Over time we all accumulate Technical Debt. After we adopted a new IT and IT Security Policy, I was charged with creating a mapping to how we meet this policy with organizational norms, EA Patterns & Building Blocks, a new Control Self-Assessment tool, and training our staff. We built an internal GRC tool to help us both become more efficient and audit proof. Join us to learn how we were able to tell a consistent story across our entire GRC and enable the business.