The GRC Journal
  • Journal
  • Tracker
  • About
  • Standards
  • Contribute
  • Contact
Subscribe
  • Journal
  • Tracker
  • About
  • Standards
  • Contribute
  • Contact
  • Subscribe

Topic

Incidents & Governance Failures

2 pieces on Incidents & Governance Failures. Browse the full Journal.

Case

Case Study: The Governance Gap Behind a Massive Breach

In 2017, a missed software patch at Equifax exposed the personal data of over 145 million people. This case study explains how human error, unclear ownership, and weak verification turned a preventable issue into one of history’s largest data breaches, and the governance lessons every organization can learn from it.

Joshua Clarke · August 14, 2025 · 1 min read

Case

Qantas Data Breach Explained: Third Party Risk, Social Engineering, and GRC Lessons

A breakdown of the 2025 Qantas data breach that exposed 5.7 million customer records through a third-party vendor. Learn how social engineering, weak vendor oversight, and delayed trust controls created the perfect storm and what it means for GRC, cybersecurity behavior, and risk management today.

Joshua Clarke · July 22, 2025 · 2 min read

The GRC Journal

Where governance, risk, and compliance meet the real world.

Institutional

  • About
  • Editorial Standards
  • Tracker
  • Glossary
  • Contribute
  • Contact

The GRC Journal Newsletter

New work, sent when there's something worth reading.

Subscribe

© 2026 The GRC Journal.

Privacy · Terms · Corrections