A GRC team is a cross - functional department that is responsible for managing governance, risk management, and compliance objectives within an organization. In simple words, this exclusive group acts as the guardian of a firm’s compliance and security posture....
Author
ANUpam Saha
Audit Team Manager
Anupam Saha is an accomplished Audit Team Manager and Leader with strong expertise in implementing and managing compliance standards across diverse domains. He serves as an ISO 27001 Lead Auditor, leading organizations in building effective and resilient information security frameworks. Anupam specializes in guiding teams through structured audit processes, ensuring accuracy, consistency, and adherence to global standards. His leadership approach focuses on optimizing controls, strengthening governance, and enhancing overall security posture. With a strategic and detail-oriented mindset, he plays a key role in driving continual improvement and fostering a culture of security excellence.
Most Recent Articles
Cross-Border AI Governance Framework for Global Compliance
Companies operating from multiple regions need a clear cross-border AI governance framework to operate responsibly and legally. This type of framework combines multiple rules and gives teams a simple way to manage risk, implement controls, and stay accountable. As...
Vendor Relationship Management: A Practical Guide for Businesses
Vendor relationship management is more than just keeping a list of suppliers. It’s a system to grow value, control risk, and stay compliant with clear owners, metrics, and evidence. If you are a procurement lead, vendor manager, or part of a risk or compliance team,...
Who Audits the Auditor? Why AI Auditing Itself Needs Independent Oversight
Recently, Deloitte found itself in the spotlight for all the wrong reasons. The firm later revealed that its AI-generated report for a major government client had skipped key oversight procedures. The Australian Financial Review reported that the firm publicly...
CONTENTS OF THE INTERNAL AUDIT REPORT
LAST UPDATE -- 09-25-2025 Many companies and organizations encounter a plethora of issues in today’s complex and changing business market, which can have an influence on their performance, reputation, and long - term viability. Organizations use various ways to...
DIFFERENCE BETWEEN CERTIFICATION AUDIT AND SURVEILLANCE AUDIT
LAST UPDATE -- 09-25-2025 In today’s world, organizations are working hard to show they are committed to being the best. They do this by improving continuously and following industry standards for Quality Management Systems (QMS). To make sure they’re meeting these...
WHAT IS RISK MANAGEMENT AUTOMATION? A GUIDE TO COMPLIANCE AND RISK REDUCTION
The recent IBM report states that the global average cost of a data breach has reached $4.88 million in 2024. So, for any organization that is aiming to scale in this business environment, implementing a solid risk management strategy is essential. But the traditional...
CPS 234 Explained: How It Differs from ISO 27001 (APRA Guide)
When APRA rolled out CPS 234 on 1 July 2019, it emerged as an important reminder for Australian banks, insurers, and super funds. The message was clear: information security is central to survival in a digital world that’s full of risks. However, the extent of this...
THE ROLE OF AI RISK MANAGEMENT IN ENTERPRISE SECURITY
AI risk management is the process of identifying, assessing, mitigating, and monitoring potential risks associated with the design, development, and deployment of artificial intelligence (AI) systems. These risks could emerge from issues such as technical failures,...
HOW DOES ISO 42001 ALIGN WITH GLOBAL AI REGULATIONS?
LAST UPDATE -- 08-20-2025 Artificial intelligence is now at the center of global regulation. Recently, Forbes has stated that the global CEOs are treating AI governance as an ethical and regulatory imperative in 2025. This trend is likely to stay and evolve because...









