Internal audit operating at the strategic level

Size: px
Start display at page:

Download "Internal audit operating at the strategic level"

Transcription

1 Internal audit operating at the strategic level Strategic collaboration Auditing strategic risks Audit plan alignment Malcolm Zack Director Zack Associates Limited

2 Major retailer Zack Associates Limited Logos sourced from publically available internet sources

3 So what do we mean by strategic risk? Strategic risks are risks that affect or are created by an organization s business strategy and strategic objectives Deloitte. Exploring Strategic Risk - a global survey Poor Business Decisions Poor Execution Inadequate resource allocation Not responding to changes in the environment Risks identified in the strategic plans Financial Economic environment Political risks People

4 Allianz Risk Barometer Business Protiviti Interruption Audit Committee Top Risks 2016 Top sets of risks 2. Market (volatility, stagnation, competition Differ from sector to 3. Cyber 1. Regulatory incidents KMPG Change/Scrutiny Top Risk Management Issues sector 4. Natural 2. Managing Catastrophes 2016 Cyber Threats 5. Changes 3. Economic in Legislation conditions restrict growth KMPG Top Risks for Internal Audit Capital Not all top risks are 6. Macro 4. Succession economic and changes attracting talent and Markets 2016 strategic 7. Loss 5. of Privacy 1.Technology Reputation/Brand and information Risk Value security Management 8. Fire 6. Explosion Resistance 2.Third to change Party Risk Management 1. Increased regulatory expectations Most appear 9. Political 7. Rapid risks 3.Fraud speed (war, of terrorism) and disruptive Misconduct technology 2. Culture and conduct operational, value 10.Theft, 8. Culture: fraud 4.Crisis and - impact corruption Management on risk management 3. Regulatory reporting preserving risks. I.e 9. Volatility in global financial markets 4. Stress testing they could threaten 5.Data Security 10.Sustaining customer loyalty 5. Model risk management achievement of 6.Achieving Compliance 6. Cyber security business objectives/strategy 7.Risk Data aggregation 7. Third-party and relationships/vendor Reporting management So should we focus 8. Continuous risk assessment on risks or 9. Use of data analytics and objectives?! continuous auditing 10.Internal audit talent recruitment and retention

5 EXAMPLES. Wartsila Risk Management Report 2010 Source: Global Advantage

6 IIA standards Internal audit coverage of risks to achieving strategic objectives. Strategic opportunities and threats drive creation of short and longer term strategic initiatives/investments to deliver value. Executives responsible for risk management in persuit of strategic objectives IA evaluates IA focus on critical risks IA provide assurance IA skills Achievement of the organization's strategic objectives. Reliability and integrity of financial and operational information. Effectiveness and efficiency of operations and programs. Safeguarding of assets. Compliance with laws, regulations, policies, procedures, and contracts. Organisation strategy should be a foundational element of plan Aligns IA with strategic priorities Helps allocate IA resources. Leverage management and other assurance providers Consider providing assurance Assess if strategic risks are being managed. Evaluate mitigation methods Opportunity to deliver advisory services that impact organisation evolution directly Assess skills and knowledge in team Consider other sources if necessary

7 IIA Research Foundation More involved with strategic initiatives Better connected Become business partner/risk advisor Greater value when involved early on in inititative Link ERM to strategic thinking IA Gains knowledge and insight Skills include strategic planning and consulting Increase demand for advisory work, reality checks Balance assurance and advising management The reasons and benefits for internal auditing are clear but how do you go about getting your team involved?

8 Risk (what could happen?) Risk that.. Risk Risk Risk Factors (what contributes to the risk?) a.. b.. c.. Impact What outcomes if the risk is realised? Xxxxxx, yyyy Business Objectives affected Growth Customer Experience Operational Excellence Growth Key Controls Mgt.. Review.. Assurance/audits High level view of audit area Link strategic risks to the business objectives most impacted and identify sources of assurance and audit potential. Risk Customers Shareholder value Operational Excellence Stategic Financial Operational Regulatory Helps board audit committee understand where assurances over key strategic risks come from and any gap

9 Risk Risk and Opportunity Matrix Map audit plan candidates Complex operational areas. E.g. BCP, IT Security, Treasury Top Strategic projects Significant change New products/businesses pushing the envelope Important areas needing some audit review but less frequent Projects /initiatives providing high benefit to the business but lower risk.e.g. rolling out new stores/locations [Audit functions] often fail to provide assurance on strategy creation and execution, management's value creation work. Why firms should audit strategic risk Business Week July 2010 Opportunity how much is business moved forward?

