The London edition of the 2023 GRC Summit is all set to take place on October 16th and 17th at the prestigious Royal Garden Hotel. Following the remarkable success of our 2023 Miami edition, where GRC industry experts and thought leaders convened to exchange knowledge and forge valuable connections, we are delighted now to offer you the same experience in London.
Now in its 11th year, the GRC Summit has been the cornerstone of the GRC community, serving as a platform for networking, knowledge-sharing, and the sharing of best practices. It continues to set the standard for the future of GRC. With the compelling theme, "Experience the Power of Connection," this year's Summit will discuss the latest trends and best practices in Connected GRC and the risks and opportunities of artificial intelligence (AI). Prepare to engage with a distinguished global community of risk, compliance, audit, cyber, and ESG professionals for an unmatched experience.
As we countdown to the Summit, we want to ensure that you have a truly extraordinary experience by providing you with invaluable insights on how to optimize your time. Here is the comprehensive Agenda for the Summit, along with a lineup of our esteemed Speakers. Additionally, we've handpicked a selection of must-attend sessions that promise to be both enlightening and transformative. Don't miss out on these exceptional opportunities.
Keynotes from Our Co-CEOs
The keynote speeches have consistently been a highlight of the past GRC Summits, and this year will be no different.
Gaurav Kapoor, Co-Founder and Co-CEO, will share the opening keynote on Experience the Power of Connection, where he will dive deep into how ConnectedGRC is powering agility and resilience through connected, cognitive, and cloud-based risk management.
Prasad Sabbineni, Co-CEO, will share the Product Keynote on Cognitive, Continuous, and Cloud: The Future of GRC. Find out how automated workflows, AI-driven insights, and cloud adoption are revolutionizing decision-making, operational efficiency, adaptive compliance, and more.
Expert Panels
We have multiple expert panels lined up, specifically tailored to tackle GRC challenges in today's increasingly interconnected risk landscape. Don’t miss out on:
Driving Operational Resilience through Governance, Risk, Compliance, Cyber and Audit, with Chandrra Sekhaar, Chief Audit Executive (EMEA) - SMF 5, Mizuho, Nor Harliza Baharom, General Counsel, Compliance Strategy & Planning, Petroliam Nasional Berhad (PETRONAS) and Jacqui McDonald, CIO Group Finance, RFT Technology, Barclays.
The Changing Role of Internal Audit, with Brandon Wright, Head of Books & Records Audit, Bilfinger SE, Ivan Martinez, Chief Audit Executive, Banco Santander London Branch, and Despina Andreadou, Chief Audit Executive, Eurobank S.A.
The Three Cs of Modern Compliance: Connection, Collaboration, and Culture, with Peter Funck, Head of GRC, Swedish Road Administration, Sophie Dupre-Echeverria, Chief Risk & Compliance Officer, GIB Asset Management, Former – Schroders, Phil Crook, Head of Compliance, Nationwide Building Society, and Nael Kamil Nor Hisham, Senior Manager, Compliance Strategy & Planning, Petroliam Nasional Berhad (PETRONAS).
Ensuring Collaboration Across the Lines of Defense to Strengthen Internal Controls with Fazal Mohammed, Head of ORM - Asset Management, Phoenix Group, Dorothea Liebl, Head of Internal Control Governance, Siemens Energy AG, and Benjamin Rowsell, Head of Enterprise and Operational Risk, Nationwide Building Society.
Innovation and Risk: Encouraging a Risk-Taking Mindset for Business Growth with Philipp Herrmann, Head of Risk Management, Operations Department, Abu Dhabi Investment Authority, Petr Brezina, Head of Company Risk, KBC Asset Management and Sahil Bhardwaj, Group Head of Internal Audit & Risk, British Standards Institution.
Customer Case Studies
Presented by our customers, these real-life success stories provide deep insights into how organizations have successfully navigated the complex landscape of GRC challenges and offer a wealth of knowledge and motivation to propel your own GRC initiatives forward. Make sure to add the following sessions to your schedule.
Customer Case Study: Nordea
Brian F. Sørensen, Chief Execution Leader - Group Risk Change Management, Nordea
Jacob Holmehave, Head of Group Risk Office, Nordea
Customer Case Study: Siemens Energy
Michael Gropp, IT Program Manager GRC, Siemens Energy
Customer Case Study: Nationwide Building Society
Phil Crook, Head of Compliance, Nationwide Building Society
Sarah Harman, Leader - Operational Risk Framework and Systems, Nationwide Building Society
Product Sessions
Interested to learn more about the functionalities and benefits of MetricStream’s GRC products? Our product-focused sessions will provide comprehensive insights, empowering you to fully understand the capabilities and business benefits of our offerings. Be sure to be there for the following sessions:
Power What’s Next in Enterprise & Operational Risk Management
Power What’s Next IT & Cyber Risk, Compliance Management
Digital Transformation and Operational Resilience: Adapting to New Technologies and Workflows
Digital Operational Resilience: Building Robust Strategies to Safeguard Business Continuity in the Face of Disruptions
Low Code No Code
See you in London!
The highlighted list above offers just a glimpse of what awaits you. Check out our Agenda to know more. Delve deeper into the expertise of our esteemed speakers. Read: GRC Summit, London, 2023: Meet the Speakers.
If you haven't registered yet, don't miss out—secure your spot now! Register here.
