Riskonnect Blog
Welcome to Riskonnect, the place where risk and compliance professionals can find expert advice, practical tips, and useful information to do their jobs easier, faster, and more effectively.
Business Continuity Standards: Are You Aligned or Just Accountable?
Business continuity standards like ISO 22301 and NIST define what “good” looks like for your program – but they don’t deliver resilience on their own.Some organizations pursue certification to validate their programs externally. Others [...]
How the RAF Integrated Risk with Strategy to Drive Performance
Modernising risk management in the public sector isn’t just about implementing new software—it’s about culture, strategy, and enabling better decisions. In a recent webinar, we spoke to Andy Gilroy, head of performance management [...]
2025 Riskonnect Survey: Trade Wars, Political Instability, and AI Risks Are Escalating Faster Than Organizations Can Respond
Political uncertainty is climbing. Geopolitical shocks and cyberattacks are still hitting companies hard. Economic uncertainty lingers. And AI is advancing faster than governance can keep up. Agentic AI – the latest wave of [...]
Managing Psychosocial Hazards: Aligning Processes with ISO 45003 to Meet Mandatory Regulations
Managing stress and safeguarding staff well-being is no longer just an HR issue; addressing psychosocial hazards is becoming a regulatory requirement. Around the world, regulators are tightening occupational health and safety laws to [...]
The NIS2 Directive: What It Means for Your Cyber Resilience Program
The NIS2 Directive broadens the focus of NIS1 from technical cybersecurity alone to enterprise-wide resilience. It requires organizations to maintain essential services under threat, recover quickly from incidents, and protect supply chain stability. With [...]
Modernizing the BIA: 10 Questions to Update Your Strategy
The Business Impact Analysis (BIA) is a cornerstone of business continuity and resilience. However, traditional, once-a-year BIAs can’t keep pace with quickly emerging threats and constantly changing operations. Static reports become outdated, leaving organizations [...]
ERM vs. IRM: Rethinking the Divide
The conversation around ERM vs. IRM is often framed as a choice: Which is better? Which should organizations adopt? This framing assumes there’s a clean distinction to begin with, but it’s not that simple. [...]
6 Ways CISOs Turn Vendor Risk into an Innovation Advantage
As third-party related issues and breaches grow more frequent and costly, their overall impact on business operations and brand trust has become impossible to ignore. An alarming statistic in the Verizon 2025 Data [...]
Outgrowing Check-the-Box: Banking Risk Management’s Better Way Forward
Outgrowing Check-the-Box: Banking Risk Management’s Better Way Forward In banking, risk management can often place heavy emphasis on managing the risks taken by investment activities, with much less stress on well-rounded governance, risk, and [...]
How the Right Software Simplifies NDIS Compliance in Healthcare
The requirements outlined in the National Disability Insurance Scheme (NDIS) add new layers of complexity, and healthcare providers across Australia struggle to keep up. According to the NDIS Provider Outlook Report 2025, 76% of [...]