10 Reviewing the strategic plan itself risk assessment assumptions and drivers, Information obtained, Scenarios planning and stress testing, softer areas (strong personalities and committment), alternatives rejected, Major Systems Sales Development Benefits Realisation So what could internal audit do? New Products Going into new markets Transformation Programmes Strategic Programme Office Diversification Expansion/Merger/takeover/demerger New locations

11

12 1 Sales Structure Reviews Market Growth 2 Service Improvement Market Growth 3 Telesales alignment Market Growth 4 Leadership Market Growth 5 Development/Pipeline Market Growth 6 RCEO coaching Market Growth/Market Share Gain 7 Customer Service alignment Market Growth 8 HR KPI Delivery All 9 People capability Market Share Gain/Specialist Growth 10 Regional Structure reviews Market Share Gain 11 Competitive/aligned reward & recognition Market Share Gain 12 Driver/Telesales/Sales Alignment Market Share Gain 13 Aligned with UK policies and practices Specialist Growth 14 Develop and support senior team Specialist Growth 15 Continous Evaluation of organisation Cost Reduction 16 Performance management Cost Reduction 17 Continous improvement focus Cost Reduction 18 Head count monitoring Cost Reduction 19 Management information integrity Acquistions 20 Communication platform/tools Acquistions 21 External framework in place Acquistions 22 Corporate Governance Acquistions 23 HRBPs prepared Acquistions

13 Where I have succeeded more Focusing audit team capabilities on initiatives that are important/critical to achieving the strategic goals. E.g. major projects, transformations, significant acquisitions. why isn t IA on this call? Attempts to review the strategy itself Helping management pull out risks with the strategy and risks arising because of the strategy that has been agreed has added more value. PLANNING RISK < EXECUTION RISK

14 Are YOU strategic enough? A place to start your thinking What is your Internal Audit Strategy for the next 3-5 years? Where is it now, Where does it need to go, and how will it get there? How often do you review it? And what are the risks to your strategy? Involve your Audit Committee. Work on strategic initiatives Well connected Recognised business partner/risk advisor Involved early Linkd ERM to strategic thinking IA sought for knowledge and insight Stratiegic Skills Demand for advisory work, Balanced assurance and advising management Development route for management

15 Obstacles and assumptions View of IA capability Its difficult Its confidential Where do you start? Strategic risk is just a category like the others but projects do lend themselves. Needs a different approach to auditing and reporting More advisory than assurance More upfront and ongoing involvement and challenge Dynamic reporting Needs audit team to be able to think strategically and have commercial understanding Look at the backgrounds do you have the right mix?

16 Risk Internal Audit and Strategic Risk Strategic collaboration - Essential Auditing strategic risks Be selective Audit plan alignment back to basics But. Complex operational areas. E.g. BCP, IT Security, Treasury Top Strategic projects Significant change New products/businesses pushing the envelope Projects /initiatives providing high benefit to the business but lower risk.e.g. rolling out new stores/locations [Audit functions] often fail to provide assurance on strategy creation and execution, management's value creation work. Why firms should audit strategic risk Business Week July 2010 Opportunity how much is business moved forward?

17 Remember to kick the tyres IA evaluates Achievement of the organization's strategic objectives. Reliability and integrity of financial and operational information. Effectiveness and efficiency of operations and programs. Safeguarding of assets. Remember Which business objectives are impacted or benefited from the results of your audit work? Link findings from audits back to the top risks and business objectives. Compliance with laws, regulations, policies, procedures, and contracts.

18 We still have to kick the tyres If the tyre s flat, your strategy is going nowhere

Enterprise Risk Management Discussion American Gas Association Risk Management Committee Meeting

Enterprise Risk Management Discussion American Gas Association Risk Management Committee Meeting Enterprise Risk Management Discussion American Gas Association Risk Management Committee Meeting July 17, 2017 Objectives Provide perspective on the evolution of Enterprise Risk Management (ERM) New 2017

More information

Agenda. Enterprise Risk Management Defined. The Intersection of Enterprise-wide Risk Management (ERM) and Business Continuity Management (BCM)

Agenda. Enterprise Risk Management Defined. The Intersection of Enterprise-wide Risk Management (ERM) and Business Continuity Management (BCM) The Intersection of Enterprise-wide Risk (ERM) and Business Continuity (BCM) Marc Dominus 2005 Protiviti Inc. EOE Agenda Terminology and Process Introductions ERM Process Overview BCM Process Overview

More information

Aligning and Integrating ERM and Business Process. Federal ERM Summit September 9, :00-12:00

Aligning and Integrating ERM and Business Process. Federal ERM Summit September 9, :00-12:00 Aligning and Integrating ERM and Business Process Federal ERM Summit September 9, 2013 11:00-12:00 1 Agenda Defining Risk and ERM The ERM Value Proposition An Integrated ERM Framework Aligning ERM with

More information

Generating value within the Risk Ecosystem Risk powers performance

Generating value within the Risk Ecosystem Risk powers performance Generating value within the Risk Ecosystem Risk powers performance The Risk Ecosystem Disruption and volatility are impacting today s business climate. CROs and risk executives function in a Risk Ecosystem,

More information

Risk and Compliance Services

Risk and Compliance Services Risk and Compliance Services Helping clients manage business and regulatory risks Introduction General background Protiviti (www.protiviti.com) is a global consulting firm that helps companies solve problems

More information

Internal Auditing 2011: It s Time to Fill the Glass

Internal Auditing 2011: It s Time to Fill the Glass Internal Auditing 2011: It s Time to Fill the Glass Presented to IIA Lithuania 25 March, 2011 Phil Tarling, CMIIA, CIA President The European Confederation of Institutes of Internal Auditing Presentation

More information

Risk and Compliance Services

Risk and Compliance Services Risk and Compliance Services Helping clients manage business and regulatory risks Internal Audit, Risk, Business & Technology Consulting Introduction General background Protiviti (www.protiviti.com) is

More information

Treasury and Risk- Vision 2009 March 25 th, 2009 Michele L. Turner- Sr. Manager Operations Enterprise Risk Management (OERM)

Treasury and Risk- Vision 2009 March 25 th, 2009 Michele L. Turner- Sr. Manager Operations Enterprise Risk Management (OERM) Treasury and Risk- Vision 2009 March 25 th, 2009 Michele L. Turner- Sr. Manager Operations Enterprise Risk Management (OERM) Microsoft Mission: At Microsoft, our mission and values are to help people and

More information

HCCA Compliance Institute : Intersection of Internal Audit & Compliance. April 17, Agenda. Where are we today?

