Skip to content
Go to homepageDrova logo

Drova news and trending

Page 2 of 6. Back to the latest articles.

Risk management isn’t failing… It’s just disconnected

Risk Management

Risk management isn’t failing… It’s just disconnected

Compliance-led risk creates paperwork and drag. Objective-led GRC reconnects risk to outcomes so teams can prove readiness faster.

5 Feb 2026

Board-ready by design: What auditors expect under AASB S2

ESG & Sustainability

Board-ready by design: What auditors expect under AASB S2

AASB S2 shifts climate reporting from narrative to evidence. Learn the audit mindset across governance, risk, scenario analysis, financial effects, and data lineage.

23 Jan 2026

From spreadsheets to sightlines: Why NDIS boards must rebuild for visibility

Governance & Reporting

From spreadsheets to sightlines: Why NDIS boards must rebuild for visibility

NDIS boards are facing a governance turning point as fragmented data and manual reporting delay decisions and hide risk. This article explains why visibility and connected systems matter now.

23 Jan 2026

Control as culture: Credit unions should treat risk discipline as a profit lever

Risk Management

Control as culture: Credit unions should treat risk discipline as a profit lever

Rising costs and arrears show credit unions can't rely on sentiment alone. A culture of control makes risk discipline a capacity and profit lever.

22 Jan 2026

What AASB S2 really means for CFOs (and how to stay in control)

Regulatory & Standards Compliance

What AASB S2 really means for CFOs (and how to stay in control)

AASB S2 turns climate disclosure into a core finance obligation. This CFO checklist makes the 80+ clauses auditable, clarifying ownership, evidence, and assurance-ready reporting.

15 Jan 2026

Calling all CFOs: Your 90-day plan to AASB S2 readiness

Regulatory & Standards Compliance

Calling all CFOs: Your 90-day plan to AASB S2 readiness

A CFO-led 90-day plan for AASB S2 readiness: map existing data, clarify ownership, integrate climate risk, build evidence, and rehearse reporting.

14 Jan 2026

Beyond repairs: How UK housing associations can turn maintenance into financial strength

Regulatory & Standards Compliance

Beyond repairs: How UK housing associations can turn maintenance into financial strength

UK housing associations face rising reactive maintenance costs and tighter balance sheets. See how objective-led maintenance and real-time visibility build financial resilience.

13 Jan 2026

Liquidity under pressure: How UK credit unions can take back financial control

Regulatory & Standards Compliance

Liquidity under pressure: How UK credit unions can take back financial control

UK credit unions face tighter margins and shifting depositor behaviour. Learn the mindset shifts and objective-led controls that turn liquidity pressure into financial resilience.

13 Jan 2026

Drova operational resilience dashboard

Regulatory & Standards Compliance

The CPS 230 value opportunity: How Australian insurers can turn compliance into confidence

CPS 230 is emerging as a blueprint for operational resilience, helping insurers tighten reporting cycles, cut incidents, and strengthen regulator trust.

8 Jan 2026

The rise of objective-led GRC: Why governance built for the next audit won’t deliver the next opportunity

Objective-led GRC

The rise of objective-led GRC: Why focusing on the next audit won’t deliver the next opportunity

Objective-led GRC starts with what the business is trying to achieve — and connects every risk, control, and action to that goal.

24 Dec 2025

The 5% challenge: How housing associations can protect margin in 2026

Regulatory & Standards Compliance

The 5% challenge: How housing associations can protect margin in 2026

Holding a 5% operating margin has become the new survival benchmark.

23 Dec 2025

Three operational resilience predictions we got right (and one we got wrong) in 2024

Operational Resilience

Three operational resilience predictions we got right (and one we got wrong) in 2024

In our Operational Resilience Outlook Report 2024, we outlined the shifts we expected to see across regulation, risk, and organisational maturity. A year later, some of those predictions have become reality while others were underplayed.

16 Oct 2025

Mini report, big strategy: Could these AI agents build your next 3-year plan?

Business Strategy

What Australia’s insurance leaders predict for 2026: Insights from Drova’s new Insurance Outlook Report

The conversations shaping Australia’s insurance sector heading into 2026 reflect a wide range of professional perspectives. Insights captured in the report span senior executives, underwriting and risk leaders, technology specialists and operational teams - each bringing a distinct view of how pressures and priorities are shifting across the industry.

16 Oct 2025

Mini report, big strategy: Could these AI agents build your next 3-year plan?

