The RiskTech Journal

The RiskTech Journal is your premier source for insights on cutting-edge risk management technologies. We deliver expert analysis, industry trends, and practical solutions to help professionals stay ahead in an ever-changing risk landscape. Join us to explore the innovations shaping the future of risk management.

Why Gartner Believes GRC Tools Fall Short in Effective Risk Management
Enterprise Risk Management, GRC Ori Wellington Enterprise Risk Management, GRC Ori Wellington

Why Gartner Believes GRC Tools Fall Short in Effective Risk Management

In the evolving landscape of risk management, the need for tools that can adapt to complex and multifaceted risk environments is becoming increasingly apparent. Recent insights from Gartner highlight a significant shift in the way organizations approach risk management, with traditional Governance, Risk, and Compliance (GRC) tools struggling to meet the demands of modern enterprise risk management (ERM) strategies.

Read More
Rethinking Risk Management - Moving Beyond ESG and GRC
ESG, Integrated Risk Management John A. Wheeler ESG, Integrated Risk Management John A. Wheeler

Rethinking Risk Management - Moving Beyond ESG and GRC

The once-revered concepts of environmental, social, and governance (ESG) and governance, risk, and compliance (GRC) are now subjects of intense debate and re-evaluation. As businesses grapple with the complexities of modern risk management, there's a growing recognition that the traditional ESG and GRC frameworks, while groundbreaking in their time, may no longer suffice in addressing the nuanced and multifaceted risks of the 21st century.

Read More
Integrated Risk Management in the Digital Era: Employing IRM Technology for AI Challenges

Integrated Risk Management in the Digital Era: Employing IRM Technology for AI Challenges

In the rapidly evolving field of artificial intelligence (AI), the recent comprehensive survey, "Thousands of AI Authors on the Future of AI," spearheaded by AI Impacts, provides critical insights into the trajectory of AI development and its societal implications. As the founder and CEO of Wheelhouse Advisors, I am particularly intrigued by the survey's findings and the essential role of Integrated Risk Management (IRM) in addressing the digital risks associated with AI.

Read More
How the EU AI Act Will Forge a New Global Digital Landscape in 2024

How the EU AI Act Will Forge a New Global Digital Landscape in 2024

The European Union's Artificial Intelligence Act (AI Act), set for enactment in mid-2024, represents a landmark in the global regulatory landscape for digital products and services. This comprehensive legislation is poised to fundamentally reshape how AI is developed, deployed, and managed based on the digital risks it manifests. As the first of its kind, it establishes a precedent for digital risk management, emphasizing safety, fundamental rights, and transparency.

Read More
Ticking Clock: Companies Scramble to Meet SEC Cybersecurity Rules, Audit Partners Cautious
Cybersecurity, SEC, Integrated Risk Management John A. Wheeler Cybersecurity, SEC, Integrated Risk Management John A. Wheeler

Ticking Clock: Companies Scramble to Meet SEC Cybersecurity Rules, Audit Partners Cautious

With the December 15th deadline for the SEC's new cybersecurity risk disclosure rules rapidly approaching, companies are intensifying their preparations. The Center for Audit Quality’s (CAQ) biannual Audit Partner Pulse Survey provides valuable insights into the corporate response, especially in the context of the complex economic, political, and technological challenges businesses currently face.

Read More
SEC's Cybersecurity Countdown: Critical Steps for Public Companies
Cybersecurity, SEC, Integrated Risk Management Wheelhouse Advisors Cybersecurity, SEC, Integrated Risk Management Wheelhouse Advisors

SEC's Cybersecurity Countdown: Critical Steps for Public Companies

As the December 2023 deadline looms, U.S. public companies and their third parties face a critical juncture in cybersecurity risk management. The SEC's new disclosure rules demand swift adaptation, with implications for cybersecurity practices and risk management infrastructures. The upcoming webinar, "Cyber Risk Reporting to the Board: A Step-by-Step Playbook," offers an in-depth analysis and actionable strategies for compliance.

Read More
Integrated Risk Management: The Linchpin for Bridging SEC and NYDFS Cybersecurity Regulations
SEC, NYDFS, Cybersecurity, Integrated Risk Management Wheelhouse Advisors SEC, NYDFS, Cybersecurity, Integrated Risk Management Wheelhouse Advisors

Integrated Risk Management: The Linchpin for Bridging SEC and NYDFS Cybersecurity Regulations

In response to escalating cyber threats, regulatory bodies such as the New York State Department of Financial Services (NYDFS) and the U.S. Securities and Exchange Commission (SEC) have fortified their cybersecurity rules, presenting a complex regulatory environment for financial institutions. As entities strive to comply with the nuanced requirements of the NYDFS's updated cybersecurity regulations and the SEC's proposed rules, Integrated Risk Management (IRM) emerges as a crucial strategy, providing a unified framework to manage cybersecurity risks and regulatory compliance effectively.

Read More
Leveraging IRM for Comprehensive Risk Assessments in Line with SEC Guidelines
SEC, Integrated Risk Management John A. Wheeler SEC, Integrated Risk Management John A. Wheeler

Leveraging IRM for Comprehensive Risk Assessments in Line with SEC Guidelines

In an era where the complexity of risks continuously escalates, the integration of operational risk management (ORM), IT risk management (ITRM), enterprise risk management (ERM), and governance, risk, and compliance (GRC) technologies within the broader umbrella of Integrated Risk Management (IRM) has never been more crucial.

Read More
ERP and IRM Take Similar Paths to Shape the Modern Business Landscape

ERP and IRM Take Similar Paths to Shape the Modern Business Landscape

While ERP has traditionally unified core business functions — from financial management and supply chain operations to human resources — IRM is achieving a similar integration for risk management disciplines, including operational risk management (ORM), IT risk management (ITRM), enterprise risk management (ERM), and governance, risk, and compliance (GRC).