HCCA Compliance Institute : Intersection of Internal Audit & Compliance. April 17, Agenda. Where are we today? HCCA Institute 2018 708: Intersection of & April 17, 2018 Agenda Objectives Where are we today? Corporate Integrity: The intersection of, and Privacy Questions 2 Where are we today? 3 1 Regulatory change

More information

Internal audit insights High impact areas of focus

Internal audit insights High impact areas of focus 2014 Internal audit insights High impact areas of focus To be truly effective, internal audit departments should ensure that their efforts are targeted at the key risks and issues facing their business

More information

International Finance Corporation

International Finance Corporation International Finance Corporation Corporate Governance and Internal Audit Overview Bob Lamm Independent Senior Advisor Center for Corporate Governance Deloitte LLP Neil White Global IA Analytics Leader

More information

RISK MANAGEMENT REPORT

RISK MANAGEMENT REPORT RISK MANAGEMENT REPORT A RCL FOODS RISK MANAGEMENT REPORT 2016 RISK MANAGEMENT REPORT FRAMEWORK Risk management is considered by the Board to be a key business discipline, designed to balance risk and

More information

The position reports to the Human Resources Manager and works closely with other HR Team members.

The position reports to the Human Resources Manager and works closely with other HR Team members. Title: Human Resources Business Partner (HRBP) Position type: Full time Classification: non-eba Position purpose: Work in partnership with the business to provide specialist coaching, support and influence

More information

INTERNAL AUDIT PLAN AND CHARTER 2018/19

INTERNAL AUDIT PLAN AND CHARTER 2018/19 INTERNAL AUDIT PLAN AND CHARTER 208/9 PURPOSE OF REPORT. To present the proposed 208/9 audit plan and charter to the Audit Committee for consideration and approval..2 The Internal Audit Plan for 208/9

More information

Corporate Functions & Business Operations

Corporate Functions & Business Operations Corporate Functions & Business Operations BlackRock was founded by eight entrepreneurs who wanted to start a very different company. One that combined the best of a financial leader and a technology pioneer.

More information

Enterprise Risk Management Defined and Explained

Enterprise Risk Management Defined and Explained Enterprise Risk Management Defined and Explained Council of Engineering and Scientific Society Executives ACCESSE16 July 27, 2016 Paul Klein Managing Director Not-for-Profit Atlantic Coast Market Territory

More information

Global Mega Trends Transforming Business

Global Mega Trends Transforming Business Focussing on the value journey Anton van Wyk, CIA, CRMA IIA Incoming Global Chairman April 2014 Global Mega Trends Transforming Business Rapid Technological advances 81% Urbanisation & social inequality

More information

Integrated Business Planning plus Your journey towards digital end-to-end planning

Integrated Business Planning plus Your journey towards digital end-to-end planning Integrated Business Planning plus Your journey towards digital end-to-end planning Integrated Business Planning plus Your journey towards digital end-to-end planning New challenges in the market 04 From

More information

Oversight by Board, Risk Management & Audit Committee (RMAC) and other committees. Second line of defense

Oversight by Board, Risk Management & Audit Committee (RMAC) and other committees. Second line of defense 47 In the business environment that we live in, doing nothing might be the biggest risk of all. At Cim, the Board plays a crucial role in risk oversight; it is bringing more diverse viewpoints into the

More information

Technical specifications for City & Guilds Level 7 NVQ Diploma in Strategic Management and Leadership (8624)

Technical specifications for City & Guilds Level 7 NVQ Diploma in Strategic Management and Leadership (8624) Technical specifications for City & Guilds Level 7 NVQ Diploma in Strategic Management and Leadership (8624) Version: 1.0 (March 2017) Version 1.0 (March 2017) Level 7 NVQ Diploma in Strategic Management

More information

Reducing fraud, bribery and corruption in your private business: 6 things you can do now

Reducing fraud, bribery and corruption in your private business: 6 things you can do now Reducing fraud, bribery and corruption in your private business: 6 things you can do now 1 With an increased focus on global commitments to mitigate fraud, bribery and corruption, there remains an ongoing

More information

Risk Advisory Services Developing your organisation s governance for competitive advantage

Risk Advisory Services Developing your organisation s governance for competitive advantage Advisory Services Developing your organisation s governance for competitive advantage The Deloitte Advisory Platform of Services can help you to govern your strategic plan to guide your operations measure

More information

A robust and systematic review.

A robust and systematic review. Principal risks and uncertainties A robust and systematic review. The Board considers these to be the most significant risks faced by the Group that may impact the achievement of our six strategic drivers.

More information

Agenda. Agenda. Definitions and Processes. Risks. Audit & ERM. Key Strategies. Conclusions ERM and Audit 1. ERM and Audit.

