GRC Professional Certification (GRCP)

The course helps individuals develop a core understanding and skills to integrate governance, risk management and compliance in one capability.

This course also prepares you to successfully pass the GRC Professional (GRCP) certification exam and become individually certified as a GRCP. The GRCP certification shows the individual has the core understanding and skills to integrate corporate governance, risk management, internal control and compliance activities

 

  • Develop a GRC strategic plan
  • Align governance, risk and compliance in context of the organisation
  • Understand, define, and enhance organisational culture as it relates to performance, risk, and compliance
  • Implement effective, efficient and agile GRC processes using the OCEG GRC Capability Model
  • Motivate and inspire desired conduct through the concept of Principled Performance
  • Understand technology’s role in GRC
  • Develop ongoing monitoring and continuous improvement of GRC activities through metrics and measurement
  • Explain the value of Principled Performance, and an integrated approach to GRC, to management and board
  • Internal auditors
  • Compliance professionals
  • Governance professionals
  • Risk management professionals
  • GRC professionals
  • Legal professionals
  • IT professionals dealing with GRC
  • Managers responsible for GRC activities
  • Executives and board member

 

  • Introduction to OCEG
  • The use of frameworks
  • Available GRC individual certifications
  • Business context and the need for a GRC approach and Principled Performance
  • The "Big" picture of business illustration
  • Defining Principled Performance
  • Advantages of Principled Performance

 

  • Defining common GRC terms
  • GRC Concepts
  • GRC roles and responsibilities (e.g. audit, legal, human resources, IT, compliance, risk management, ethics, the boards etc.)
  • Gaining commitment from senior management and the board
  • Overview of the OCEG GRC Capability Model
  • Implementing the OCEG GRC Capability Model at an organisation

 

  • Understanding the external context of your organisation
  • Understanding the internal context of your organisation
  • Understanding and assessing culture
  • Understanding relevant stakeholders and developing a stakeholder relations plan

 

  • Setting direction and management decision-making criteria in accordance with mission, vision and values
  • Defining high-level and lower-level objectives
  • Identifying opportunities, threats and requirements for your organisation
  • Assessing levels of reward, risk and compliance - inherent and residual basis
  • Designing relevant options and controls in order to respond to levels of reward, risk and compliance

  • Determining the right mix of proactive, detective, and responsive internal controls
  • Developing relevant policies and procedures
  • Providing communication to the right people, in the right way, at the right time
  • Delivering education to relevant individuals
  • Designing and implementing appropriate incentives
  • Designing notification methods to detect desired and undesirable events
  • Designing inquiry methods to detect desired and undesirable events
  • Responding to desired and undesirable events

  • Monitoring the GRC capability
  • Providing assurance on the GRC capability
  • Making improvements to the GRC capability

 

  • Elements of a GRC strategic plan
  • Completing risk and compliance assessments as a starting point - Fraud risk assessment, Organisational risk assessment, Compliance gap analysis
  • Moving from the current state to desired state
  • Degrees of integration and maturity models
  • Building and explaining the business case for integrated GRC

Related Courses