Form and Recording - RiskWatch Items (We do this in SharePoint and provide reports in Access. We are happy to use any SQL-based GRC interface the client may already have in place. The data is the data, and the process remains the same.
Sometimes the best risk management actually does live on a spreadsheet, or at least, we can output the mapping model and scoring to explain how the interface is tracking and ranking according to any risk management model. This image shows unification against the CCM 4. We could also have done this using the NIST Cybersecurity Framework, CSF SP 800-37. Any risk model can serve as the left side collection and any other array of mapped controls can factor into that topic.
- EnterpriseGRC Solutions will provide process and recording of key classes in Risk, allowing for an accredited process of risk management.




Whether you're preparing for Cybersecurity certification, working with government standards, or simply starting your career in compliance, these are the NIST Federal Information Processing Standards (FIPS), Special Publication (SP), and Interagency Report (IR) topics