article thumbnail

IRM, ERM, and GRC: Is There a Difference?

Reciprocity

2007-2012): Audit management, enterprise, and operational risk management, compliance beyond financial controls, and more. The way the terms are used, however, defines ERM as involving strategic, high-level risk management that includes various functions and involves executives and the board.