Corporate governance ensures that all of an organisation's activities align and support the organisation’s goals.
Mastering governance, risk management, and compliance (GRC)
Your governance, risk management, and compliance library for aligning boards, CROs, CISOs, and operations.
Learn what governance, risk, and compliance (GRC) means today, explore governance risk and compliance management workflows, and keep every explainer close for Boards, audits, and reviews.
What is governance, risk, and compliance (GRC)?
This governance, risk, and compliance hub explains what GRC is, how governance risk and compliance management reinforce each other, and where to go when boards, CROs, or CISOs ask for fast answers.
Risk management involves identifying potential risks and threats.
Compliance management covers both mandatory compliance requirements and any voluntarily established company policies.
HOW TO USE IT
Turn governance, risk management, and compliance into one workflow
Start with governance and compliance fundamentals. Use the first collection to define governance models, compliance management systems, and regtech options.
Move through enterprise risk explainers. Align strategic, financial, operational, and integrated risk stories so leadership hears one governance risk and compliance narrative.
End with measurement and controls. Use the risk registers, control guides, and appetite resources to prove how the GRC program performs.
THE BASICS
Governance & compliance management
Explain governance, risk and compliance fundamentals before diving into deeper risk topics.
Corporate governance basics
Define board structures and decision frameworks that keep governance, risk, and compliance connected.
Compliance management
Clarify compliance management systems, obligation tracking, and reporting cadence.
RegTech overview
See how regulatory technology keeps monitoring, filings, and attestations on schedule.
Performance management
Link governance decisions to performance planning, targets, and executive reporting.
Performance metrics guide
Choose KPIs that reinforce governance risk and compliance priorities.
Mutuals and member-owned institutions
Understand governance nuances for customer-owned and mutual organisations.
RISK MANAGEMENT
Enterprise risk management guides
Bring every risk lens together so leaders see the full governance, risk and compliance picture.
Risk management basics
Define what enterprise risk management covers and how it supports governance.
Strategic risk overview
Show how strategy decisions influence GRC priorities.
Financial risk guide
Explain credit, liquidity, and market risk considerations.
Operational risk basics
Align operating risks, processes, and controls with governance.
Integrated risk management
Break silos between strategic, operational, compliance, and cyber risks.
Compliance risk overview
Connect regulatory exposure to the broader risk lifecycle.
REPORTING
Risk measurement & controls
Bring appetite, controls, and registers together so governance risk and compliance reporting stays current.
Risk appetite overview
Document boundaries so governance risk and compliance management decisions stay consistent.
Risk controls toolkit
Design preventive and detective activities that keep evidence audit-ready.
Risk register template
Structure registers to capture ownership, treatments, and governance reporting.
Residual risk explainer
Show how much exposure remains after controls operate.
Inherent risk overview
Establish baselines before you compare governance risk and compliance treatment plans.
Drova keeps governance risk and compliance workflows, registers, and assurance notes in one workspace.