<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Introduction &amp;amp; Seeking Guidance on GRC Career Path in Governance, Risk, Compliance</title>
    <link>https://community.isc2.org/t5/Governance-Risk-Compliance/Introduction-amp-Seeking-Guidance-on-GRC-Career-Path/m-p/78393#M1295</link>
    <description>&lt;P&gt;Hello Folks,&lt;/P&gt;&lt;P&gt;I’m thrilled to join this community and eager to learn from professionals in the cybersecurity and GRC space.&lt;/P&gt;&lt;P&gt;I’m currently halfway through the ISC2 Certified in Cybersecurity (CC) Foundation program and preparing to book my exam soon. Since this program is freely offered, I wanted to hear your thoughts on its relevance to a GRC career:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;P&gt;With the CC certification, would I be well-positioned to start as a GRC analyst, or are there additional certifications, skills, or experience I should focus on?&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;What are the best entry paths into GRC, especially for someone looking to break into the field?&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;Are there any valuable resources, mentorship opportunities, or industry trends I should pay close attention to?&lt;/P&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;I’d appreciate any insights or advice you can share, and I look forward to engaging with and learning from this community.&lt;/P&gt;&lt;P&gt;Best regards,&lt;BR /&gt;Murray Lichoro&lt;/P&gt;</description>
    <pubDate>Mon, 31 Mar 2025 17:18:48 GMT</pubDate>
    <dc:creator>MurrayLichoro</dc:creator>
    <dc:date>2025-03-31T17:18:48Z</dc:date>
    <item>
      <title>Introduction &amp; Seeking Guidance on GRC Career Path</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/Introduction-amp-Seeking-Guidance-on-GRC-Career-Path/m-p/78393#M1295</link>
      <description>&lt;P&gt;Hello Folks,&lt;/P&gt;&lt;P&gt;I’m thrilled to join this community and eager to learn from professionals in the cybersecurity and GRC space.&lt;/P&gt;&lt;P&gt;I’m currently halfway through the ISC2 Certified in Cybersecurity (CC) Foundation program and preparing to book my exam soon. Since this program is freely offered, I wanted to hear your thoughts on its relevance to a GRC career:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;P&gt;With the CC certification, would I be well-positioned to start as a GRC analyst, or are there additional certifications, skills, or experience I should focus on?&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;What are the best entry paths into GRC, especially for someone looking to break into the field?&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;Are there any valuable resources, mentorship opportunities, or industry trends I should pay close attention to?&lt;/P&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;I’d appreciate any insights or advice you can share, and I look forward to engaging with and learning from this community.&lt;/P&gt;&lt;P&gt;Best regards,&lt;BR /&gt;Murray Lichoro&lt;/P&gt;</description>
      <pubDate>Mon, 31 Mar 2025 17:18:48 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/Introduction-amp-Seeking-Guidance-on-GRC-Career-Path/m-p/78393#M1295</guid>
      <dc:creator>MurrayLichoro</dc:creator>
      <dc:date>2025-03-31T17:18:48Z</dc:date>
    </item>
    <item>
      <title>Re: Introduction &amp; Seeking Guidance on GRC Career Path</title>
      <link>https://community.isc2.org/t5/Governance-Risk-Compliance/Introduction-amp-Seeking-Guidance-on-GRC-Career-Path/m-p/78450#M1296</link>
      <description>&lt;P&gt;Hi Murray&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Good on you for working towards your certification.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In my opinion, the CC certification certainly can put you onto the path as a GRC analyst but if I was hiring, I would be a bit more interested in your familiarity with whatever compliance/governance I was dealing with. Keep in mind, I would not expect you to be an expert, but I might want to know what your knowledge is regarding NIST or PCI DSS is (for example).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So, I guess my recommendation is when you get to the point you are interviewing for a position, research the company. Try to get a handle on what compliance or governance they might be struggling with. Then research those models. At a minimum it shows you are willing to self-start and find answers.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;Tim&lt;/P&gt;</description>
      <pubDate>Wed, 02 Apr 2025 16:12:59 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Governance-Risk-Compliance/Introduction-amp-Seeking-Guidance-on-GRC-Career-Path/m-p/78450#M1296</guid>
      <dc:creator>tsutherburg</dc:creator>
      <dc:date>2025-04-02T16:12:59Z</dc:date>
    </item>
  </channel>
</rss>

