Unfortunately, there seems to be a lack of understanding of what GRC really is. Contrary to popular belief GRC is NOT ERM, but 3 separate disciplines Governance, Risk and Compliance. Here I look at the neglected Governance component. Continue reading
Tag Archives: Greg Carroll
#171 – WHAT IS GRC AND WHY USE COMPLIANCE MANAGEMENT SOFTWARE – GREG CARROLL
Featured
When starting out on the Compliance Management journey, understanding the alphabet soup of acronyms can be confusing. Here we try to explain the terms, what needs to be done, and need for compliance management software in the process.
Continue reading
#169 – PDCA IS NOT BEST PRACTICE – GREG CARROLL
Featured
There is a gaggle of Management Consultants pushing the 20th century mantra of Good Management Practice as a panacea to all the ill of today’s business environment. The key plank in most of these methodologies is that old chestnut “the PDCA cycle” for Continuous Improvement. If your consultant wears this as a badge, run a mile
Business Management is no longer just about Financial Accounting or Office Administration. And Best Practice is not just someone’s vague opinion. Leading businesses from around the world have, thru the international standards organization, put down a comprehensive set of guidelines for a broad range of Systems Management areas covering the lifecycle management Best Practices. Continue reading
#161 – WHAT DONALD TRUMP’S WIN TELLS US ABOUT DECISION BIAS – GREG CARROLL
Featured
Just like the Brexit win 2 months ago, Donald Trump’s election as US President beggars belief but has some valuable lessons to learn from both a Risk Management and corporate governance perceptive.
Why is business now OK with Trump? It’s due to widely adopted view of billionaire Peter Thiel (co-founder of PayPal) to “take Trump Seriously, Not Literally”. Continue reading
#157 – INTEGRATING ISO 9001:2015 WITH ISO 17025 – GREG CARROLL
Featured
It is not uncommon for laboratories to be saddled with maintaining both ISO 17025 and ISO 9001 certification. Although it is simpler to create and implement two QMS – and to “merge” those activities which can be merged – this approach is arduous, inefficient, and prone to mistakes.
Understanding the difference
ISO 17025 is an “Accreditation” standard which means the laboratory is authorised to issue “Certifications” i.e. they have the qualifications and capabilities to issue certificates of authentication from the tests they carry out. ISO 9001 relates to the quality and reliability of service a customer can expect from the testing company. Continue reading