Cybersecurity glossary

Cybersecurity definition

What is GRC?

GRC stands for Governance, Risk, and Compliance.

By Updated

Definition

The combined discipline of setting policy (governance), identifying and managing what could go wrong (risk), and proving adherence to laws and standards (compliance) — usually the umbrella term for the programs and tools that manage all three together.

Where GRC fits in the security landscape

These beginner lessons use this term while explaining the surrounding security control.

Use this definition as a baseline when reading category and product pages. Implementations, editions, and vendor terminology can differ; current product claims should be checked against the source-linked profile.

How definitions and product facts are maintained

Search Cyber Tool Stack

Jump to any tool, vendor, category, or glossary term.