June 20, 2026 · Prof. Dr. Mohammed Abdur Rahman
Alhamdulillah — we are delighted to announce that our paper has been accepted for publication by Springer Nature in the Proceedings of the 2nd International Conference on Emerging Trends in Cybersecurity. The paper appears as Chapter 16 and is now indexed with DOI 10.1007/978-981-92-1074-9_16.
In today's dynamic and highly regulated enterprise environments, governance, risk, and compliance (GRC) management systems are essential for ensuring adherence to evolving regulations and effective risk management. Traditional GRC systems often depend on manual workflows, limiting adaptability, hindering large-scale data processing, and restricting contextual decision-making, while a shortage of skilled GRC specialists creates operational bottlenecks and complicates certification efforts. This study introduces a large-language-model-powered virtual GRC assistant that leverages natural language processing to interpret complex regulations in real time, streamline risk assessments, and enable AI-assisted compliance workflows.
Trained on key frameworks such as the NCA Essential Cybersecurity Controls (ECC), SDAIA AI Ethics guidelines, and international standards including ISO 27001:2022 and ISO 42001:2023, the system integrates human and AI interaction with regulatory knowledge bases to enhance accuracy and efficiency. Preliminary results demonstrate up to a 60% improvement in operational efficiency and compliance accuracy rates of up to 98%, highlighting the solution's potential to reduce reliance on scarce expertise, accelerate certification processes, and strengthen organizational resilience in regulated industries.