black and white bed linen

Governance, Risk, Compliance.

Gain clear, relevant insights in today’s cybersecurity landscape.

About the GRC Journal

Hi! I’m Joshua, a lifelong learner with a focus on business and a curiosity for how organizations stay resilient in a complex, digital world.

The GRC Journal is my way of learning out loud, a space where I translate what I’m studying about Governance, Risk, and Compliance (GRC) into clear, practical insights. Along the way, I explore how psychology shapes cybersecurity behavior and how companies build trust through structure, standards, and accountability.

This project started with one goal: to go from zero to something and bring others with me on that journey.

What you’ll find here:

✔️ GRC concepts explained simply
✔️ Reflections on behavior, decision-making, and risk
✔️ Real-world breakdowns of security events
✔️ Curated tools and beginner-friendly resources

Whether you’re pivoting into the field, starting from scratch, or just curious, you're welcome here.

A question mark representing the start of a learning journey in GRC.
A question mark representing the start of a learning journey in GRC.

The GRC Journal Tags

Explore topics I write about — organized by focus area.

Icon representing frameworks, policies, and models in Governance, Risk, and Compliance.Icon representing frameworks, policies, and models in Governance, Risk, and Compliance.
buildings showing the application of GRC to real world companiesbuildings showing the application of GRC to real world companies
Icon showing the connection between human behavior and cybersecurity risks.Icon showing the connection between human behavior and cybersecurity risks.
book showing resourcefulnessbook showing resourcefulness

CYBERSECURITY & PSYCHOLOGY

GRC CONCEPTS

CASE STUDIES

TOOLS & RESOURCES

gray computer monitor

Contact Me

I'd love to hear your thoughts and insights on GRC.