GOUVERNANCE, RISQUE ET CONFORMITÉ

Réduisez les risques et générez de la valeur

Maintenir les normes réglementaires

Protégez les renseignements de votre organisation et assurez-vous de la conformité

Réduire le coût de la conformité et améliorer la couverture des risques

Assurer une conformité durable en toute confiance

Identifier les lacunes pour aider à éliminer les risques

Évaluer les efforts de durabilité et maintenir la conformité

Élaborer les meilleurs programmes de GRE

Assurez la sécurité de vos clients et de vos communautés

Renforcer la conformité, améliorer la sécurité et stimuler la transformation

Nos solutions et nos services sont plus forts ensemble

Découvrez comment notre approche intégrée offre une plus grande valeur et génère de meilleurs résultats pour votre entreprise.

Expertise across key industries

Aerospace and Defense

Create sustainable strategies to address complex regulatory compliance, achieve cost efficiencies, and optimize processes and technology.

Consumer Goods
and Retail

Tackle challenges with rapid, sustainable strategies that address rising costs, demand shifts, and evolving customer preferences.

Financial Services

Adapt to market shifts, encourage innovation, and evolve for sustained growth. Gain insights drawn from deep expertise across fintech, banking, capital markets, and insurance.

Healthcare

Delivering holistic solutions that make healthcare more effective by integrating strategy, technology, and leadership.

Manufacturing

Address challenges such as supply chain disruptions, demand variability, and capacity constraints through strategic, practical solutions that drive growth and network resiliency.

Private Equity

Leverage our expertise to maximize value, accelerate growth, and strengthen your leadership teams, processes, and operations at every stage of the deal lifecycle.

Technology

Scale systems, processes, and teams to excel during pivotal moments like expansion periods, regulatory shifts, and transactions.

Nos leaders de la gouvernance, du risque et de la conformité

Greg Rotz

Partner

Greg, as the Risk & Regulatory Advisory Leader, serves clients in a multitude of industries, principally Pharmaceutical Life Sciences, Utilities, Manufacturing and Industrial Products with their internal controls and internal audit needs.  In an effort to provide the optimal outcomes for our clients, Greg is focused on building high performing teams through best in class recruiting which translates to a differentiated experience.  He has over 18 years of Big 4 experience with PwC in both their audit and advisory practices as well as over 4 years in industry.  This allows Greg to bring unique perspectives as he has experience outside of traditional audit and advisory roles.  Greg is a Certified Public Accountant (CPA) and holds Bachelor of Science and Master of Business Administration degrees from La Salle University in Philadelphia.  Outside of serving clients, Greg enjoys attending his children’s sporting events and is an avid skier.   

Scott Jones

Partner

Scott has extensive experience supporting publicly traded multinational and domestic corporations, as well as private companies, with their information risk management, SOX compliance, and internal audit program initiatives. He has more than 20 years of experience, and leverages his diverse background of IT risk and compliance, SOX assurance and advisory, and financial audit experience to deliver a broad range of risk advisory solutions to his clients.

Prior to joining Highspring, Scott was PwC Raleigh, NC’s IT External Audit leader and supported his multinational publicly traded clients’ evaluation, implementation, and testing of their IT risks and controls as they progressed through their compliance life cycle. He led engagement teams executing SOX readiness and implementations, security risk and compliance initiatives, third-party attestations (e.g., SOC 2, HITRUST), internal audits, and external integrated audits.

Scott earned a MS in accounting, concentration in accounting information systems and BSBA in accounting and marketing from Appalachian State University. Scott is a certified public accountant licensed in the state of North Carolina.

Bob Herman

Managing Partner

Bob Herman has nearly 30 years of experience as an ERP, automation, and analytics risk leader. He has joined Highspring as Managing partner of Risk and Regulatory Services, where he will lead a team dedicated to helping clients maximize value from core SAP investments while preparing them for new innovations. Bob will also oversee risk considerations related to ERP implementations and automation tools to enhance global operations.

Prior to joining the team, Bob held leadership positions at Big 4 consulting firms, where he helped global Fortune 50 companies and middle-market clients achieve their SOX compliance and IT business control transformation goals. His expertise spans robotic process automation (RPA), ERP security and controls, project assurance, IT internal audits, and Sarbanes-Oxley (SOX) compliance.

Bob specializes in leveraging RPA technologies, such as Automation Anywhere and UiPath, to improve efficiency, reduce costs, and enhance the quality of routine tasks. He also brings significant experience in designing governance processes around intelligent automation and ERP security, ensuring system integrity and control for clients across industries.

Bob holds a Master of Business Administration and a Bachelor of Science in Technology Education from Virginia Tech. He is a Certified Information Systems Auditor (CISA) and is certified in Risk and Information Systems Control (CRISC).

Amy Hover

Senior Managing Partner

Amy is a critical part of Highspring’s Governance, Risk, and Compliance practice and team of professionals. She works alongside Highspring’s accounting and financial reporting, information management and technology and strategy and transformation practices to provide practical solutions to help companies meet their strategic, financial, operational, risk mitigation and compliance goals.

Amy’s client facing role includes using her extensive experience to deliver risk and regulatory services and further supporting transaction readiness, technical accounting, financial reporting, business process / internal control optimization and transformation initiatives including continuous control monitoring and implementation of information technologies supporting clients’ transformation initiatives. She has an innate ability to address multi-faceted issues and collaborate across teams, with a responsiveness and “roll up your sleeves” approach that reflects a true business partner.

Prior to joining the team, she worked 20 years at PricewaterhouseCoopers and served as an assurance partner in several industries and PwC’s ESG (Environmental, Social, and Governance) practice.

Amy earned a BSBA from the University of Richmond and is a certified public accountant licensed in Virginia.

Christian Heffron

Partner and Managing Director

Christian is a Partner in the Risk & Regulatory Service Practice.  He has extensive expertise with SOX compliance, internal audit, internal controls, and information technology risk management.  Christian has over 25 years of experience designing, implementing and assessing SOX compliance programs.  Christian also has extensive experience leading internal audit functions as a Chief Audit Executive and working collaboratively with his clients as a valued co-sourced internal audit partner.  Christian is a Chartered Accountant and Certified Information Systems Auditor.  He enjoys working out and relaxing with his family and friends. 

Tom Roland

Senior Managing Partner

Tom Roland serves as Highspring’s consulting practices leader, driving strategy and team development to execute Highspring’s solutions for its clients. Highspring prides itself on delivering successful transformation engagements driven by events such as mergers, divestitures, emerging technology, process re-engineering, regulatory changes, and rapid growth or expansion—serving both the largest global companies and hyper-growth organizations creating cutting-edge technologies. 

In his role, Tom works closely with clients, client delivery teams, and Highspring leaders to understand the opportunities and challenges driving client needs. He refines solution delivery approaches and methodologies, incorporating advancements in emerging technologies and AI while seamlessly integrating Highspring’s deep expertise. Tom played a key role in developing Highspring’s proprietary delivery toolkits, built from thousands of successful client engagements, to enhance efficiency, effectiveness, and differentiation in the Highspring impact. 

With over 20 years of client service delivery experience at Highspring and its predecessor companies, Tom is known for his hands-on, action-oriented approach solving new problems with battle-tested solutions. He began his career in public accounting before leading projects at a multinational telecom network company, addressing material weaknesses, transfer pricing, and operational performance challenges. Tom holds a degree in Accountancy from the University of Notre Dame.