In today's dynamic business landscape, the effective management of Governance, Risk, and Compliance (GRC) has never been more critical. GRC challenges have increased as economic, geopolitical, social, healthcare, cybersecurity, and other systemic and internal risks escalate. Results from a joint survey on GRC readiness from global GRC think tank OCEG and MetricStream found that 67% of respondents highlighted the urgent need for integrated processes and technologies to improve their GRC performance.
To this end, knowledge graphs emerge as a sophisticated solution, shedding light on the intricate relationships between a multitude of entities. These structured representations of information span people, places, objects, events, and abstract concepts, offering a holistic view of the interconnected web of knowledge within an organization. So, how can knowledge graphs reshape the GRC landscape? Let's delve into the transformative power they hold.
Knowledge graphs serve as a potent tool to fortify risk management practices in GRC, facilitating the identification, assessment, communication, management, and automation of risks, empowering organizations to build a robust GRC program through the following.
Knowledge graphs empower organizations to pinpoint and assess risks more effectively. Imagine a scenario where a knowledge graph is used to dissect potential risks associated with a specific supplier. By examining the supplier's web of connections, including customers, competitors, and regulatory bodies, organizations can identify nuanced risks such as supply chain disruptions, compliance issues, or even reputational concerns.
Effective risk communication is pivotal in decision-making. Knowledge graphs offer a visual storytelling platform. They enable organizations to convey complex risk profiles to stakeholders in a lucid and succinct manner. Visual representations of these graphs elucidate the connections between different risk factors, enhancing comprehension among both technical and non-technical stakeholders.
Managing risks is an ongoing process. Knowledge graphs play a pivotal role in monitoring the status of mitigation plans and swiftly identifying emerging risks. Imagine a dynamic knowledge graph that tracks the evolving risk landscape, sending proactive alerts when anomalies or potential threats are detected. This proactive approach empowers organizations to stay one step ahead in risk management.
Automating GRC Processes:
Automation is the cornerstone of efficiency in modern organizations. Knowledge graphs are instrumental in streamlining GRC processes, such as risk assessment and compliance reporting. By automating these tasks, GRC professionals can allocate more time to strategic initiatives and value-added activities, reducing manual overhead.
By seamlessly connecting disparate data, knowledge graphs offer unparalleled insights and efficiency in managing GRC across industry verticals. Here are a few illustrations:
Picture a financial institution that employs a knowledge graph to unearth and evaluate risks associated with its customers. By capturing granular data on financial transactions, customer relationships, and affiliations with other entities such as banks, it identifies risks like money laundering, fraud, or credit risk. Moreover, the knowledge graph provides actionable insights, enabling personalized risk mitigation strategies and enhanced customer due diligence.
In the realm of healthcare, precision is paramount. Here, a healthcare entity utilizes a knowledge graph to oversee risks linked to clinical trials. The knowledge graph captures a wealth of data, including details about trials, patient involvement, trial progress, and medical research outcomes. By connecting the dots within this expansive dataset, organizations can optimize patient safety, adhere to regulatory requirements, and expedite drug development processes.
Government agencies are entrusted with safeguarding citizens and upholding regulations. A government agency harnesses a knowledge graph to automate compliance reporting, which often is a labor-intensive and error-prone process. By consolidating data on regulations, legislative changes, and agency activities, the knowledge graph automatically generates compliance reports for pertinent stakeholders. Furthermore, it facilitates real-time monitoring of regulatory changes, enabling proactive adjustments to policies and procedures.
These examples underscore the versatility and transformative potential of knowledge graphs in GRC. As this technology evolves, we anticipate even more ground breaking applications, further elevating risk management practices. By harnessing the full power of knowledge graphs, organizations can navigate the complex GRC landscape with precision, agility, and foresight.
Have you had the opportunity to witness MetricStream’s AiSPIRE in action yet? If not, don't miss out! AiSPIRE represents a game-changing advancement in the GRC landscape. It uses AI/ML, GRC ontology-based knowledge graphs, and more to transform the way you approach GRC.
AiSPIRE can empower your organization to:
Connect with us to explore the future of GRC powered by AiSPIRE, and discover how it can drive efficiency, agility, and effectiveness in your organization's GRC endeavors.
Request a demo today.
Download Product Overview: MetricStream AiSPIRE
We are closing in on the big day! Just four weeks to go until the 2023 GRC Summit, to be held on the 16th and 17th of October at the Royal Garden Hotel in London.
During the past decade, MetricStream's flagship event, the GRC Summit, has consistently provided opportunities for the GRC community to connect, share insights, exchange best practices, and, most importantly, set the stage for what's next in GRC. Whether it's an emerging technology, a new process, or a regulation that's going to impact the way you do business, you'll learn about it here.
Now in our 11th year, and after an exciting edition of the GRC Summit in Miami this June, we will now be in London. The two-day event will bring together the most influential risk leaders to discuss the latest trends and best practices in Connected GRC and the risks and opportunities of artificial intelligence (AI). Our theme is "Experience the Power of Connection," empowering you to achieve more as you continue to thrive on risk!
Explore our Agenda.
As the foremost thought-leadership event in the GRC space, the GRC Summit consistently showcases some of the most brilliant minds in the fields of risk assessment, compliance management, cyber risk, audit, and environmental, social, and governance (ESG). In the upcoming edition of the summit, we are thrilled to present a lineup of over 30 seasoned experts who will grace our stage to deliver compelling keynote addresses, offer invaluable insights, share best practices, and, most importantly, recount their own enriching GRC journeys.
