RSSAmplifier

Blog

all about GRC

GRC resources for IT, Cyber Security & Audit professionals

allaboutgrc.comRSS feed ↗10 posts

Latest posts

The All-About-GRC Newsletter

If you have been following this website for a while, you might have noticed that a newsletter has been quietly running in the background. Ten issues in, I realized I never actually sat down and wrote a proper post about it. So here we are.

How to make a Cyber Risk Assessor using ChatGPT Projects

I recently made an AI bot at my company that does an initial risk assessment when you give it a potential risk scenario. We have an internal AI agent developer

GRC Resources

Curated list of resources for people in GRC

C-I-A Score Calculator Tool

A demo tool to show how to practically use the CIA triad to rate an asset.

Security Risk Assessment Template (Qualitative)

If you do Security Risk assessments of a qualitative nature in your organization, you could use this template for detailed risk documentation. It has pages for describing the risk, evaluating

What should be considered a “change”?

The legendary Ron Ross gives some guidance.

What is a “legacy application”?

Four criteria that can be used to classify something to be "legacy"

ISO 27001 Gap and Maturity Assessment Templates

Two useful resources for people working on ISO 27001 - a Gap Assessment and a Maturity Assessment template

Websites to Track Security Breaches & Cyber Incidents

List of websites where you can find information about security breaches

Security Maturity Benchmarks

Benchmarks of other companies and industries are very useful to GRC professionals. It is a good indicator to see how leaders, competitors, and the industry overall are positioned in terms