Read More
AI Risk: What Every Board Member Needs to Know

AI Risk: What Every Board Member Needs to Know

Artificial Intelligence (AI) is a double-edged sword, offering both unprecedented opportunities and complex challenges. As boards and executives grapple with the rapid advancements in AI, they must navigate a landscape fraught with both promise and peril. This article aims to equip board members with key AI insights from a recent report by the National Association of Corporate Directors (NACD) and the Data & Trust Alliance, as well as a keynote address by John A. Wheeler at AuditBoard's Audit+Beyond event.

Read More
The Convergence of Cybersecurity and Operational Risk: Lessons from the Clorox Breach

The Convergence of Cybersecurity and Operational Risk: Lessons from the Clorox Breach

The Clorox cyberattack, which led to a whopping 20% drop in shares since August, highlights the ripple effect a cybersecurity incident can have on operational processes. Here, a technology-centered vulnerability impacted the company's operational capabilities, and consequently, its market value. Such setbacks not only disrupt the daily functioning of an organization but can tarnish its reputation and erode stakeholder trust.

Read More
How Integrated Risk Management Helps Businesses Comply with California's New Climate Laws
Sustainability, Integrated Risk Management Wheelhouse Advisors Sustainability, Integrated Risk Management Wheelhouse Advisors

How Integrated Risk Management Helps Businesses Comply with California's New Climate Laws

California is setting a new regulatory precedent with the passage of Senate Bill 253 (SB 253) and Senate Bill 261 (SB 261), collectively aimed at enforcing climate-related disclosures among large companies. These pioneering laws pave the way for a national wave of similar regulations, including pending rules from the Securities and Exchange Commission (SEC). In the midst of this regulatory shift, Integrated Risk Management (IRM) emerges as a crucial methodology for comprehensively managing the complexities of climate-related disclosure.

Read More
From Brakes to GPS to Telematics: The Evolution of Modern Internal Audit

From Brakes to GPS to Telematics: The Evolution of Modern Internal Audit

In the rapidly evolving landscape of risk management, the role of internal audit is shifting from merely being the "brakes" or a "navigation system" within an organization to something far more dynamic and nuanced. Drawing on the technology of telematics systems, which blend telecommunications and informatics to guide insurance risk assessment, this article explores how internal audit can similarly offer data-driven insights without intruding on managerial autonomy. As we venture into this new era, internal audit's role isn't just about guiding or stopping; it's about gathering, analyzing, and integrating data to inform risk management.

Read More
The ESG Controller in the Age of Regulatory Shifts and Integrated Risk Management
ESG, Sustainability, Integrated Risk Management Wheelhouse Advisors ESG, Sustainability, Integrated Risk Management Wheelhouse Advisors

The ESG Controller in the Age of Regulatory Shifts and Integrated Risk Management

The rapid evolution of the ESG Controller role underlines the pressing need for organizations to standardize and validate their ESG reporting processes. Recent data from AuditBoard reveals substantial gaps in ESG program readiness, further emphasizing the critical function of ESG Controllers in mitigating compliance risks. Integrated Risk Management technology offers a pathway to bridge these gaps, ensuring that companies are compliant and better positioned to navigate an increasingly complex regulatory landscape.

Read More
Bridging the Security Gap: Integrated Risk Management’s Response
Cybersecurity, Integrated Risk Management John A. Wheeler Cybersecurity, Integrated Risk Management John A. Wheeler

Bridging the Security Gap: Integrated Risk Management’s Response

In response to recent comments by Palo Alto Networks CEO Nikesh Arora on the need for rapid, modernized cybersecurity defenses, John A. Wheeler emphasizes the crucial role of Integrated Risk Management (IRM). John draws from his extensive expertise to highlight the four key benefits of IRM: a unified view, intelligent resource allocation, streamlined compliance, and strategic future-proofing, addressing both the challenges and solutions in today’s evolving threat landscape.

Read More
Charting the Future of Risk: The 2023 IRM Navigator™ Technology Market Reports

Charting the Future of Risk: The 2023 IRM Navigator™ Technology Market Reports

Risk management has become a paramount concern for organizations across industries in an era of rapid technological advancement, globalization, and ever-shifting regulatory landscapes. The growing business complexity and interconnectivity demand an integrated approach, propelling Integrated Risk Management (IRM) into the spotlight. IRM is no longer an option but necessary, shaping the contours of resilience, compliance, performance, and assurance.

Read More
The Future of Cybersecurity: Navigating NIST CSF 2.0 with IRM
Cybersecurity, Integrated Risk Management John A. Wheeler Cybersecurity, Integrated Risk Management John A. Wheeler

The Future of Cybersecurity: Navigating NIST CSF 2.0 with IRM

In the complex and ever-changing cybersecurity landscape, the NIST Cybersecurity Framework (CSF) 2.0 emerges as a beacon for organizations striving to manage and mitigate cybersecurity risk. Integrated Risk Management (IRM) technology plays a pivotal role in this journey, bridging the gaps between various risk management disciplines and fully integrating cybersecurity risk with Enterprise Risk Management (ERM).

Read More
Four IRM Tips for Conquering the Biggest Accounting Experiment in 100 Years

Four IRM Tips for Conquering the Biggest Accounting Experiment in 100 Years

We must go beyond the traditional Governance, Risk Management, and Compliance (GRC) approach focusing on compliance risk to address these new sustainability risk disclosure requirements. While GRC is a critical component of risk management, focusing solely on it can limit our view of specific regulatory mandates, often missing the "bigger picture" of strategic risk. Integrated Risk Management (IRM), on the other hand, incorporates GRC but goes further. Here are four tips to help companies succeed.

Read More