John Paul Tran John Paul Tran

Why Vendor Management is Critical

Vendor management is crucial in today's interconnected business landscape. As organizations increasingly rely on external vendors to provide essential services and technology solutions, the need to ensure their reliability and security becomes paramount.

Read More
John Paul Tran John Paul Tran

Women in Cybersecurity and Legal Services

For our latest podcast, All About Risk, our CEO Lily is joined by a selection of the greatest female minds managing GRC programs for leading US Law Firms. Today’s podcast covers…

Read More
John Paul Tran John Paul Tran

Cybersecurity Spend Grows as Part of IT Budgets

According to research from Gartner, IT security accounted for just 5.2% of IT budgets in 2022, indicating a relatively small portion. However, this percentage represents an improvement from the previous year, driven by the objective of risk reduction.

Read More
John Paul Tran John Paul Tran

How a Powerful GRC Platform Can Save Millions

In today's fast-paced business world, staying ahead of risks and compliance challenges is crucial for multi-million dollar organizations. That's where a robust Governance, Risk, and Compliance (GRC) platform comes into play.

Read More
John Paul Tran John Paul Tran

We are Living in a Control Jungle

So many organizations today are lost in a deep, dark jungle of control inertia. The word ‘Control’ is being used too loosely, and is a confusing term at best, in particular when applied out of context.

Read More
John Paul Tran John Paul Tran

A letter to WiCys, Women in Cybersecurity

Our CEO, Lily Yeoh, recently spoke at the National Women in Cybersecurity Conference (WiCys) in Denver, with more than 160 attendees for her session on Integrated Risk Management.

Read More
John Paul Tran John Paul Tran

Why / What You Should Know About the Proposed NYDFS 500 Regulatory Updates

The New York Department of Financial Services (NYDFS) will soon be updating the NYDFS 500 requirement. The proposed changes stand to have significant impact on all risk management programs beyond the Finance industry, as the SEC, FTC and the Attorney General’s Office are all following suit and adopting the same/similar requirements.

Read More
John Paul Tran John Paul Tran

Managing Risk Through a Hiring Freeze?

We are all aware of the significant number of layoffs occurring, in particular in technology firms. Beyond this, many if not most companies are currently holding back and implementing a hiring freeze

Read More
John Paul Tran John Paul Tran

Continuous Risk Monitoring

Last week we discussed the value of an independent risk assessment, today we focus on the next layer of risk management - Continuous risk monitoring…

Read More
John Paul Tran John Paul Tran

The Value of an Independent Risk Assessment

Risk assessment is an essential component of any business, making sure that operations are running smoothly and ensuring that the organization is meeting safety and regulatory standards...

Read More