Joan Qafoku
Director, Consulting
Joan is a director at KPMG in the cybersecurity consulting practice. He partners with clients in the technology, media, and telecommunications industries on strategic technology and cybersecurity transformations. His work and experience spans a variety of domains including cybersecurity strategy, integrated risk management or governance risk and compliance (GRC), cybersecurity operations (SecOps), vulnerability management, technical product management, agile software development, and DevOps.
Recent News
View allConference Sessions
A GRC modernization & transformation journey
SPN3082-K23
<p style=""><span style="font-size: 11.0pt;"><span style="font-family: Calibri , sans-serif;"><span style="color: rgb(0,0,0);"><span style="background-color: yellow;">Thinking about migrating from your legacy governance, risk, and compliance (GRC) technology to ServiceNow®? KPMG shares perspectives of what has worked with clients as they re-evaluate their approach to GRC during a large technology migration – leveraging the transformation to dial-up performance by increasing productivity, reducing cost, improving user adoption, and driving risk reduction at scale. This session will showcase strategies to build organizational alignment in a GRC program when adopting ServiceNow as your next-generation GRC platform to maximize the value to the business.</span></span></span></span></p> <p><br /> </p>
AI is everywhere, but how does your organization manage the risk?
SPN2331
AI is everywhere and while the velocity of innovation continues to increase, so does the need to see value now. But what about the risk? How do you govern an area of technology that is changing so fast? In this session, we'll discuss how organizations are meeting this challenge through a combination of risk frameworks and technology; specifically, the KPMG framework for AI governance enabled by ServiceNow. You'll have the opportunity to discuss challenges with your peers and hear how other organizations are successfully tackling this challenge.
Making AI governance real: Strategies for scale and automation
SES2217
AI is fundamentally transforming business – AI governance needs automation to scale at the pace of change without adding friction. Gain practical tips for creating an AI inventory, system cards, and risk & compliance assessment workflows and integrate them within existing cybersecurity, risk, and compliance programs on ServiceNow IRM. Learn essential aspects of enabling AI discovery, observability, inventory management, and automation of governance procedures through metadata extraction from AI systems, targeting risk management across the AI lifecycle.