Scroll down to explore the profiles of a few of our esteemed speakers and gain a deeper understanding of their areas of expertise.
Chandrra Sekhaar, Chief Audit Executive (EMEA) - SMF 5, Mizuho, is a Senior Audit Leader and pacesetter who initiates action and excitement in the controlled compliance and risk-driven environment and removes skepticism and obstacles to advance the business and capture excellence. A firm believer in strategic control impact and a transformational leader and coach, he promotes team values, builds collaboration, and secures buy-in for change.
Jacob Holmehave, Head of Group Risk Office, Nordea, is a former external consultant and keynote speaker within change management and transformation. Today, Jacob is the business owner of the development of Nordea’s new Integrated Risk Management Application (IRMA) – a large digital and cultural transformation that will change the way Nordea works with risk management and compliance within all three lines of defense.
Dorothea Liebl, Head of Internal Control Governance, Siemens Energy AG, has been with Siemens since 1999. She has also served as the Head of Risk and Internal Control at Siemens Global Services and Siemens Real Estate.
David Storey, Vice President - Health, Safety & Environment, dnata, is responsible for the development and implementation of dnata's global HSE strategy as part of the global management team. With over 20+ years of experience in airline, ground operations and safety, David has worked for more than two decades in the Middle East region for large international airlines. David holds an MSc in Aviation Safety and is a member of the Royal Aeronautical Society (MRAeS).
Phil Crook is Head of Compliance, Nationwide Building Society, whose current responsibilities include being the Accountable Executive for the implementation of their first Regulatory Change Management Tool, leading a business-as-usual team that focuses on Risk Insight, Regulatory Developments, Data Analytics, Prudential Compliance and Wholesale Conduct. He joined Nationwide in 2021 following 11 years at Lloyds Banking Group across the three lines of defense, with expertise across Regulatory Compliance, Operational Risk, Retail banking products and Wealth management.
Dr. Jenny J. Birdi, Head of Operational Risk and Risk Strategy UK, HSBC, has been with HSBC for over 25 years. She is currently the Head of Operational Risk and Risk Strategy for the UK ring-fenced bank, having been appointed to this double-hatted role in April 2018. She was previously the Head of Three Lines of Defense Execution for Operational Risk.
Philipp Herrmann, Head, Risk Management, Operations Department, Abu Dhabi Investment Authority (ADIA), is responsible for leading the Operational Risk Management practice for the Department and co-leading Enterprise Risk Management efforts. Joining ADIA in January 2016, Philipp plays a key role in shaping ADIA's risk landscape, including the development of Risk Policies, advancement of Risk Culture, and oversight of the MetricStream application.
Ivan Martinez, Chief Audit Executive, Banco Santander London Branch, is the Head of Internal Audit Santander CIB UK, and is responsible for designing and developing the annual audit plan covering all risks of the investment banking activities in the UK.
Peter Funck, as Head of GRC, Swedish Road Administration, helps the Swedish Transport Administration strengthen the GRC areas by developing and implementing a new department responsible for the management and coordination of the second-line activities as well as general governance and risk frameworks.
Brian Sorensen, Chief Execution Leader - Group Risk Change Management, Nordea, has 25+ years of experience within the banking industry, with a majority spent within project and program management and application implementation and the latest 8 years within non-financial risk management.
Sarah Harman, Leader - Operational Risk Framework and Systems, Nationwide Building Society, has over 20 years of financial services experience. Her responsibilities include being accountable for the setting of the Enterprise Risk Management framework and owning, developing, and maintaining the Societies’ Risk system.
Sophie Dupre-Echeverria, Chief Risk & Compliance Officer, GIB Asset Management, Former – Schroders, is responsible for driving an effective risk culture throughout the company, designing the risk and compliance frameworks, and overseeing risk management and regulatory compliance practices. Sophie joined GIB (UK) with extensive experience in the field, having previously served as Executive Director for Compliance and Operational Risk Control at UBS Asset Management.
Despina Andreadou, Chief Audit Executive, Eurobank S.A., is for the last 25 years the Group Chief Audit Executive of Eurobank S.A, a European banking organization offering universal banking across four countries. Being one of the four Systemic banks in Greece, Eurobank has a strong presence in Bulgaria, Romania, and Cyprus and offers Wealth Management services in Luxembourg and London.
Excited to hear and interact with our speakers? Register now.
Delve into our full lineup of speakers and explore their profiles.
MetricStream leaders Gaurav Kapoor, Co-Founder and Co-CEO, and Prasad Sabbineni, Co-CEO, will also be sharing their insights at the London summit.
If you’re excited about attending – get your ticket now! Register now.
Watch this space for updated information on the speakers, workshops, agenda, and other key highlights of the London GRC Summit.
Global businesses spend billions of dollars and allocate a significant percentage of their workforce toward GRC functions. They are also seeking new technologies to optimize and streamline their GRC programs. According to the MetricStream-OCEG market readiness survey, 18% of businesses intend to invest in GRC technologies in 2023, with 29% planning to do so in the next 3 years. However, companies are still finding it extremely challenging to handle the scale and complexity of various GRC requirements due to the constantly evolving regulatory compliance and risk landscapes, along with maintaining the efficiency of the internal audit processes. Additionally, organizations are increasingly seeking proactive ways to assess, predict, and protect against traditional risks as well as emerging ones such as global pandemics, war, calamities triggered by climate changes, etc.
