Insights & Library · Governance
Governance
Board oversight, accountability, decision rights, operating structures and the evidence that supports effective governance.
Governance collection
29 publications
DORA and Operational Resilience Top EU Regulatory Focus
A practitioner view of DORA as an enterprise-risk and governance issue, using 2026 incident data to challenge the idea that operational resilience is primarily a cyber or IT programme.
UK Crypto Authorisation Gateway Opens 30 September 2026: FCA Expectations
A readiness-focused review of the FCA crypto authorisation gateway, the application window and the evidence firms should already be able to produce around permissions, governance, controls and accountable ownership.
The GRC Triad: How Governance, Risk and Compliance Actually Interconnect
A practitioner view of how governance, risk and compliance operate as connected but distinct disciplines, including where handoffs and accountability commonly fail.
At What Point Does Professional Loyalty Stop Making Commercial Sense?
A practical look at regulated accountability, senior management responsibility and the point at which professional loyalty can conflict with personal and regulatory exposure.
Corporate Governance Failures and Lessons Learned
Early warning signs of governance drift, practical board-level questions and actions that stand up under audit or supervisory challenge.
UK Crypto Regulation Enters a More Serious Phase
A policy-focused reflection on the shift in UK digital-asset regulation from broad intent toward perimeter, authorisation, prudential consequence, governance, safeguarding and business-model scrutiny.
Global Banking, Risk, Governance and Compliance Certifications
A comparative guide to major banking, risk, governance and compliance qualifications, with jurisdictional weighting, professional niches and career-path considerations.
Part 4 of 4: Closing the GRC Loop, What Regulatory Readiness Looks Like in 2025 and Beyond
A framework for moving beyond policy ownership to living regulatory systems across technology, people, controls and evidence.
ESG Is Not a Checkbox. It's a Compass, But Some of Us Are Still Trying to Afford the Map.
A personal and professional exploration of ESG, ethical decision-making and the tension between principle, access, economic pressure and practical implementation.
Part 3/4 From Regulation to Reality: Applied Governance, Risk, and Compliance in Practice
How to translate regulatory design into operational execution through procedures, workflows, accountability and culture.
Can a Compliance Officer/MLRO Be Too Good at Their Job?
A cautionary reflection on compliance independence, organisational culture and what happens when accountable control functions lack genuine authority, resources or access to decision-making.
Part 2: Advancing Governance, Compliance, and Operational Resilience in Swiss Fintech and Small Banking Institutions
A deeper look at FINMA, governance, compliance and operational-resilience expectations for Swiss fintech and smaller financial institutions, grounded in practical implementation experience.
The Great AI Disruption: 50+ Jobs That Will Be Replaced by AI by 2026, and More Facing Extinction by 2030
A broad assessment of AI-driven job displacement and the governance, skills and accountability questions created by rapid automation across professional and operational work.
Governance, IT Frameworks, and Compliance in Financial Services: A Young Professional Guide
An accessible guide to governance, compliance, operational resilience and the frameworks that connect them in financial services.
Shein Fined €150M for GDPR Consent Breaches
A regulatory update on consent, cookie placement and transparency failures, with a wider lesson on embedding compliance requirements into product and technology design.
Why every SMF16 and Head of Compliance needs a CMP
A practitioner argument for linking policies, procedures, registers, monitoring and reporting through a coherent Compliance Management Programme.
Starting in Governance, Risk & Compliance: A Complete Beginner's Context
A foundation chapter for people entering GRC, explaining the purpose of governance, risk and compliance before later chapters separate and deepen each discipline.
Danske Bank Estonia GRC Technical Annex (Case #1)
A GRC technical annex applying governance, risk, compliance and control analysis to the Danske Bank Estonia money-laundering case.
Risk: Definition, Types, and Lifecycle
A foundation chapter defining risk, common risk categories and the lifecycle used to identify, assess, treat, monitor and report exposure.
Strategic Risk: Identification and Mitigation
A practical chapter on identifying threats to strategy, testing assumptions and selecting mitigations that remain connected to governance and decision-making.
Operational Risk: The Story, How It's Connected, Key Aspects
An applied introduction to operational risk and its connections to controls, business continuity, resilience, technology and day-to-day execution.
Financial Risk Part 1: Foundations and Credit Risk
The first financial-risk chapter, introducing credit risk, core measures and the governance questions behind lending and counterparty exposure.
Market Risk, Financial Risk Part 2: Methods, Governance, FRTB and P&L Explain
A technical market-risk chapter covering common methods, governance, VaR, expected shortfall, FRTB and the role of P&L attribution and explanation.
Financial Risk Part 3: Liquidity Risk, Funding Resilience and IRRBB
The third financial-risk chapter, connecting liquidity, funding resilience and interest-rate risk in the banking book to governance and stress-testing expectations.
Compliance: Its Definition, Role, Purpose and Lifecycle
A foundation chapter treating compliance as an operating and management discipline, from obligations and control design through monitoring, reporting and improvement.
Followership in GRC: How People Actually Show Up When Ethics and Pressure Collide
A behavioural look at how professionals respond to pressure, authority and ethical conflict, using followership as a practical GRC and culture lens.
Regulatory Compliance vs Ethical Compliance
A practical distinction between meeting formal obligations and making defensible ethical decisions, with an evidence-led framework for difficult judgement calls.
Third Party Risk and Outsourcing Governance [UK / EEA]
A practical UK and EEA guide to the vendor lifecycle, due diligence, contracting, monitoring, evidence and exit planning across regulated outsourcing relationships.
Governance: Understanding Structures, Roles, and Accountability
A governance foundation chapter covering structures, decision rights, roles and the distinction between responsibility and accountability.