Agenda. Agenda. Definitions and Processes. Risks. Audit & ERM. Key Strategies. Conclusions ERM and Audit 1. ERM and Audit. Agenda 1 Agenda Definitions and Processes Risks Audit & ERM Key Strategies Conclusions 2 2017 1 ERM: Definition From Wikipedia, the free encyclopedia ERM in business includes the methods and processes

More information

Internal audit strategic planning Making internal audit s vision a reality during a period of rapid transformation

Internal audit strategic planning Making internal audit s vision a reality during a period of rapid transformation 2015 State of the Internal Audit Profession Study Internal audit strategic planning Making internal audit s vision a reality during a period of rapid transformation 68% of companies have gone through or

More information

CQC Strategic and High level Risk Register

CQC Strategic and High level Risk Register Impact and quality R1 We do not have impact in encouraging improvement innovation and sustainability in care resulting in loss of confidence in CQC (significantly this risk could materialise because financial

More information

Risk and risk management

Risk and risk management Risk and risk management In 205 we made changes to our risk management framework to ensure it was fully integrated across the business. Nicholas Anderson Chairman, Risk Management Committee Managing risks

More information

Boards and internal audit: Working together to strengthen risk management

Boards and internal audit: Working together to strengthen risk management Boards and internal audit: Working together to strengthen risk management Growing demands on boards The role of the board has always been an important and demanding one, but today s board members face

More information

Advanced Audit Techniques

Advanced Audit Techniques Advanced Audit Techniques Who should attend? Senior Auditors Audit Managers and those about to be appointed to that role Auditors that need to audit technical or complex business areas Assurance professionals

More information

GROUP POLICY People Valid from: Page: 1 of 8

GROUP POLICY People Valid from: Page: 1 of 8 Page: 1 of 8 Policy owner: Approver: EVP & Chief People Officer President & Group CEO 1 Group Policy Owner Mandate The Group Policy Owner People is given a mandate to assess and manage organisation, employees

More information

Business Continuity Policy

Business Continuity Policy Putting Barnsley People First Business Continuity Policy Version:.0 Approved By: Governing Body Date Approved: August 015 Reviewed October 016 Name of originator / author: Jamie Wike, Head of Planning,

More information

Fraud Investigation & Dispute Services. Forensic analysis and global experience: the intelligent connection

Fraud Investigation & Dispute Services. Forensic analysis and global experience: the intelligent connection Fraud Investigation & Dispute Services Forensic analysis and global experience: the intelligent connection Protect your company s reputation and reduce financial risk Businesses are always under scrutiny

More information

ADP ihcm Supporting Strategy and Execution ADP ihcm Executive Briefing for CEOs

ADP ihcm Supporting Strategy and Execution ADP ihcm Executive Briefing for CEOs ADP ihcm Supporting Strategy and Execution ADP ihcm Executive Briefing for CEOs The rise of the people-driven strategy Adaptability. Skills. Engagement. Your number one priority is your overall business

More information

RIAS 2015 Positioning of Internal Audit. EIB Perspective

RIAS 2015 Positioning of Internal Audit. EIB Perspective RIAS 2015 Positioning of Internal Audit EIB Perspective 10 September 2015 IIA Core Principles for the Professional Practice of Internal Auditing => is appropriately positioned IIA Standards 1100,1110 &

More information

2017 Deloitte Global Human Capital Trends Rewriting the rules for the digital age. Novemver 2017

2017 Deloitte Global Human Capital Trends Rewriting the rules for the digital age. Novemver 2017 2017 Deloitte Global Human Capital Trends Rewriting the rules for the digital age Novemver 2017 Rate of change What appears to be happening Mobile, sensors, AI, cognitive computing, data Access to technology

More information

Executive Summary. Exhibit 1- Streamlined communication to the Board of Directors

Executive Summary. Exhibit 1- Streamlined communication to the Board of Directors Executive Summary Enterprise Risk Management (ERM) remains one of the most important tasks of corporate leadership teams. The increased pace and magnitude of technology innovation, regulatory changes,

More information

Statement on Risk Management and Internal Control

Statement on Risk Management and Internal Control INTRODUCTION The Board affirms its overall responsibility for the Group s system of internal control and risk management and for reviewing the adequacy and effectiveness of the system. The Board is pleased

More information

How to Measure the Value of Your Internal Audit Group

How to Measure the Value of Your Internal Audit Group How to Measure the Value of Your Internal Audit Group Best practices to follow, pitfalls to avoid and success metrics to measure May 17, 2012 Agenda Strategic challenges: Implications for the enterprise

More information

Implementing Analytics in Internal Audit. Jordan Lloyd Senior Manager Ravindra Singh Manager

Implementing Analytics in Internal Audit. Jordan Lloyd Senior Manager Ravindra Singh Manager Implementing Analytics in Internal Audit Jordan Lloyd Senior Manager Ravindra Singh Manager What does Success Look Like To deliver successful analytical insight as an everyday part of the audit process

More information

Understanding risk and return. London School of Mines

Understanding risk and return. London School of Mines Understanding risk and return London School of Mines Craig Murray James Smither 08 June 2016 Workshop leader introductions Craig Murray Craig works in Risk Advisory within our London Risk Assurance practice