From risk identification and assessment to compliance monitoring and reporting, AI offers a range of possibilities that can revolutionize the way organizations approach GRC. AI capabilities can provide preventive, predictive as well as diagnostic approaches to secure and empower the GRC processes enabling businesses to not only thrive but derive maximum benefits in the present volatile market conditions. AI tools can help forecast events, understand trends, and anticipate occurrences in near real-time by analyzing massive volumes of data to safeguard their business.
We would like to highlight the cutting-edge AI use cases that are reshaping GRC practices, augmenting and streamlining traditional GRC processes, and delivering unprecedented insights, efficiency, and effectiveness.
Recent bank crises have raised concerns about the stability of the banking system and its impact on the global economy. It has highlighted the critical need for policymakers and business leaders to work together to find comprehensive solutions to the challenges faced by the industry.
AI technologies are revolutionizing the way financial organizations approach risk.
One of the key challenges in regulatory compliance is ensuring awareness of regulatory updates. On average, a large financial organization may receive around 200 regulatory alerts per day, often with stringent timelines for the business processes to adapt to the regulation. Traditional processes for regulatory change management cannot track these rapid changes, leading to slower adoption time, and resulting in huge regulatory fines and other compliance risks.
Artificial Intelligence and machine learning algorithms in regulatory compliance can improve data governance, enhance continuous control monitoring capabilities, and automate compliance checks—all of which can reduce the risk of non-compliance. AI-powered systems can provide real-time insights, proactive alerts, and predictive analytics to help compliance functions to identify and address compliance issues more effectively and efficiently.
AI is rapidly becoming a critical tool in Cyber GRC. In an era of the Metaverse, decentralized ecosystems, cloud instances, mobile, and billions of IOT devices spread worldwide, cyber threats have increased in frequency, complexity, and sophistication. AI-powered systems in cyber risk management can help organizations augment their cyber defense capabilities through advanced threat detection, predictive analytics, and real-time monitoring.
Audit management is a critical function for organizations to ensure compliance, identify risks, and drive operational excellence. With the advancement of AI, the audit landscape is undergoing a transformative shift.
Lastly, coming to what’s being hailed as ‘the revolution of the year’—ChatGPT. Both ChatGPT and Bard, examples of generative AI based on LLM (Large Language Models), will also be game changers in the GRC world! LLMs can be employed in several areas—from generating reports and summarizing findings of risk assessment policies to generating ideas for new controls to mitigate the risk of fraud and, most obviously, acting as a guiding chatbot to end users.
AiSPIRE, an industry-first, state-of-the-art cloud-based product offering from MetricStream, can empower your organization’s GRC functions with proactive intelligence backed by powerful AI- algorithms.
By leveraging large language models, GRC ontology-based knowledge graphs, and generative AI capabilities, AiSPIRE has the power to utilize the full potential of an organization’s existing GRC and transactional data. Unlike other GRC tools that rely on manually defined rules and workflows, AiSPIRE effectively utilizes your organization’s data to train advanced machine learning models and AI.
AiSPIRE can empower your organization to:
Interested to know more? Request a demo today!
Download Product Overview: MetricStream AiSPIRE
Just a few short weeks ago, on June 13-15, 250+ governance, risk, and compliance leaders braved the Miami heat for the event of the summer: The GRC Summit. I had the privilege of being the MC, and it was invigorating, given the breadth and depth of content, and being face-to-face with so many inspiring leaders.
For two and half days, MetricStream was privileged to host some of the leading minds in GRC – including 50+ speakers – who shared best practices, case studies, and insights on where leaders should focus and what they should prioritize and enjoyed the time to network with colleagues and celebrate as we announced the 2023 GRC Journey Awards winners.
I wanted to share a few highlights and key themes that I experienced. For video highlights and presentations, please visit the 2023 GRC Summit site.
If there was one overall theme that surfaced in almost every discussion, it was how artificial intelligence presents an immense opportunity to gain even greater efficiency while at the same time introducing a whole new field of risks to manage and mitigate. Most panels focused on some element of AI – the possibilities to automate, make recommendations, and remediate, as well as the potential risks and rewards.
Of course, AI isn’t new. Many researchers point to British computer pioneer Alan Turing as the father of AI in the 1940s, and we’re all familiar with machine learning for processing vast amounts of data to make decisions easier. Some argue that the history of AI goes all the way back to Plato! (See this fun history from Tableau.)
But the explosion of generative AI with ChatGPT from Open.ai onto the scene last November has changed everything. Nearly every session at the Summit touched on AI in some way:
AI’s ability to automate processes like control monitoring, third-party risk evaluation, creation of a common view of risks across your enterprise, and so much more is groundbreaking. (See the discussion of MetricStream’s just-announced product AiSPIRE, below, for more on this aspect!)
Here are two quotes that sum up the depth of discussions around AI.
“We need GRC for AI, not just AI for GRC,” explained Gunjan Sinha, Co-Founder and Executive Chairman, MetricStream.
Prasad Sabbineni, Co-CEO, MetricStream, cautioned on over-regulation. “Use common sense to harness the power of AI before you over-regulate,” he said.
