<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-5305148290440653581</id><updated>2011-04-21T21:06:49.957-07:00</updated><category term='Compliance Software'/><category term='Internal Audits'/><category term='GRC On-Demand'/><category term='enterprise risk management'/><category term='SOX'/><category term='SaaS'/><category term='Software as a Service'/><category term='operational risk'/><category term='IT Governance'/><category term='Favored Solutions'/><category term='GRC Software'/><category term='Internal Controls'/><title type='text'>On Demand Compliance</title><subtitle type='html'></subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://ondemandcompliance.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5305148290440653581/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://ondemandcompliance.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Syed Salman Chishti</name><uri>http://www.blogger.com/profile/02117252451540569231</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>1</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-5305148290440653581.post-5510508722639137705</id><published>2008-10-06T09:48:00.000-07:00</published><updated>2008-10-06T10:08:05.614-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Software as a Service'/><category scheme='http://www.blogger.com/atom/ns#' term='Internal Controls'/><category scheme='http://www.blogger.com/atom/ns#' term='SOX'/><category scheme='http://www.blogger.com/atom/ns#' term='SaaS'/><category scheme='http://www.blogger.com/atom/ns#' term='GRC On-Demand'/><category scheme='http://www.blogger.com/atom/ns#' term='Internal Audits'/><category scheme='http://www.blogger.com/atom/ns#' term='IT Governance'/><category scheme='http://www.blogger.com/atom/ns#' term='Favored Solutions'/><category scheme='http://www.blogger.com/atom/ns#' term='GRC Software'/><category scheme='http://www.blogger.com/atom/ns#' term='Compliance Software'/><category scheme='http://www.blogger.com/atom/ns#' term='operational risk'/><category scheme='http://www.blogger.com/atom/ns#' term='enterprise risk management'/><title type='text'>Software and Services strategy for Governance, Risk and Compliance</title><content type='html'>&lt;a href="http://governanceriskandcompliance.blogspot.com/" title="Governance, Risk, and Compliance"&gt;Governance, Risk, and Compliance&lt;/a&gt; or &lt;span style="font-weight: bold;"&gt;"GRC"&lt;/span&gt; is an increasingly recognized term that reflects a new way in which organizations can adopt an integrated approach to these three areas. However, this term is often positioned as a single business activity, when in fact, it includes multiple overlapping and related activities within an organization, e.g. &lt;a href="http://www.favoredsolutions.net/GRCProducts/HighPointAudits.aspx" title="internal audit"&gt;internal audit&lt;/a&gt;, compliance programs like &lt;span style="font-weight: bold;"&gt;SOX&lt;/span&gt;, &lt;a href="http://www.favoredsolutions.net/GRCProducts/GRCEnterpriseRiskManagement.aspx" title="enterprise risk management"&gt;&lt;span style="font-weight: bold;"&gt;enterprise risk management&lt;/span&gt;&lt;/a&gt; (ERM), &lt;a href="http://operationalriskmanagementsoftware.blogspot.com/2008/06/it-governance-risk-and-compliance-itgrc.html" title="operational risk management"&gt;&lt;span style="font-weight: bold;"&gt;operational risk&lt;/span&gt;,&lt;/a&gt; incident management, etc.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://governance-risk-compliance.blogspot.com/2008/06/overview-of-governance-risk-and.html" title="Governance"&gt;Governance&lt;/a&gt; is the responsibility of senior executive management and focuses on creating organizational transparency by defining the mechanisms an organization uses to ensure that its constituents follow established processes and policies. A proper governance strategy implements systems to monitor and record current business activity, takes steps to ensure compliance with agreed policies, and provides for corrective action in cases where the rules have been ignored or misconstrued.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://enterpriseriskmanagementsoftwares.blogspot.com/" title="Risk Management"&gt;Risk Management&lt;/a&gt; is the process by which an organization sets the risk appetite, identifies potential risks and prioritizes the tolerance for risk based on the organization’s business objectives. Risk Management leverages internal controls to manage and mitigate risk throughout the organization.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://compliancesoftwares.blogspot.com/" title="Compliance Software"&gt;Compliance&lt;/a&gt; is the process that records and monitors the policies, procedures and controls needed to enable compliance with legislative or industry mandates as well as internal policies&lt;br /&gt;&lt;br /&gt;While there are several on premise &lt;a href="http://www.favoredsolutions.net/index.html"&gt;GRC solutions&lt;/a&gt; available in the market for example ‘Paisley’, one of the successful GEC strategies for SMEs could be to go for an ‘On demand’ or hosted solution along with GRC implementation and professional services. I call it ‘Software plus Services’ strategy.&lt;br /&gt;&lt;br /&gt;&lt;span style="color: rgb(0, 0, 153);"&gt;&lt;u&gt;Software plus Services&lt;/u&gt;&lt;/span&gt; describes the idea of combining hosted services with capabilities that are best achieved with locally running software. It describes composite applications created by combining traditional software with remote services to provide consistent and seamlessly integrated user experience across devices and form factors. Software plus Services is a concept that Software As A Service (SaaS) complements the traditional packaged software running on both client or server by services adding value.&lt;br /&gt;&lt;br /&gt;&lt;u style="font-weight: bold;"&gt;&lt;span style="color: rgb(0, 0, 153);"&gt;SaaS GRC Software (on-demand) Vendors&lt;/span&gt;&lt;/u&gt;&lt;span style="font-weight: bold;"&gt;:&lt;/span&gt;&lt;br /&gt;Some of the hosted GRC applications with the capabilities of best IT/GRC teams are:&lt;br /&gt;1, Axentis&lt;br /&gt;2, &lt;a href="http://ondemand.favoredsolutions.net/"&gt;Favored Solutions &lt;/a&gt;&lt;br /&gt;3, Paisley&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;span style="color: rgb(0, 0, 153);"&gt;&lt;span style="font-weight: bold;"&gt;Software-as-a-Service (SaaS) Benefits:&lt;/span&gt;&lt;br /&gt;&lt;/span&gt;&lt;/u&gt;With the increasing use of internet and due to heavy maintenance cost the latest trend is On-demand software, often referred to as ‘Software-as-a-Service’ (SaaS), is rapidly gaining attention of not only SMEs but large corporations as well and some of the benefits of ‘SaaS’ model are:&lt;br /&gt;&lt;br /&gt;1. Anytime, anywhere access.&lt;br /&gt;2. Subscription based.&lt;br /&gt;3. Cost effective.&lt;br /&gt;4. Easy to maintain.&lt;br /&gt;5. Automatic, off-site backups.&lt;br /&gt;6. Secure.&lt;br /&gt;&lt;br /&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/5305148290440653581-5510508722639137705?l=ondemandcompliance.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://ondemandcompliance.blogspot.com/feeds/5510508722639137705/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=5305148290440653581&amp;postID=5510508722639137705' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/5305148290440653581/posts/default/5510508722639137705'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/5305148290440653581/posts/default/5510508722639137705'/><link rel='alternate' type='text/html' href='http://ondemandcompliance.blogspot.com/2008/10/software-and-services-strategy-for.html' title='Software and Services strategy for Governance, Risk and Compliance'/><author><name>Syed Salman Chishti</name><uri>http://www.blogger.com/profile/02117252451540569231</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