More information

Job Description Locality Manager

Job Description Locality Manager Job Description Reports to: Operations Manager Location: Bardney and Fiskerton, Lincolnshire Home From Home Care is the largest parent led residential support provider for adults with complex learning

More information

Risk Management Policy and Framework

Risk Management Policy and Framework Risk Management Policy and Framework Introductory Note to User: CompanyLongName There is no requirement in Australia for a non-publicly listed entity (other than a company regulated by APRA) to comply

More information

EY Center for Board Matters. Leading practices for audit committees

EY Center for Board Matters. Leading practices for audit committees EY Center for Board Matters for audit committees As an audit committee member, your role is increasingly complex and demanding. Regulators, standard-setters and investors are pressing for more transparency

More information

JOB DESCRIPTION. Job family HR Band E

JOB DESCRIPTION. Job family HR Band E Job title HR Business Partner Job family HR Band E Job purpose The HR Business Partner (HRBP) is an internal consultant providing an enabling business support role. The role may be Specialist or Generalist

More information

CGMA Competency Framework

CGMA Competency Framework CGMA Competency Framework Technical Skills CGMA Competency Framework 8 Technical Skills : This requires a basic understanding of the business structures, operations and financial performance, and includes

More information

EY Center for Board Matters Boards and internal audit

EY Center for Board Matters Boards and internal audit EY Center for Board Matters Boards and internal audit Working together to strengthen risk management Growing demands on boards The role of the board has always been an important and demanding one, but

More information

LearningZone Mapping Against ILM Level 7 NVQ Diploma in Strategic Management and Leadership

LearningZone Mapping Against ILM Level 7 NVQ Diploma in Strategic Management and Leadership LearningZone Mapping Against ILM Level 7 NVQ Diploma in Strategic Management and Leadership ILM Learning Zone Mapping Level 7 NVQ Diploma in Strategic Management and Leadership 1 of 23 Develop a Strategic

More information

Audit Planning and risk assessment. Presentation by Richard Maggs to the PEMPAL Seminar in St Petersburg September 2013

Audit Planning and risk assessment. Presentation by Richard Maggs to the PEMPAL Seminar in St Petersburg September 2013 Audit Planning and risk assessment Presentation by Richard Maggs to the PEMPAL Seminar in St Petersburg September 2013 Presentations Background and purpose of the planning and risk assessment guide Identification

More information

Internal Audit Charter

Internal Audit Charter Internal Audit Charter Authority Source: Endorsed by the Audit and Risk Management Committee and approved by the Vice- Chancellor Approval Date: 20/10/2017 Publication Date: 24/10/2017 Review Date: 20/10/2018

More information

Enterprise Risk Management. Focus on the Future June 2017

Enterprise Risk Management. Focus on the Future June 2017 Enterprise Risk Management Focus on the Future June 2017 2017 Crowe 2017 Crowe Horwath Horwath LLP LLP Learning Objectives and Agenda Objectives Distinguish Risk Management from ERM Understand the Value

More information

Level 7 NVQ Diploma in Strategic Management and Leadership. Qualification Specification

Level 7 NVQ Diploma in Strategic Management and Leadership. Qualification Specification Level 7 NVQ Diploma in Strategic Management and Leadership Qualification Specification ProQual 2014 Contents Page Introduction 3 The Qualifications and Credit Framework (QCF) 3 Qualification profile 4

More information

Workforce Planning. IHRC Workshop, June 15, 2011

Workforce Planning. IHRC Workshop, June 15, 2011 Workforce Planning IHRC Workshop, June 15, 2011 Arnoud Middel; Head HR Switzerland Zürich 16 June 2011 CEO Top Ten Challenges 2010 / 2011 2011 survey out today (June 16, 2011) http://www.conference-board.org/webcasts/webcastdetail.cfm?webcastid=2532&subtopicid=90

More information

Evolving Core Tasks for Improved Internal Audit Performance. Copyright 2018 AuditBoard Inc. 1

Evolving Core Tasks for Improved Internal Audit Performance. Copyright 2018 AuditBoard Inc. 1 Evolving Core Tasks for Improved Internal Audit Performance Copyright 2018 AuditBoard Inc. 1 Introductions Built by experienced auditors, AuditBoard allows enterprises to collaborate, manage, analyze and

More information

Risk Appetite Statement

Risk Appetite Statement Risk Appetite Statement May 2018 Risk Appetite Statement Contents 1. Mission, Vision, Values and Beliefs... 3 2. Introduction... 3 3. Overall Risk Appetite... 4 4. Risk Framework... 4 5. Key Risk Appetite

More information

IIA/FAP Annual Conference

IIA/FAP Annual Conference IIA/FAP Annual Conference Does Internal Audit have an effective game plan to address fraud? Liz Sandwith CFIIA Chief Professional Practice Advisor UK Fraud Act 2006 The states that a person is guilty of

More information

Review of Operations and Activities: Listing Rule Guidance Note 10. Introduction. Issued: March 2003

Review of Operations and Activities: Listing Rule Guidance Note 10. Introduction. Issued: March 2003 : Listing Rule 4.10.17 Issued: March 2003 Key topics 1. Review of operations and activities guide 2. Assistance in preparing disclosures accompanying financial statements 3. Recommendations 4. Risk management

More information

IRM s Professional Standards in Risk Management PART 1 Consultation: Functional Standards