A top highlight of the summit was the launch of MetricStream’s brand-new product AiSPIRE- an industry-first AI-powered, knowledge-centric GRC product designed to gather intelligence from an organization’s existing GRC and risk data to break down siloes and provide guidance to improve the effectiveness of existing programs.
What’s exciting about AiSPIRE is that it connects with any GRC platform, creating connected insights from underlying risk and control data, and providing recommendations to improve the performance of existing risk and control environments.
AiSPIRE stands apart from other GRC tools that rely on manually defined rules and workflows and works by leveraging your organization’s data to train advanced machine learning models and AI. It further can continuously and intelligently sense risk and control deficiencies, patterns of over-testing and under-testing of controls.
The result? AiSPIRE, powered by AI, enables you to anticipate risks with proactive planning and prioritization of risk assessments, control testing, issue, and action planning. We believe it’s a game-changer – and we invite you to learn more about MetricStream AiSPIRE today!
Cyber risk was also a primary topic of focus. Now a critical concern for organizations across all industries – a top 10 risk according to the World Economic Forum, with a data breach cost at a global high of $4.4M according to thinktank the Ponemon Institute – cyber risk was on attendees’ minds. Discussions centered around various strategies to effectively manage it, including:
The current complexities in the regulatory environment, the pace of change along with cross-border compliance and compounding compliance costs was also top of mind.
My favorite quote came from Kellie Bickenbach, Head of Control Assurance, First Citizens Bank. During the session on Effectively Managing Operational Risks Through Control Rationalization for Improved Decision-Making, Kellie said, “I think of a control as hungry mouths that need to be fed. For every control there is care and feeding.”
This summed up the discussion well.
Managing risk effectively today has now become a vital asset in strengthening strategic foresight. Viewed through the lens of growth, it represents value and opportunity. But today, risks are interconnected. Viewed in isolation they can lead to hidden and potentially catastrophic consequences.
Gaurav Kapoor, Co-CEO and Co-Founder, best summarized it when he said. “On the surface, tidal islands are like risks. They appear to have no connection but under the water line, they are all connected.”
As organizations strive to attain a competitive edge in the market, a key differentiator will be their ability to implement a connected approach to risk management. This, along with the adoption of technologically advanced GRC tools, will help organizations strengthen their operational resiliency strategies.
True to the theme The Power of Connection, the Summit was also notable for how it united the strengths of some of the best minds in GRC.
Connecting with Peers
The Summit also served as a potent networking platform for promoting collective growth, fostering innovation, and driving the field of GRC forward. The sense of collaboration, connection, and community at the Summit amazed me: experts were quick to share how they solved their challenges and sign up to help each other moving forward. The connections did not stop at the Summit.
Amidst the bustling atmosphere during networking sessions, GRC leaders and practitioners shared experiences, exchanged best practices, and discussed challenges. The multiple themes and threads of discussion also acted as a major source of encouragement for those who are about to embark on their own GRC journey.
As we wrapped up our days in Miami, I heard a lot of “great conference” and “you hit our GRC questions on the head.” All credit goes to the event team for their organization and the superb presenters for sharing their GRC experiences and wisdom.
We’ll be doing it again in October in London! We hope to see you there! Register now.
Learn more on what was discussed at the GRC Summit: Download the presentations. Register to watch the videos.
The GRC Summit 2023 is all set for June 14th and 15th at the Hyatt Regency in Miami. Building on the resounding success of our extremely successful in-person 2022 London Summit, we are thrilled to meet in person in the US after two years of the summit being held virtually,
For over a decade, the GRC Summit has been a beacon for the GRC community, enabling the fostering of connections, sharing of insights, and exchanging of best practices. It has continuously set the stage for what’s next in the world of GRC. Under the compelling theme of Experience the Power of Connection, this year's Summit promises to be our best yet. Prepare to join an esteemed global community of risk, compliance, audit, cyber, and ESG professionals for an unparalleled experience.
As we enter the exciting final week, we want to ensure that you have a truly exceptional experience with tips on how to make the most of your time. Here is the comprehensive Agenda for the Summit, along with a lineup of our esteemed Speakers. Additionally, we have highlighted some of the top must-attend sessions that you wouldn't want to miss out on.
The keynote speeches have always been a standout feature of the GRC Summit, and this year is no exception. The opening and closing keynotes on Days 1 and 2 will see MetricStream leaders Gaurav Kapoor, Co-Founder and Co-CEO, Prasad Sabbineni, Co-CEO, and Gunjan Sinha, Co-Founder, and Executive Chairman, sharing their insights along with other industry leaders.
These are sessions you don’t want to miss! We have several C-level panels across the two days. Here are a few that focus on addressing GRC challenges in the modern interconnected risk landscape.
These real-life stories, which serve as powerful demonstrations of how organizations have successfully navigated the complex landscape of GRC challenges, offer a wealth of knowledge and inspiration to drive your own GRC initiatives forward. Don’t miss out on:
The Summit offers the opportunity to gain in-depth knowledge of our products. Our dedicated sessions will provide comprehensive insights, empowering you to fully understand the capabilities and benefits of our offerings. Make sure to attend:
Mark your calendars for June 13th, 2023, as we have a power-packed lineup of three intensive pre-conference workshops led by industry-leading experts in the GRC space. This is an event you will want to attend!
