GRC is no longer just about compliance checklists; it’s becoming the backbone of how organizations make secure, risk-aware decisions. And now, with AI entering the picture, the expectations from GRC professionals are rapidly evolving. Whether transitioning from banking, finance, healthcare, IT, or even starting fresh, the biggest challenge is knowing where to start, what skills matter, and how to actually enter or grow in GRC roles.
This bootcamp bridges that gap. It doesn’t just teach concepts, it shows how GRC works in real organizations, how AI is reshaping governance and risk, and how to position for the right roles with the right skills and certifications.
Yasesveni
21+ Years of ExperienceYasesveni is a subject matter expert in GRC and Cybersecurity with over 21 years of experience. She has led major security implementations and governance programs across global enterprises. She has conducted 6000+ hours of audits. As a corporate trainer, she has delivered 700+ sessions, training over 8000 participants across Asia, Europe, the Middle East, Africa, and North America in GRC, Information security, cybersecurity, and AI management systems. She combines hands-on experience in ISO standards, cybersecurity frameworks, and privacy compliance with deep experience in risk governance and digital assurance.
Module 1: Welcome & Introduction to GRC
- What is GRC? Why is it important today?
- Evolution of GRC: from compliance-driven to business-enabler
- How AI is reshaping governance & risk
- GRC roles in organizations (from analyst to program lead)
5-min Icebreaker: “Where does GRC touch your daily digital life?”
Module 2: Security Policies & Governance
- What is Governance vs Security Governance?
- Policy → Standard → Procedures → Guidelines
- How AI governance fits into organizational governance?
- Policy lifecycle: creation, approval, dissemination, enforcement
Participants look at a poorly written policy and suggest rewrites
Module 3: Understanding Security Controls &
Compliance Frameworks
- What are security controls (preventive • detective • corrective)
- Why controls fail (real breach examples)
- Overview of major frameworks:
- ISO 27001, NIST CSF, SOC 2,
- AI Frameworks: NIST AI RMF
- Unified Control Framework (UCF) concept
Map a simple real-world scenario to relevant controls
Module 4: Introduction to Audit
- Why audits exist & who performs them
- Internal vs external audits
- The audit lifecycle: planning → fieldwork → findings → closure
- Types of audit evidence
- AI audit considerations (data quality, model transparency)
Engaging Activity
- Review a mocked control and decide:
- Is it compliant?
- What evidence is missing?
- What finding would you write?
Module 5: Risk Management
- Key Risk Terminologies - Threats, vulnerabilities, impacts
- Inherent vs residual risk
- Introduction to Risk Management Lifecycle
- Introduction to AI risks (bias, data leakage, adversarial attacks)
Engaging Activity
- Convert a real scenario into a risk statement
- Perform a simple Likelihood x Impact scorin
- Build a mini risk register
Module 6: Integrating GRC Across the
Organization
- How GRC integrates with:
- IT & Security
- HR & Legal
- Finance & Compliance
- Vendor/Supply Chain
- AI/Automation initiatives
- What a mature GRC program looks like
- GRC tools overview (ServiceNow GRC, Archer)
Engaging Activity
- Design a GRC Integration Map
Module 7: The Future of GRC + Career Pathways +
Q&A
- Why GRC roles are growing fast
- AI governance skills as differentiators
- Skills & certifications (ISO 27001 LA, CRISC, CISA, AI governance certs)
- Typical career tracks
*Note: Participants will have access to session recordings for a period of 60 days.
- Freshers who want to start a career in Governance, Risk & Compliance
- Professionals from any industry (IT, banking, finance, healthcare, consulting, etc.) looking to transition into GRC roles
- Individuals aspiring for GRC leadership and program management positions
Aseza Dinana
South AfricaThe GRC Bootcamp was very informative, especially with the inclusion of real-world examples that made the concepts easier to understand.
Poornima KS
IndiaAn excellent and well-structured GRC program! The instructor made complex topics easy to understand through practical examples. I particularly appreciated the clear roadmap for future certifications and career growth. Highly recommended for beginners and anyone looking to advance their skills!
Ravi Kanchi
IndiaThe GRC Foundation Bootcamp by InfosecTrain was well-structured and practical. The content was clear and easy to follow. The instructor explained concepts simply and connects them with real-world scenarios, making the sessions engaging and valuable for understanding GRC in business environments.
Shiva Nath
IndiaThe GRC Bootcamp was a good learning session where technical terms were explained in simple and clear words, making the concepts easy to understand.
Somy K Raju
IndiaThank you to the InfosecTrain team for the excellent support and effort. The GRC session was very good and truly appreciated.
Seshi Bhushan Telagatoti
IndiaThe GRC Bootcamp, all the trainings and other programs from InfosecTrain are top-class and well delivered. Thank you.
Interested in Joining the
Our advisor will contact you with event details, and exclusive offers!
