What is GRC and operational risk?

GRC stands for Governance, Risk and Compliance – the discipline of running an organisation in a controlled, evidenced way. Operational risk is the sub-domain concerned with risks from internal processes, people, systems and external events.

What is breach response and reporting?

Breach response is the structured handling of a privacy or security incident – discovery, evaluation, communication, recording and remediation. Tight regulator timeframes apply.

What is a risk register?

A risk register is the structured list of identified risks an organisation is tracking – with severity, likelihood, owner, treatment and review date.

What are controls and criteria?

In a risk framework, controls are the things you do to mitigate a risk. Criteria are the conditions a control must satisfy to be considered effective.

What is USCP? USA Consumer Protection privacy framework

USCP is PrivIQ’s framework for organisations that need practical governance over consumer data handling, notices, rights, third-party risk and evidence of responsible practices in the USA’s fragmented state-by-state landscape.

What is DPDx? Data Protection Dynamics framework

DPDx is a USA-focused privacy and data protection framework delivered through a specific PrivIQ partner, designed for organisations needing practical, evidenced privacy practices in the US market.

What is AI governance software? A complete guide

AI governance software helps organisations identify where AI is used, assign accountability, manage policies, assess risks, review AI-related third parties and maintain evidence of responsible AI use.