{"podcast":{"title":"GRC Uncensored","slug":"grc-uncensored-7039393","podcast_index_feed_id":7039393,"rss_url":"https://feeds.acast.com/public/shows/6702dcb9c88f09c3e0b9a10a","website_url":"https://feeds.acast.com/public/shows/grc-uncensored","image_url":"https://assets.pippa.io/shows/6702dcb9c88f09c3e0b9a10a/1741868280073-98dc972f-f9c8-433b-ab33-a977b7f15a82.jpeg","author":"Elliot Volkman and Troy Fine","episode_count":24,"summary":"GRC Uncensored is an experimental podcast designed to elevate real conversations with GRC professionals, auditors, regulators, and those building programs around it. Your hosts are Troy Fine and Elliot Volkman. Hosted on Acast. See acast.com/privacy for more information.","last_synced_at":"2026-07-23T06:20:29.446813+00:00","page_url":"https://stenobird.com/podcast/grc-uncensored-7039393"},"episode":{"title":"Clean Reports, Flawed Systems, and the Future of GRC","slug":"clean-reports-flawed-systems-and-the-future-of-grc","published_at":"2025-10-09T12:00:00+00:00","page_url":"https://stenobird.com/podcast/grc-uncensored-7039393/clean-reports-flawed-systems-and-the-future-of-grc","show_page_url":"https://stenobird.com/podcast/grc-uncensored-7039393","url":"https://shows.acast.com/grc-uncensored/episodes/68e67c6f79fd6a22445bcb20","audio_url":"https://sphinx.acast.com/p/open/s/6702dcb9c88f09c3e0b9a10a/e/68e67c6f79fd6a22445bcb20/media.mp3","summary":"TJ, Kendra, and Elliot are back, and welcomed Evan Millman , GRC Manager at Abnormal Security, for what started as a casual chat and evolved into a sharp look at compliance blind spots, the role of AI in GRC, and how professionals can shape their careers in a changing field. [00:02:00] Evan shares how he used ChatGPT to analyze a risk assessment report. [00:05:00] What GRC leadership looks like at Abnormal Security (ISO 27001, 27701, 42001, SOC 2). [00:07:00] The complicated relationship between organizations and auditors — bias, incentives, and the reality of “clean” reports. [00:12:00] Why third-party attestations are table stakes, not real assurance. [00:19:00] TJ and Evan debate solutions: peer reviews, government oversight, or is the system fundamentally flawed? [00:27:00] How Abnormal approaches vendor risk: criticality ratings, renewals, and compensating controls. [00:32:00] Tools and automation in GRC — benefits and buyer’s remorse. [00:36:00] The role of AI: evidence review, documentation search, and “trust but verify.” [00:39:00] Should GRC professionals become coders, or double down on soft skills? [00:44:00] Evan’s career advice: networking, persistence, and why soft skills matter more than technical depth. Hosted on Acast. See acast.com/privacy for more information.","meta_description":"TJ, Kendra, and Elliot are back, and welcomed Evan Millman , GRC Manager at Abnormal Security, for what started as a casual chat and evolved into a sharp…","key_points":[],"chapters":[],"topics":[],"duration_seconds":2789,"processing_state":"not_requested","actions":[{"name":"request_transcript","method":"POST","url":"https://stenobird.com/v1/public/podcasts/grc-uncensored-7039393/episodes/clean-reports-flawed-systems-and-the-future-of-grc/transcription-requests","description":"Idempotently request low-priority transcript generation for this episode."},{"name":"read_markdown","method":"GET","url":"https://stenobird.com/podcast/grc-uncensored-7039393/clean-reports-flawed-systems-and-the-future-of-grc.md","description":"Read the agent-friendly Markdown representation of this episode resource."}]}}