Specifications include, but are not limited to: To develop a GRC strategy which supports all business areas including Enterprise Risk, Internal Audit, Operational Risk, Cybersecurity, Business Resiliency, IT, Ethics and Compliance and Fraud. To develop a GRC implementation roadmap for functionality needed to support all business areas. To standardize end-to-end GRC processes. To bring innovative and best-in-class business processes to NYPA. To implement project on time and within original budget. To minimize customizations to ensure viability of future upgrades. To ensure the changes that result from the items noted above are managed to achieve stakeholder buy-in and overall implementation success.