Skip to content
TRAC GRC Solution
 

Flexible GRC Platform

Simplify cybersecurity risk management and tackle your cybersecurity challenges with ease. TRAC is a powerful GRC tool that automates the tedious risk assessment process and delivers customized results aligned with regulations, best practices, and your strategic goals.

Blog_HeaderGradients-12
SBS CyberSecurityJune 17, 2026

Toni Meyer and Chad Knutson Discuss the Spreadsheet Compliance Crisis in International Business Times

Experts Talk the Spreadsheet Compliance Crisis in IBT | SBS
2:03

Across regulated industries, governance, risk, and compliance (GRC) programs are straining under a tool that was never built for modern risk environments: the spreadsheet. SBS CyberSecurity CEO and Co-Founder Chad Knutson and Director of Product Development Toni Meyer were featured in a recent International Business Times article examining why organizations continue to rely on spreadsheets for compliance and why that reliance has become a structural and cybersecurity liability.

Meyer noted that the core problem is a lack of visibility into where a program stands.

"No one has a complete, real-time view of compliance status," she said. "This makes it nearly impossible to confidently answer a simple question like 'Are we compliant right now?'"

She explained that as programs scale, controls, risks, policies, and evidence become scattered across teams and systems, leaving no unified perspective and opening the door to duplication, outdated information, and manual errors.

Knutson pointed to how deeply spreadsheets are embedded in the culture of compliance, shaped in part by how regulators distribute control sets.

"Spreadsheets become more than a tool," he said. "It becomes the default language of compliance."

A central theme of the feature was the shift from periodic, checklist-driven compliance to a continuous process of review and evaluation that static tools cannot keep pace with. Knutson also drew a distinction that frames the broader conversation: Compliance is meant to be the floor of good security, not the ceiling, and a strong audit result does not guarantee protection against real threats.

For organizations working to modernize their GRC programs, SBS offers TRAC, its integrated risk management platform, which brings controls, risks, and evidence into a single operational view and automates traditionally manual risk assessment work.

Read the full International Business Times feature to hear more from Meyer and Knutson on what modern, unified compliance requires.

 

Blog_Lock&Line-Gray

Take Control of Cyber Risk with TRAC

See TRAC in Action
Get a firsthand look at how TRAC streamlines risk management and compliance with a personalized demo.
Explore TRAC’s Features
Discover how TRAC enhances cyber risk management, simplifies compliance, and strengthens security oversight.
Talk to a Risk Expert
Connect with the SBS team to discuss how TRAC can support your institution's cybersecurity strategy.