IRM s Professional Standards in Risk Management PART 1 Consultation: Functional Standards IRM s Professional Standards in Risk PART 1 Consultation: Functional Standards Setting standards Building capability Championing learning and development Raising the risk profession s profile Supporting

More information

Job title Department. Senior Partner/Partner Head of Forensics & Technology, CEO, Asia Pacific

Job title Department. Senior Partner/Partner Head of Forensics & Technology, CEO, Asia Pacific Job title Department Senior Partner/Partner Head of Forensics & Technology, Asia Pacific Control Risks is a specialist risk consultancy that helps to create secure, compliant and resilient organisations

More information

pwc.co.uk Enterprise Risk Management

pwc.co.uk Enterprise Risk Management pwc.co.uk Enterprise Risk Management Contents What s on your mind? 01 Our point of view 02 What good looks like 04 How we can help 06 What you gain 07 When to act 08 Intelligent Digital 09 What s on your

More information

Transforming Internal Audit to Drive Business Performance. 21 June, 2011

Transforming Internal Audit to Drive Business Performance. 21 June, 2011 Transforming Internal Audit to Drive Business Performance 21 June, 2011 Agenda Stakeholder Needs from Survey Data Linking Business Performance to Internal Audit The Role of Risk Management Becoming a Strategic

More information

Risk frameworks. Driving business strategy with effective risk frameworks

Risk frameworks. Driving business strategy with effective risk frameworks Risk frameworks Driving business strategy with effective risk frameworks Integrating risk management with business strategy Each year, a board begins its planning period with a set of strategic options

More information

Business Transformation of Back Office Functions Ben Paul PricewaterhouseCoopers UK

Business Transformation of Back Office Functions Ben Paul PricewaterhouseCoopers UK Business Transformation of Back Office Functions Ben Paul PricewaterhouseCoopers UK INTRODUCTION BEN PAUL Airline experience in Middle East, Africa, US & Europe Global Transformation Director Ben Paul

More information

Executive Perspectives on Top Risks Key Issues Being Discussed in the Boardroom and C-Suite

Executive Perspectives on Top Risks Key Issues Being Discussed in the Boardroom and C-Suite Summary Technology, Media and Telecommunications Industry Group Results Executive Perspectives on Top Risks Key Issues Being Discussed in the Boardroom and C-Suite Research conducted by Protiviti and North

More information

The Value of Consulting Assuring Audit Committee & other Key Stakeholders of IA s Quality

The Value of Consulting Assuring Audit Committee & other Key Stakeholders of IA s Quality The Value of Consulting Assuring Audit Committee & other Key Stakeholders of IA s Quality Shirley Machaba Africa IA leader, SA board chairman, Africa board member, Partner In Charge Menlyn/ Pretoria office

More information

Internal Audit Charter

Internal Audit Charter Barangaroo Delivery Authority (the Authority) Document Control Approved by: Barangaroo Delivery Authority Board Date of Approval: 9 December 2015 Review Cycle: Annually Reviewed: 29 November 2016 Next

More information

POSITION DESCRIPTION. Divisional Manager Network Operations Infrastructure Services / Network Operations

POSITION DESCRIPTION. Divisional Manager Network Operations Infrastructure Services / Network Operations Position Title Group/Division/Team Divisional Manager Network Operations Infrastructure Services / Network Operations Date 27 November 2014 Purpose Key Activities The Divisional Manager Network Operations

More information

5 Core Must-Haves for Improved Internal Audit Performance. Copyright 2018 AuditBoard Inc. 1

5 Core Must-Haves for Improved Internal Audit Performance. Copyright 2018 AuditBoard Inc. 1 5 Core Must-Haves for Improved Internal Audit Performance Copyright 2018 AuditBoard Inc. 1 Introductions Built by experienced auditors, AuditBoard allows enterprises to collaborate, manage, analyze and

More information

Carole Rosenlund - Project Manager, ICH, Norway Brian Makungo - Training Manager, KGRTC, Zambia

Carole Rosenlund - Project Manager, ICH, Norway Brian Makungo - Training Manager, KGRTC, Zambia Carole Rosenlund - Project Manager, ICH, Norway Brian Makungo - Training Manager, KGRTC, Zambia Talent Management within Utilities through workforce planning & critical skills development Talent Management

More information

Exhibit to Agenda Item #2

Exhibit to Agenda Item #2 Exhibit to Agenda Item #2 Board of Directors Meeting Wednesday,, Scheduled to begin at 5:30 p.m. Customer Service Center, Rubicon Room Powering forward. Together. SD-17 Enterprise Risk Management (ERM)

More information

City Auditor s Office 2017/18 Annual Audit Plan

City Auditor s Office 2017/18 Annual Audit Plan City Auditor s Office 2017/18 Annual Audit Plan November 10, 2016 Page 1 of 13 THIS PAGE LEFT INTENTIONALLY BLANK Page 2 of 13 Table of Contents Overview... 5 1.0 Annual Audit Planning Process... 6 1.1

More information

Building an Intelligent Risk Organization Case Studies in Strategic Risk Management

Building an Intelligent Risk Organization Case Studies in Strategic Risk Management Building an Intelligent Risk Organization Case Studies in Strategic Risk Management October 24, 2016 Yannick Kwan & Tom Durkin Aon Global Risk Consulting WWW.CHICAGOLANDRISKFORUM.ORG Global Trends in Risk

