
Security & GRC Decoded · 2025-10-02 · 1h 19m
In this episode of Security & GRC Decoded , host Raj Krishnamurthy sits down with Kenneth Moras , Head of Security GRC at Plaid. Kenneth shares his journey from web developer and pen tester to building GRC and assurance teams at scale across leading companies like Adobe , Meta , and now Plaid . The conversation explores how GRC must balance governance, risk, and compliance as distinct but interdependent functions - and why great programs require clarity, collaboration, and simplicity. Kenneth also dives into the origins of the Adobe Common Control Framework (CCF), co-authoring the Open Finance Data Security Standard (OFDSS), and how Plaid applies these principles to secure the future of fintech . From reducing GRC toil through engineering and automation, to the role of AI and LLMs in risk management, Kenneth makes the case that GRC isn’t just about passing audits - it’s about building trust, reducing risk, and enabling innovation. 5 Key Takeaways Career Evolution: Kenneth’s path from developer to GRC leader shows how diverse skills - from IT audit to consulting - strengthen risk leadership.
Other episodes covering the same guests and topics, from across The B2B Podcast Index.