“Governance and risk management is not just about policing the business. It’s about engaging with stakeholders, understanding their challenges, and providing solutions from a risk and controls perspective.”
“The biggest benefit we are getting right now is to compress the time period we have to roll the updated ERM top 25 out. We are able to give it to the executive team in time for them to discuss the results and the progress.”
"Reliability compliance is a critical program for us. We must report on over a thousand standards and requirements for the large number of participants in our energy market. By using MetricStream solutions we will be able to enhance our compliance efforts. We selected MetricStream solutions because they were user friendly and secure, and will integrate easily with our existing systems."
“We need a regulatory engagement management system that is capable of being used by key people in compliance and quite widely in our counterpart functions like finance, risk, and legal, but also actually in the business – either as an information delivery tool, or as a way to share information back to compliance. We also need to create a central repository of what’s going on with regulators – which we can’t do with our current technology limitations. That really impairs the efficiency of what we do, as well as the organization’s ability to see what’s going on in the whole piece.”
"We have now started to see commonality between different organization unit's risk assessment. We are starting to see maturities in how we are identifying issues in that process. We also have action plans for the next quarter and so forth."
"[GRC] is truly a strategic implementation. [By using a GRC tool], you can save a lot of time, streamline your processes, and get people across the organization to use the same tool, thus increasing transparency and accountability.”
"With a deluge of threats targeting internet infrastructures, achieving regulatory compliance was critical to us. We were looking for a solution that could serve as the basis of our SOX compliance initiatives and provide a comprehensive platform to manage financial and nonfinancial controls."
"We were looking for a scalable solution because risk can be looked at from various perspectives - vendor, cyber, regulatory, etc - and the MetricStream platform addressed our requirements. Technology is truly an enabler, and has helped us eliminate errors due to manual processes, identify risks in a timely manner, and devise remediation plans."
“MetricStream solutions provide out-of-the-box capabilities for the ISO 9000 standards. We are using these effectively for an accelerated implementation to meet our aggressive timetable leading to the ISO certification.”
"We used to take a lot of man-hours trying out the numbers lots of reports and graphs that would be affected with one small change, but with the tool we can do that simultaneously."
"At Infigen Energy, we hold ourselves to the highest standards of corporate governance, risk management and compliance. In order to stay ahead of various changes in our risk and regulatory environment we require the support of an integrated and agile solution. Of the vendors we evaluated MetricStream offered the most comprehensive GRC solution. Through our partnership with MetricStream we plan to embark on a long and successful GRC journey marked by a strong culture of risk awareness, compliance and good governance."
"With the MetricStream solution, the bank can effectively aggregate and monitor compliance risks at the enterprise level."
"We selected the MetricStream solution for its ability to provide powerful workflows and key metrics around the audits function.More importantly, it will help us automate CBO's risk-based audits and providerisk assessment methodologies which,in turn, will enable us to enhance the effectiveness and efficiency of CBO's existing risk-based audit infrastructure. The solution will also help build a comprehensive compliance framework for the Central Bank of Oman by providing the capability to integrate several regulatory requirements and risk management initiatives."
"Quantification is important because it gives us a base line or a basis rather of how we can truly inform the business to help prioritize business decisions but also to enable business."
“MetricStream provided us a proven, scalable and cost effective solution to help our subsidiaries streamline SOX compliance initiatives. The configurability of the solution combined with the logically structured, intuitive interface accelerated the speed at which we were able to achieve unified risk and compliance framework. We are pleased to partner with such a world class organization, and look forward to working with them.”