AI & Innovation

Mini report, big strategy: Could these AI agents build your next 3-year plan?

Behind Drova’s new Sustainability & Business Strategy Report is a team of AI agents working like strategists, transforming how businesses discover their biggest risks, opportunities, and next moves.

16 Oct 2025

UK Housing Sector Outlook: What’s next for UK housing associations?

Regulatory & Standards Compliance

UK housing sector outlook: What’s next for UK housing associations?

Practical strategies to turn pressure into progress—drawn from twelve leaders helping to create safer, sustainable homes.

16 Oct 2025

From risk awareness to risk assurance: Without controls, you’re only telling half the story

Risk Management

From risk awareness to risk assurance: Without controls, you’re only telling half the story

Most organisations already log their risks. It’s the entry point: identify what might go wrong, categorise it, assign an owner. It’s a necessary start. But it’s only a start. Because a risk without a control is little more than a worry written down. It tells you what could happen - but not how you’re preventing it, testing it, or proving it’s under control.

16 Sept 2025

What happens when operational resilience fails… very publicly?

Operational Resilience

What happens when operational resilience fails… very publicly?

When operational resilience fails, the world notices. The past year has shown that business continuity plans are not enough. Ransomware attacks, global outages, power grid failures and data breaches have exposed a pattern of unpreparedness. It is no longer about having a backup plan. It is about proving your organisation can withstand disruption, recover fast and protect what matters most. Resilience is no longer optional. It is the standard.

21 Aug 2025

SYSC15A and the credibility gap: Why are resilience plans falling short under scrutiny?

Regulatory & Standards Compliance

SYSC15A and the credibility gap: Why are resilience plans falling short under scrutiny?

There is a difference between having a plan and being ready to prove it. Under the FCA’s PS21/3 standard, many firms look compliant on paper but fall short under scrutiny. The planning phase is over. The focus now is on outcomes and evidence. The FCA expects firms to show how they will keep services running during disruption, with proof that is current, complete, and connected. Anything less reveals a credibility gap that regulators are ready to test.

21 Aug 2025

Third-party resilience under PS21/3: What the FCA wants you to prove - and the simplest way to prove it

Regulatory & Standards Compliance

Third-party resilience under PS21/3: What the FCA wants you to prove - and the simplest way to prove it

Third-party resilience is now a board-level accountability. Under the FCA’s PS21/3 standard, outsourcing doesn’t remove responsibility. Firms must prove they can withstand supplier disruption and stay within impact tolerances. That means mapping dependencies, testing scenarios, and holding evidence that stands up to scrutiny. When failure hits, the regulator won’t ask who caused it; they’ll ask why you weren’t ready.

21 Aug 2025

The Board can’t outsource CPS 230 accountability… and APRA knows it

Regulatory & Standards Compliance

The board can’t outsource CPS 230 accountability… and APRA knows it

CPS 230 has dragged operational resilience out of the server room and into the boardroom. No longer a back-office task, it’s now a live legal responsibility for directors. APRA expects boards to approve frameworks, set tolerances, test scenarios — and be able to explain, in plain language, how the organisation stays standing when disruption hits. You can outsource the work. But not the accountability.

21 Aug 2025

Regulated financial executives reviewing CPS 230 readiness dashboards

ESG & Sustainability

Climate risk and the new standard of proof in Australian insurance

CPS 230 moved operational resilience from intent to proof. “We’ve got it covered” now signals risk unless board-ready evidence is on hand.

20 Aug 2025

Regulated financial executives reviewing CPS 230 readiness dashboards

Regulatory & Standards Compliance

'We’ve got it covered': The four most expensive words in CPS 230 compliance

CPS 230 moved operational resilience from intent to proof. “We’ve got it covered” now signals risk unless board-ready evidence is on hand.

20 Aug 2025

Why FY25 is make-or-break for every NDIS provider

Regulatory & Standards Compliance

Why FY25 is make-or-break for every NDIS provider

If FY24 was rough, FY25 may be the year many NDIS providers hit the wall. This is the make-or-break year to install a real-time GRC system that flags margin erosion before it hits your payroll.

23 July 2025

Digital Shift Is Reshaping Credit Unions | Drova

Regulatory & Standards Compliance

Doing more with less: Digital transformation in credit unions

Digital savvy credit unions are transforming compliance and customer impact without sacrificing trust and care.

22 May 2025