More information

Change Management and the Project Lifecycle

Change Management and the Project Lifecycle Change Management and the Project Lifecycle - An illustrative look at change management practices that can aid sustainable project success Presenter: Chris Nguyen Page 1 What Lens Do You Wear? Change Mgt

More information

HR certification: basic course

HR certification: basic course HR certification: basic course What makes the program unique: It is a modular program covering all major areas of the integrated talent There are trainings for different levels of HR professionals (basic

More information

SAP Performance Benchmarking Human Capital Management Benchmarking Results. Company: ABC Company 6/25/2012

SAP Performance Benchmarking Human Capital Management Benchmarking Results. Company: ABC Company 6/25/2012 SAP Performance Benchmarking Benchmarking Results Company: ABC Company 6/5/0 Statement of Confidentiality and Exceptions The information and analysis contained herein are the confidential and proprietary

More information

Creating a Risk Intelligent Enterprise: Risk governance

Creating a Risk Intelligent Enterprise: Risk governance Creating a Risk Intelligent Enterprise: Risk governance Risk governance: Overseeing risk and risk management Robust risk governance drives a consistent and coordinated approach to risk across the organization

More information

COCA-COLA HELLENIC BOTTLING COMPANY RISK MANAGEMENT POLICY

COCA-COLA HELLENIC BOTTLING COMPANY RISK MANAGEMENT POLICY COCA-COLA HELLENIC BOTTLING COMPANY RISK MANAGEMENT POLICY 1. INTRODUCTION The effective management of risk is central to the ongoing success and resilience of Coca-Cola Hellenic Bottling Company (CCHBC).

More information

The Current State of Risk Management Maturity for Belgian Organizations kpmg.com/be

The Current State of Risk Management Maturity for Belgian Organizations kpmg.com/be Enterprise Risk Management The Current State of Risk Management Maturity for Belgian Organizations kpmg.com/be 2 Enterprise Risk Management Table of content 1. Introduction...05 2. Takeaways...07 3. Key

More information

Enterprise Risk Management Program Development Update. Finance & Audit Committee Meeting September 25, 2015

Enterprise Risk Management Program Development Update. Finance & Audit Committee Meeting September 25, 2015 Enterprise Risk Management Program Development Update Finance & Audit Committee Meeting September 25, 2015 Enterprise Risk Management Presentation Topics Enterprise Risk Management ( ERM ) Overview Lead

More information

ISO/IEC INTERNATIONAL STANDARD. Corporate governance of information technology. Gouvernance des technologies de l'information par l'entreprise

ISO/IEC INTERNATIONAL STANDARD. Corporate governance of information technology. Gouvernance des technologies de l'information par l'entreprise INTERNATIONAL STANDARD ISO/IEC 38500 First edition 2010-06-01 Corporate governance of information technology Gouvernance des technologies de l'information par l'entreprise Reference number ISO/IEC 38500:2008(E)

More information

pwc.co.uk Crisis management

pwc.co.uk Crisis management pwc.co.uk Crisis management Contents What s on your mind? 01 Our point of view 02 How can PwC support you? 04 What you gain 06 When to act 08 Intelligent Digital 09 What s on your mind? The ability to

More information

Simple Strategies, Big Results: Driving Internal Audit Value. October 28 th, 2016

Simple Strategies, Big Results: Driving Internal Audit Value. October 28 th, 2016 Simple Strategies, Big Results: Driving Internal Audit Value October 28 th, 2016 Agenda Introduction Demonstrate Alignment with Organization s Strategy Playing a Key Role in Company Initiatives Goal-Based

More information

INTERNAL AUDIT NEW DEVELOPMENTS & CHALLENGES BEFORE THE PROFESSION

INTERNAL AUDIT NEW DEVELOPMENTS & CHALLENGES BEFORE THE PROFESSION INTERNAL AUDIT NEW DEVELOPMENTS & CHALLENGES BEFORE THE PROFESSION CA Amit Pandit JB Nagar Study Circle Of WIRC January 21, 2018 Agenda History & Evolution of Internal Audit How IA changed over a period

More information

2017 Corporate Governance Statement

2017 Corporate Governance Statement 2017 Corporate Governance Statement We are committed to achieving best practice across the Group in all that we do, which we believe is fundamental to the long-term performance and sustainability of the

More information

HCCA Audit & Compliance Committee Conference. February 29-March 1, Drivers of ERM. Enterprise Risk Management in Healthcare.