See You in Miami!
The list above is just a part of what’s on our Agenda. Join us and deep dive into all things GRC! Get to know more about our esteemed speakers. Read: Meet our Speakers- Part 1 and Part 2. Not yet registered? Register now.
The countdown is getting closer every day! The GRC Summit 2023, to be held on June 14th and 15th at the Hyatt Regency, Miami, is just four weeks away, and we couldn’t be more excited to bring together the GRC community once again to connect and exchange ideas.
MetricStream's flagship event has been at the forefront of the GRC space for over a decade, and this year's summit promises to be no different. This event serves as the premier global platform where you can stay informed about emerging technologies, new processes, and important regulations that will shape your business.
Our theme for this year's event is Experience the Power of Connection, and we are thrilled to have more than 60+ experts lined up to deliver keynotes, provide valuable insights and best practices, and share their GRC journeys.
Our previous blog highlighted some of the amazing speakers who will be speaking at the Summit. In part 2 of the series, we will be introducing you to a few more of our amazing speakers. So, buckle up and scroll down to learn more about the thought leaders and GRC experts who will be presenting on risk, compliance, cyber, audit, and ESG.
Emily Wall, VP – Global Ethics & Compliance, GRC Operations & Technology, Live Nation Entertainment, started her 24-year career with LNE on the Ticketmaster side, working in various roles and locations. Her current role includes Regulatory & Legal Compliance and Governance, Risk, Compliance Operations and Technology across LNE and its subsidiaries globally. She manages multiple teams across the US & abroad. Live Nation Entertainment (NYSE: LYV) is the world's leading live entertainment company comprised of global market leaders: Ticketmaster, Live Nation Concerts, and Live Nation Media & Sponsorship.
Carlos Pereira, Head of Global Governance and Policy, Meta, brings an unprecedented understanding and knowledge of Governance, Risk Management, Oversight Management, Enterprise Risk Management, Operational Risk, Vendor Risk, and IT Risk. He has over 25 years of industry and risk consulting experience working with Fortune 100 companies. Carlos continues to lead by example in the development of the governance and risk management industries through practitioner excellence. He has several risk management certifications, an MBA degree and is multilingual.
Guillermo Finck, Sr. Vice President - Corporate Audit Services, Fiserv is currently responsible for the Cyber and Tech audit portfolio in Fiserv. Globally, he joined the Corporate Audit Services group in July 2020 to lead the Audit Program for Business Operations, Finance and Shared Services. Previously he has held several leadership roles, including the Head of the Revenue Assurance, Billing, and Reconciliation group at First Data, the Control Officer for Shared Services at the General Counsel’s Office and the Strategy Group, the Managing Director of Compliance at JP Morgan Chase Asset and the Head of Controls for Borrowers Assistance overseeing all controls for loan modifications within the Mortgage Bank among others.
Hemma Lomax, VP, Associate General Counsel, Compliance, Zendesk, leads the Global Integrity and Compliance function. Prior to Zendesk she served as a senior corporate counsel in the Integrity & Compliance team at Snap, Inc. and as a Director in the Global Ethics and Compliance Management team at the Walt Disney Company. Hemma has also served for just over a decade prosecuting financial fraud and corruption with the United States Securities and Exchange Commission (SEC). Hemma is also a British-trained barrister (trial attorney) and has previously worked as Parliamentary Counsel for the UK government and as an advisor at the United Nations for the government of Guyana. Hemma has a Ph.D. in human rights and the laws of war.
Ramsey Kazem, Regional Compliance Officer - North America, Andritz, is Certified Compliance and Ethics Professional and an accomplished attorney. Ramsey present role has a broad range of responsibilities, including preparing risk assessments, implementing program improvements, investigating claims of misconduct, and managing third-party risk. His expertise includes designing, assessing, and implementing compliance programs using a risk-based approach. Prior to his work in compliance, Ramsey was a practicing attorney in Atlanta, Georgia. His legal practice focused on construction law, government contracts, and commercial litigation. During this time, he gained extensive experience assisting businesses with risk management, claims avoidance, and dispute resolution.
Arindam Majumdar, Deputy Chief Risk Officer, Bank OZK, has been instrumental in establishing the Enterprise Risk function at Bank OZK, a $29 BN Commercial Bank headquartered in Little Rock, AR. His current responsibilities include managing the Bank’s Operational, Market, Liquidity, Model and Data Risk and Risk Appetite functions at the Bank. Prior to Bank OZK, Mr. Majumdar was also instrumental in establishing the Enterprise Risk function at Discover Financial Services. Mr. Majumdar has 20+ years in banking experience, having worked in India, Japan and the US. He has previously also worked on Wall Street for JP Morgan’s derivatives trading group.
Jerry Storey, Principal, Regulatory Compliance & Business Strategy, FedEx Logistics, Inc. is responsible for developing programs to foster & measure compliance with the laws and regulations governing the company's activities worldwide. He also represents FedEx Logistics interests before multiple governmental agencies and participates in select trade associations. These include Air Forwarders Association, Express Association of America, and the National Industrial Transportation League. Jerry has worked for multiple major freight forwarders including Expeditors Int’l, Danzas, and DHL Global Forwarding. He has also worked for several of the top 100 importers into the USA such as Woolworth/Foot Locker and Fonterra LTD.
