In this episode of the GRC Engineer podcast, Ayoub Fandi interviews Emre Ugurlu and Chad Fryer from Docker about building a GRC program from scratch. They discuss the initial state of GRC at Docker, the shift in company focus from enterprise to SaaS, and the importance of collaboration and communication with other teams. Emre and Chad highlight their approach to prioritizing projects, focusing on compliance as a baseline, and incorporating user experience into their solutions. They emphasize the value of automation, the "build versus buy" philosophy, and the technical skills essential for GRC engineers, including API knowledge and documentation. They also share their vision for transforming GRC and their goals for the next 12 months, including improving continuous compliance, formalizing governance processes, and launching a cloud-based customer trust system.
Sign in to continue reading, translating and more.
Continue