HCCA Audit & Compliance Committee Conference. February 29-March 1, Drivers of ERM. Enterprise Risk Management in Healthcare. Enterprise Risk Management in Healthcare Deloitte & Touche LLP Heather Hagan, Senior Manager Nancy Perilstein, Senior Manager February 29, 2016 Discussion Items Drivers of Enterprise Risk Management (ERM)

More information

Third Party Risk Management ( TPRM ) Transformation

Third Party Risk Management ( TPRM ) Transformation Third Party Risk Management ( TPRM ) Transformation September 20, 2017 Internal use only An introduction to TPRM What is a Third Party relationship? A Third Party relationship is any business arrangement

More information

Deloitte Governance Framework and Maturity Model

Deloitte Governance Framework and Maturity Model Deloitte Governance Framework and Maturity Model Deloitte Governance Framework The Deloitte Governance Framework was developed to help boards and executive management assess the effectiveness of the organization

More information

Value-added governance and controls: The need and application of strategic risk Paul Campbell, Katie Pavlovsky and Jeff Suchadoll

Value-added governance and controls: The need and application of strategic risk Paul Campbell, Katie Pavlovsky and Jeff Suchadoll Value-added governance and controls: The need and application of strategic risk Paul Campbell, Katie Pavlovsky and Jeff Suchadoll May 18, 2017 Agenda 10:15 11:30 Introductions, background and perspectives

More information

Business Continuity. Building a Program Fit for Purpose

Business Continuity. Building a Program Fit for Purpose Business Continuity. Building a Program Fit for Purpose Tim Janes. Director Fulcrum Risk Services Tuesday 2 September. 11.30-12.45 T Janes. BC SLIDES. RIMS Risk Forum Aust 2014 v1.0 Building a BC Program

More information

ORSA engaging the business in Solvency II. Colm Guiry, Naren Persad 20 February 2012

ORSA engaging the business in Solvency II. Colm Guiry, Naren Persad 20 February 2012 ORSA engaging the business in Solvency II Colm Guiry, Naren Persad 20 February 2012 What is the ORSA? slide 2 Existing and expected future guidance from EIOPA slide 3 Article 45 Framework Directive (July

More information

12/28/2017. ERM and Audit 2. ERM Agenda. Definitions and Processes. Risks. Audit & ERM. Key Strategies. Conclusions. ERM and Audit

12/28/2017. ERM and Audit 2. ERM Agenda. Definitions and Processes. Risks. Audit & ERM. Key Strategies. Conclusions. ERM and Audit 2 ERM Agenda Definitions and Processes Risks Audit & ERM Key Strategies Conclusions 3 1 ERM CM ECM DR BCP??? 5 ERM: Definition From Wikipedia, the free encyclopedia ERM in business includes the methods

More information

ESSEX POLICE, FIRE AND CRIME COMMISSIONER, FIRE AND RESCUE AUTHORITY

ESSEX POLICE, FIRE AND CRIME COMMISSIONER, FIRE AND RESCUE AUTHORITY ESSEX POLICE, FIRE AND CRIME COMMISSIONER, FIRE AND RESCUE AUTHORITY DRAFT Internal Audit Strategy 2018/19 Presented at the audit committee meeting of: 15 December 2017 This report is solely for the use

More information

Embracing change. Shaping futures.

Embracing change. Shaping futures. Embracing change. Shaping futures. Strategic Business Leader Applied Knowledge and Applied Skills Mapping of key syllabus areas Contents Introduction 3 Examples 4 Mapping of key Applied Knowledge and Applied

More information

CFOs: The catalyst for integrating strategy, risk and finance

CFOs: The catalyst for integrating strategy, risk and finance CFOs: The catalyst for integrating strategy, risk and finance July 2012 Australian resources companies have always had to contend with fluctuating commodity prices. However, the volatility of today s markets

More information

Creating a Risk Intelligent Enterprise: Scenario planning and war-gaming

Creating a Risk Intelligent Enterprise: Scenario planning and war-gaming Creating a Risk Intelligent Enterprise: Scenario planning and war-gaming Scenario planning and war-gaming: Sizing up the future The Risk Intelligent Enterprise seeks to proactively address risks, leverage

More information

Enterprise Risk Management (ERM) - Impact of 2017 COSO ERM Model

Enterprise Risk Management (ERM) - Impact of 2017 COSO ERM Model Enterprise Risk Management (ERM) - Impact of 2017 COSO ERM Model Institute of Internal Auditors, Detroit Chapter Meeting February 2019 With you today Sarah Ann Moore Director Internal Audit and Enterprise

More information

Emerging Technology and Security Update

Emerging Technology and Security Update Emerging Technology and Security Update February 13, 2015 Jordan Reed Managing Director Agenda 2015 Internal Audit Capabilities and Needs Survey 2014 IT Priorities Survey Results 2014 IT Security and Privacy

More information

Position Description

Position Description Position Description Position: Reports To: Direct Reports: Chief Executive Officer IFL- 247 Board of Directors Corporate Services Manager Health Services Manager Senior Medical Officer Purpose of the Role

More information

Adopting automation in internal audit Using robotic process automation and cognitive intelligence to fortify the third line of defense

Adopting automation in internal audit Using robotic process automation and cognitive intelligence to fortify the third line of defense Adopting automation in internal audit Using robotic process automation and cognitive intelligence to fortify the third line of defense The age of automation is here, and with it comes opportunities for

More information

Certificate in Internal Audit 3. Advanced Audit Techniques

Certificate in Internal Audit 3. Advanced Audit Techniques Certificate in Internal Audit 3 Advanced Audit Techniques Who should attend? Senior Auditors Audit Managers and those about to be appointed to that role Auditors that need to audit projects, contracts

More information

Enterprise Digital Architect

Enterprise Digital Architect Enterprise Digital Architect Location: [Asia & Pacific] [Australia] Town/City: Preferred locations: Australia, USA, Malaysia or Manila; or any other jurisdiction (country or US state) where WVI is registered

More information