Sanjiv Sharma, Vice President and Chief Audit Executive (CAE), Wolfspeed Inc., takes care of Enterprise Risk Management, Internal Audit, and SOX Compliance. Sanjiv is a Certified Public Accountant (CPA), Certified Internal Auditor (CIA), and Certified Information Systems Auditor (CISA). Prior to joining Wolfspeed, Sanjiv worked with NXP Semiconductor, Freescale, and Motorola in various leadership roles in Finance, Internal Audit, SOX Compliance, and Pricing in the US, Malaysia, China, and India. He comes with wide knowledge and experience in review of the design and implementation of Environment, Social, and Governance (ESG) framework, Third-party Risk Management, and Cybersecurity frameworks and leveraging Enterprise Risk Management (ERM) for optimization.
Amber Gravius, Director, Office of Business Innovation, National Credit Union Administration, is the NCUA’s Director of the Office of Business Innovation and Chief Data Officer. In this role, she is responsible for working with stakeholders to deliver improved business processes with secure, innovative, and reliable technology solutions and data to support the NCUA mission. She has also served as Acting Business Innovation Director and as a Supervisory Special Assistant for Business Innovation, representing stakeholders in the development of NCUA’s new Modern Examination and Risk Identification Tool or MERIT. She joined NCUA in 1999 as a credit union examiner and served as a Supervision Analyst, Risk Management Officer, Loss Risk Analysis Officer, and Supervisory Examiner before joining the Office of Business Innovation.
Rodney Campbell, Senior Vice President – Head of Third-Party Risk Management, Valley National Bank, is a recognized industry leader in Third-Party Risk Management (TPRM), Enterprise Risk Management (ERM), Global Strategy & Business Operations. He is a keen business champion dedicated to empowering organizations and business leaders with industry insights and best practices to ensure both regulatory compliance and operational success. Experienced in developing global programs, processes, and cross-functional teams from the ground up and leading projects spanning Asia-Pacific, Latin America, United Kingdom, and North America regions, Rodney creates a high-impact, collaborative environment that eliminates silos and cross borders.
Paul Shotton, CEO, Tachyon Aerospace, holds a Ph.D. in Physics along with more than 30 years of practice in financial market risk analytics and executive leadership. His current roles include CEO of Tachyon Aerospace, an aerospace technology company, and chairman and CEO of White Diamond Risk Advisory, which advises CEOs, boards, and startup companies in the finance and technology sectors. Paul developed his knowledge of markets and honed his insights in high-level trading and risk management positions at financial institutions in major metropolitan hubs, first in fixed-income trading positions at Goldman Sachs and Deutsche Bank in London, and subsequently, in New York, as global head of market risk management at Lehman Brothers and deputy head of group risk control and methodology at UBS.
Alla Valente, Senior Analyst, Forrester, and Michael Rasmussen, GRC Analyst & Pundit, GRC 20/20 Research, will be participating in sessions.
MetricStream leaders Gaurav Kapoor, Co-Founder and Co-CEO, Prasad Sabbineni, Co-CEO, and Gunjan Sinha, Co-Founder, and Executive Chairman, will also be sharing their insights in the keynote addresses and panel discussions.
The Compliance Certification Board (CCB)® has approved the GRC Summit allowing you to earn up to 15.6 live Compliance Certification Board (CCB) Continuing Education Units (CEUs). Learn more.
Get in quickly and grab your ticket! Register now.
Watch this space for updated information on the speakers and other key highlights of the GRC Summit.
We are well and truly in countdown mode! It’s just six weeks now until the 2023 GRC Summit, to be held on June 14th and 15th at the Hyatt Regency, Miami.
MetricStream’s flagship event, the GRC Summit, has for the past decade consistently provided opportunities for the GRC community to connect, share insights, exchange best practices, and most importantly, set the stage for what's next in GRC. Whether it’s an emerging technology, a new process, or a regulation that’s going to impact the way you do business, you’ll learn about it here.
Now in our 11th year, we are returning with an in-person event to the US after 3 years. Our theme is Experience the Power of Connection, empowering you to do more as you continue to thrive on risk!
Explore the Agenda.
Being a premier thought-leadership event in the GRC space, the GRC Summit has always brought to the stage the best minds in risk, compliance, cyber, audit, and ESG. This year we have more than 60+ experts lined up to deliver keynotes, provide valuable insights and best practices and of course, share their own GRC journeys.
Scroll down to get to know more about the speakers and their areas of expertise.
MetricStream leaders Gaurav Kapoor, Co-Founder and Co-CEO, Prasad Sabbineni, Co-CEO, and Gunjan Sinha, Co-Founder, and Executive Chairman, will also be sharing their insights in the keynote addresses and panel discussions.
If you’re interested in grabbing a ticket – get in quick! Register now.
Watch this space for updated information on the speakers and other key highlights of the GRC Summit.
Given the complexity of the business environment and the interconnectedness of risks, organizations are actively looking at ways to strengthen their GRC strategy. Speaking at the GRC Summit 2022 in London, Michael Rasmussen suggested that GRC strategies involve a combination of left- and right-brain thinking in the coming years.
Traditionally, GRC has been viewed as a left-brain activity that involves collecting and analyzing data, identifying patterns and trends, and making decisions based on data analysis, logical reasoning, and problem-solving. However, Rasmussen believes that while logical and structured thinking, with its risk models and inside-the-box thought processes, can work to a certain extent, they are not fully representative of the real world.
