List your product on Stack Search

Get in front of thousands of GRC decision-makers

Risk & Resilience

APRA, ASIC Press Superannuation CEOs on AI, Cyber Risk & Crisis Preparedness

At two CEO roundtables in June, the Australian Prudential Regulation Authority and Australian Securities and Investments Commission asked industry leaders to consider cyberattacks complicated by artificial intelligence, failures at critical service providers and crises that spill across organizational boundaries. The regulators published notes from the discussions Tuesday.

The Hidden GRC Risk in Every M&A Deal: What Happens When Business Processes Collide

Not long ago, a CFO at one of the world's largest pharmaceutical companies said something that has stayed with me. We were discussing a major acquisition his company had just completed, and I asked what kept him up at night during the integration. His answer was not about valuation, synergies, or headcount. It was about business processes.

ASIC & APRA Tell Financial Firms to Act on Frontier AI Risks

The Australian Securities and Investments Commission and Australian Prudential Regulation Authority have urged financial market entities to move beyond awareness of frontier AI risks and begin preparing for their consequences. The regulators said increasingly capable AI models are accelerating cyber threats while adding pressure to the technology and operational risks financial institutions already face.

EBA Proposes New Operational Risk Framework for Banks Under CRR3

The EBA opened a public consultation on draft Regulatory Technical Standards under CRR3 that would set common requirements for how institutions govern, identify, assess, monitor and manage operational risk. The consultation runs through Dec. 31.

A Risk Assessment Isn't About Saying 'NO'

The more time I've spent working in Governance, Risk and Compliance (GRC), the more I've realized that a good risk assessment is rarely about preventing something from happening. It's about understanding what could happen, deciding whether the organization is comfortable with that level of risk, and making sure the right controls are in place before moving forward. That is a very different conversation.

APRA Maps Out a Tougher Test for Financial Resilience

APRA’s 2026-27 Corporate Plan puts cyberattacks, artificial intelligence, geopolitical tensions and dependence on common technology providers among the risks demanding closer attention from banks, insurers and superannuation trustees. The plan sets the regulator’s strategic direction for the next four years and, more immediately, its policy and supervisory agenda for the coming 12 to 18 months.

Mortgage Fraud Hid in the Gaps Between Australia’s Biggest Banks

Ten major Australian banks went looking through their mortgage books together. What they found was not a handful of suspicious applications sitting neatly inside one institution, but the outlines of potentially hundreds of millions of dollars in suspected fraudulent loans, recurring across lenders and concentrated largely in Sydney property.