The GRC Architect — eBook (PDF + EPUB)

The GRC playbook for the EU AI Act enforcement year - and the frameworks that run beside it.On 2 August 2026, the EU AI Act's high-risk obligations became enforceable: risk management, technical documentation, human oversight, and logging for any AI system touching employment, credit, education, biometrics, or essential services. The Cyber Resilience Act follows in December 2027. This book is the governance framework for that world.600 pages, practitioner-written. Build the governance structure (ISSC charters, policy architecture, audit-ready minutes). Run risk end to end (RAM, risk registers, treatment plans, residual-risk acceptance with owner sign-off). Audit like a professional (internal audit lifecycle, 5-Whys corrective action). Engineer GRC (governance data lakes, policy-as-code, evidence pipelines). Govern AI specifically (EU AI Act risk tiers, provider/deployer RACI). Manage operational resilience, third-party risk, and the DORA/NIS2 regulatory clocks.THE KIT also includes the companion template repository: 42 fill-and-modify templates across 8 domains - risk registers, BIAs, ROPAs, AI governance registers, the Statement of Applicability, internal audit procedures - in both markdown and fillable Word form. ISO 27001:2022 Annex A numbering, exact regulatory dates, fill-in fields. Licensed for internal organizational use.Every purchase includes all future updates free.Written by a 25-year IT and security veteran (network architect, Microsoft infrastructure engineer, penetration tester, CISSP). For CISOs, GRC managers, internal auditors, and compliance officers who need systems - not checklists that pretend to be systems.