Instead, the real world has far too many variables and inputs to be limited to a model. Therefore, the creative and intuitive thought processes associated with right-brain thinking will be invaluable. Michael Rasmussen also identified the top five strategic priorities for 2023 that require a combination of left- and right-brain thought processes. These are:
During the pandemic and its continuing aftermath, organizations prioritized resilience. However, in 2023, agility is poised to take center stage. Agility is the ability to anticipate what lies ahead and navigate real-time challenges quickly and effectively with minimal downtime. Agility emphasizes the need to prepare organizations to mitigate and avoid exposure and use risk readiness for advantage, opportunity, and gain.
In a business landscape that is constantly changing, agility helps organizations respond in a timely and effective manner by adapting to new laws and regulations, changing market conditions, or evolving customer needs and expectations. Agile GRC strategies allow the organization to be proactive rather than reactive when dealing with issues and remain flexible by adapting to changing circumstances.
Given the global impact of COVID-19, the Ukraine crisis, and the associated inflation and geopolitical risks, resilience has been a critical focus area in the past few years. While the proactive approach encouraged by agility is ideal, unanticipated events are inevitable.
According to Rasmussen, the true strength of an organization is its resilience—its ability to get back up and start running again after falling. Building resilience into the organizational framework involves implementing contingency plans to handle unexpected events, such as natural disasters or data breaches, and quickly adapting to changing circumstances, such as new laws and regulations.
In the GRC context, integrity is the sum of the organization's code of conduct, values, and policies. It encompasses various ESG components, including how organizations deal with energy, resources, and waste; their response to climate change and carbon emissions; their social interactions and reputation among stakeholders; and issues like labor relations, diversity, and inclusion. It also includes elements of governance, such as the company's internal system of policies, processes, and controls for making good decisions, adhering to the law, satisfying stakeholders, and handling bribery, corruption, hospitality, and more.
Across the world, we see a growing emphasis on accountability. Recently, Uber's chief information security officer was held legally liable for information security issues at Uber. In addition, the US Department of Justice emphasizes accountability among executives concerning compliance, while the states of New York State and California require greater accountability among risk compliance control executives.
When individuals or teams are held accountable for their actions and decisions, they are more likely to take these responsibilities seriously and take the necessary steps to ensure compliance. Frontline employees, who are often the most informed individuals about processes and procedures in an organization, play a critical role in effective risk management. Accountability from the frontline can help risk leaders gain better visibility into risks and define appropriate controls. Accountability impacts all aspects of GRC, ensuring that the organization is adhering to relevant laws, regulations, and standards and is taking appropriate action to manage risks.
GRC should transition from a back-office risk and compliance function to a front-office engagement, where risk is discovered, managed, and owned. After all, the bank teller is the first point of contact to make decisions about fraud, cash, privacy, and money laundering; the doctor and nurse are the ones making judgments about patient safety and confidentiality; and the coal miner is making choices regarding environmental health and safety. Organizations can effectively meet the GRC challenges of the future only with this level of engagement and employee buy-in.
As organizations move towards strengthening their GRC strategies, being aware of the latest trends can help foster an intuitive and engaging framework.
Interested in learning more? Watch the summit video here.
You can also request a demo to gain greater insight into how your organization can leverage risk-informed decisions to accelerate business performance.
Over the past 10 years, MetricStream’s GRC Summit has brought together thousands of GRC professionals from various industries, providing opportunities to learn, connect, and succeed.
Registrations are open for the 2023 GRC Summit to be held on June 14 and 15 at the Hyatt Regency in Miami, US. Register now!
The interconnected global economy has created unprecedented opportunities for organizations to expand their reach, increase profitability, and access new markets. However, the resulting interconnectedness of risk has also escalated several issues relating to Governance, Risk, and Compliance (GRC). In the OCEG GRC Readiness for Rapid Change Survey 2022, 85% of respondents reported significant changes in their GRC universe in the last two years, and only 7% said they had "excellent" GRC capabilities.
At a recently held MetricStream-hosted webinar, GRC Pundit Michael Rasmussen, GRC 20/20, Pat McParland, AVP, Product Marketing, MetricStream, and Loren Johnson, Senior Director, Product Marketing, MetricStream, got together to discuss the evolving GRC environment and how organizations can thrive in this interconnected risk landscape.
Watch the Webinar: 2023 GRC Strategies to Accelerate Risk, Compliance, and Audit Programs
Here are some key highlights from the discussion.
Don’t miss out on all the other important strategies that were discussed. Watch the webinar to learn more.
MetricStream's ConnectedGRC products are designed to meet the evolving needs of the modern enterprise. The collaborative approach enables organizations of tomorrow to identify, assess, manage, and mitigate risk across the enterprise--including third-party risks, compliance risks, IT and cyber risks, and ESG risks. Packed with best practices, deep domain capabilities, AI-powered intelligence, and risk quantification tools that are designed to tackle today’s most pressing GRC challenges the ConnectedGRC suite comes in three distinct product lines with multiple benefits:
Want to learn more about how our software can help you? Request a demo now.
Prepare for 2023 with these resources:
The Future of GRC: 10 Trends for 2023 and Beyond
Top 10 Cyber Risk Trends in 2023
How to Manage Interconnected GRC Risks: Top 5 Recommendations for the Digital Era