliverable to the ITBE contributors group as an analyst on enterprise software and related IT trends, following three months of very enjoyable ITBE blogging.  I hope the summary and other forthcoming ITBE articles generate the same kind of user-centric comments and e-mails that the blog has already sent my way.  We really want to hear from you, enterprise software suppliers and users alike.

 

My major finding with GRC as of July 2008 probably isn't surprising to those of you already using GRC software: one size does not fit all. Think of it as G and R and C as well as thinking of all the functions combined.  That the three have to be looked at separately implies that a good amount of in-house effort or outside consulting is needed if IT management and staff want to pull the three together for better control.  So it wasn't surprising that before the "ink was dry" on my summary, Microsoft and Bearing Point announced another GRC "solution" running on top of Microsoft SharePoint. The two companies' joint press release said:

The new risk-based compliance solution will address the unique needs of clients across all industries as they work to keep pace with today's increasingly complex regulations. Initially, the companies will aggressively market to pharmaceutical, energy and financial services companies as well as government agencies.

This concentration on three particular industries possibly signals a way to pull G and R and C together most easily, albeit still with systems integration help from someone like BearingPoint required (so it really isn't a "packaged solution").

 

Or you could lead the effort in your industry through an open source or other collaborative investment.  One of the major themes in my enterprise software blogging is that IT has to stop re-inventing and re-inventing and re-re-inventing the wheel. Software has to be dragged out of its cottage-industry stage kicking and screaming.

 

My secondary finding in the GRC research is that not that many IT managers and staff are thinking about GRC or "G and R and C" yet. That could be a problem because the interest of shareholders, stakeholders, customers, suppliers and your own management in the subject is becoming intense. That means IT is in peril of losing control of the resources for which it is responsible in a way similar to what happened during the PC revolution of the 1980s and 1990s.  Don't let that happen in your shop.

Add a comment Leave a comment on this blog post.
Aug 26, 2008 1:30 PM Guest elchork  says:

thanks for all your infos you publishishd.

 

very usefull.

 

hope you will be very sucsessful in your future.

 

elchork

Lowering Your IT Costs with Oracle Database 11g Release 2

This white paper identifies the key capabilities a database management solution needs to successfully deliver more information with higher quality of service, make more efficient use of IT budgets, and reduce the risk of change in data centers.

Software Forum: Information On Demand Virtual Experience

This interactive virtual forum presents leading IT experts providing the insights you need to turn your information into a strategic driver for innovation, business optimization and competitive differentiation.

Responding to Change

The technology tips and tools to enhance your ability to respond to business change with ease and success.

Virtualization & Business Continuity

Virtualization solutions, management tips and industry insights to promote and insure the lifespan of your business.

Energy Efficiency

Best practices to optimize computing ability while minimizing power costs.

Cost Cutting through Server Consolidation

Products, management tools, and industry insights that enhance the value of virtualization for your business.

Six Sigma Framework for IT

This collection of tutorials, calculators, and templates will show you how to apply six sigma thinking to IT service management.

Learn more >

All About Reducing Your IT Costs

Looking to cut costs? Use this research-driven Excel tool to pinpoint which IT cost reduction measures best fit your needs.

Learn more >