Compliance Measured at the Speed of Risk...
GRC Solutions provides industry leading software products and services to address the Governance, Risk Management, and Compliance needs of clients across a variety of markets.
Yosemite Dream (c) Brian Becker 2003
March 2010
GRC Solutions Announces FedFin™
Federal Financial Banking and Compliance Solution.
January 2010
Lisa H. Ambrose joins GRC Solutions
GRC Solutions is proud to announce that Lisa H. Ambrose has joined its team as President.
December 2009
GRC Solutions Announces FRACTS ™
Federal Risk and Compliance
Technology Solution
to provide comprehensive risk and compliance assessment and management across a broad spectrum of Federal Regulations and Guidelines.
August 2009
GRC Solutions Announces PCI-Plus™
The Payment Card Industry's First Tool to Combine Both Compliance and Risk Assessments
June 2009
GRC Solutions Announces Professional Services Program

GRC Solutions Professional Services
GRC Solutions is proud to offer consulting services built on the extensive real-world experience of our consultants. Our professional services staff has over 100 collective years of experience as well as a diverse background to give you the best client experience in the industry. We focus on the following business challenges for technical vulnerabilities, risk management, and compliance adherence. Our world class service currently covers:
  • Payment Card Industry (PCI) focuses on applying Data Security Standards (DSS) version 1.2 across your business and application needs. We leverage formal PCI risk management approaches that result in helping you effectively measure and mitigate levels of risk, providing cost effective measures to protect your customer and merchant data providing secure organizational and process technology information assets. This approach allows for both the PCI Compliance reporting and the Risk Assessment Reporting in a single effort to meet all the business needs.
  • Health Insurance Portability and Accountability Act (HIPAA) Compliance directly measures organizations’ HIPAA compliance for all new and existing standards.  We evaluate your current HIPAA compliance status and create a detailed assessment providing timely and cost effective action plans that ensure you spend your money to directly helpmeet your objectives and deadlines for audits and inspections. This approach covers the HIPAA compliance requirements to give you a view of your current near real time compliance efforts and the required Risk Assessment.
  • Information Security (ISO 27001 and 27002) focuses on leveraging the Security Attribute Evaluation Method (SAEM) and NIST-ROI methodologies for formal IT Security risk management assessment. Our dashboard view helps you effectively visualize and measure your current risk profile. Our reports provide the foundation to formulate a cost effective risk mitigation program to mitigate risk to acceptable levels. Our solution and service provides education and coaching protecting the confidentiality, integrity, and availability of your organization’s information assets, customers and board interactions.
  • Red Flag and Personally Identifiable Information (PII) focuses upon the examination and assessment of how personal information is managed within your organization, Our solution identifies potential gaps in compilance and recommends strategies to minimize or eliminate those gaps. Our dashboard view can monitor your current state and alert you to any changes in your level of protection.
GRC Solutions as Your Vendor of Choice
At GRC Solutions we pride ourselves at partnering with you to protect your company’s needs and assets, measure your compliance and by use of your acceptable risk model show you where you are on this Risk profile. If you do not have a business risk model we work with you to develop one to allow for consistent, concise, and accurate risk reporting. Because we come from small business roots we offer three tiers of consulting support programs:
  • GRC Solutions Advisory Services
  • GRC Solutions Consultancy Services
  • GRC Solutions Professional Services
GRC Solutions Advisory Services is our most popular consulting option. Designed to provide a focused look into your business’ compliance and governance/management interests. GRC Solutions Advisory Services is a traditional business partnership providing defined service with on-site support to meet your specific needs.

GRC Solutions Consultancy Services is built around a 24x7 service to support your complete and comprehensive audit management needs.   GRC consultants act as your on-site compliance and risk managers in representing the assessment and strategic goals your company has built.  Clients enjoy a localized representative that assists auditors and inspectors through the myriad of business and compliance objectives developed specifically for your company. This approach provides you with dedicated on-site professional staff working with you and your company to resolve and mitigate all compliance and security needs. GRC Solutions Consultancy Services is a business partnership providing detailed services with on-site support meeting your audit and risk, and compliance needs.

GRC Solutions Professional Services Hourly Consultancy is a partnership providing detailed service with on-site support meeting your audit and business needs. GRC Solutions Professional Services is a high quality service based consultancy providing you with our world class expert insight and recommendations to meet any unique governance, risk assessment, or compliance needs you may have.  We can work with you to develop your GRC strategy.  Services provided can include:

  • Strategic GRC planning and program development
  • Development of custom content based on your organization’s internal policies and procedures
  • Development of custom functionality unique to your needs

Our goal is to have our customers as customers for life as our partners in the work to secure and protect your critical assets. We understand that your data in whatever field you are in is your critical asset and we give you the highest chance of retaining it in a protected manner as an output of our services.

© Copyright 2009 - GRC Solutions, Inc.