Search engine for discovering works of Art, research articles, and books related to Art and Culture
ShareThis
Javascript must be enabled to continue!

The Added Value of Applying Governance, Risk, and Compliance (GRC) in the Healthcare Sector: A Literature Review

View through CrossRef
The healthcare sector faces unique pressures complex regulatory demands, patient safety obligations, escalating cybersecurity threats, and investor expectations making it one of the industries where Governance, Risk, and Compliance (GRC) frameworks offer the greatest potential value. This literature review synthesizes evidence from 25 peer-reviewed studies, systematic reviews, bibliometric analyses, and industry reports published between 2010 and 2026 to answer the question: what added value does applying GRC bring to healthcare organizations? Six distinct value dimensions are identified and examined: (1) firm value and investor confidence, (2) patient safety and care quality, (3) proactive cyber risk management, (4) operational efficiency and cost reduction, (5) regulatory compliance and reputation protection, and (6) strategic resilience and enterprise risk management. Findings indicate that GRC positively affects firm value in healthcare companies, with an explanatory level of 33.8% [14], and that integrated GRC is associated with improved patient safety across multiple health systems [3]. The review also identifies significant barriers to implementation, including cultural resistance, resource constraints, and data privacy concerns, alongside emerging opportunities from artificial intelligence-enabled GRC tools. The evidence consistently demonstrates that GRC value in healthcare is multiplicative rather than additive: governance, risk management, and compliance generate greater combined benefit when integrated than when managed as separate functions.
Title: The Added Value of Applying Governance, Risk, and Compliance (GRC) in the Healthcare Sector: A Literature Review
Description:
The healthcare sector faces unique pressures complex regulatory demands, patient safety obligations, escalating cybersecurity threats, and investor expectations making it one of the industries where Governance, Risk, and Compliance (GRC) frameworks offer the greatest potential value.
This literature review synthesizes evidence from 25 peer-reviewed studies, systematic reviews, bibliometric analyses, and industry reports published between 2010 and 2026 to answer the question: what added value does applying GRC bring to healthcare organizations? Six distinct value dimensions are identified and examined: (1) firm value and investor confidence, (2) patient safety and care quality, (3) proactive cyber risk management, (4) operational efficiency and cost reduction, (5) regulatory compliance and reputation protection, and (6) strategic resilience and enterprise risk management.
Findings indicate that GRC positively affects firm value in healthcare companies, with an explanatory level of 33.
8% [14], and that integrated GRC is associated with improved patient safety across multiple health systems [3].
The review also identifies significant barriers to implementation, including cultural resistance, resource constraints, and data privacy concerns, alongside emerging opportunities from artificial intelligence-enabled GRC tools.
The evidence consistently demonstrates that GRC value in healthcare is multiplicative rather than additive: governance, risk management, and compliance generate greater combined benefit when integrated than when managed as separate functions.

Related Results

Evaluating the Science to Inform the Physical Activity Guidelines for Americans Midcourse Report
Evaluating the Science to Inform the Physical Activity Guidelines for Americans Midcourse Report
Abstract The Physical Activity Guidelines for Americans (Guidelines) advises older adults to be as active as possible. Yet, despite the well documented benefits of physical activi...
The Role of IT Governance Risk and Compliance (IT GRC) in Modern Organizations
The Role of IT Governance Risk and Compliance (IT GRC) in Modern Organizations
Abstract: The study delves into the intricacies of IT Governance, Risk, and Compliance (IT GRC) in modern organisations, emphasising its significance amidst evolving regulatory lan...
Advancing Organizational Resilience Through Enterprise GRC Integration Frameworks
Advancing Organizational Resilience Through Enterprise GRC Integration Frameworks
In an era defined by regulatory complexity, escalating cyber threats, and rapid market volatility, organizational resilience has emerged as a critical determinant of long-term comp...
Signifikansi Funding Agencies pada Global Research Council (GRC) Sebagai Bagian Masyarakat Sipil Global
Signifikansi Funding Agencies pada Global Research Council (GRC) Sebagai Bagian Masyarakat Sipil Global
AbstractThe paper discusses the question of the significance of the role of funding agencies in the Global Research Council (GRC). GRC, part of the Global Civil Society (GCS) as an...
AI-Driven continuous compliance and threat intelligence model for adaptive GRC in complex digital ecosystems
AI-Driven continuous compliance and threat intelligence model for adaptive GRC in complex digital ecosystems
The rapid evolution of digital ecosystems—characterized by multi-cloud infrastructures, IoT proliferation, and distributed data flows—has fundamentally altered the governance, risk...
Digital access and inclusion for SMEs in the financial services industry through Cybersecurity GRC: A pathway to safer digital ecosystems
Digital access and inclusion for SMEs in the financial services industry through Cybersecurity GRC: A pathway to safer digital ecosystems
The integration of digital technologies into the financial services industry has revolutionized how small and medium-sized enterprises (SMEs) access and utilize financial services....
Perceptions of Telemedicine and Rural Healthcare Access in a Developing Country: A Case Study of Bayelsa State, Nigeria
Perceptions of Telemedicine and Rural Healthcare Access in a Developing Country: A Case Study of Bayelsa State, Nigeria
Abstract Introduction Telemedicine is the remote delivery of healthcare services using information and communication technologies and has gained global recognition as a solution to...

Back to Top