black and white bed linen

Governance, Risk, Compliance

Gain clear, relevant insights in today’s cybersecurity landscape.

About the GRC Journal

Hi! I’m Joshua, a lifelong learner with a focus on business and a curiosity for how organizations stay resilient in a complex, digital world.

The GRC Journal is my way of learning out loud — a space where I translate what I’m studying about Governance, Risk, and Compliance (GRC) into clear, practical insights. Along the way, I explore how psychology shapes cybersecurity behavior, and how companies build trust through structure, standards, and accountability.

This project started with one goal: to go from zero to something — and bring others with me on that journey.

What you’ll find here:

✔️ GRC concepts explained simply
✔️ Reflections on behavior, decision-making, and risk
✔️ Real-world breakdowns of security events
✔️ Curated tools and beginner-friendly resources

Whether you’re pivoting into the field, starting from scratch, or just curious — you're welcome here.

A question mark representing the start of a learning journey in GRC.
A question mark representing the start of a learning journey in GRC.

The GRC Journal Tags

Explore topics I write about — organized by focus area.

Icon representing frameworks, policies, and models in Governance, Risk, and Compliance.Icon representing frameworks, policies, and models in Governance, Risk, and Compliance.
Icon symbolizing real-world breach analysis and lessons learned.Icon symbolizing real-world breach analysis and lessons learned.
Icon showing the connection between human behavior and cybersecurity risks.Icon showing the connection between human behavior and cybersecurity risks.
Icon showing GRC tools and other beginner-friendly resources.Icon showing GRC tools and other beginner-friendly resources.

CYBERSECURITY & PSYCHOLOGY

GRC CONCEPTS

CASE STUDIES

TOOLS & RESOURCES

gray computer monitor

Contact Me

I'd love to hear your thoughts and insights on GRC.