The Role of the Chief Risk Office and the Board s Role in Risk Oversight

Size: px
Start display at page:

Download "The Role of the Chief Risk Office and the Board s Role in Risk Oversight"

Transcription

1 The Canadian Society of Corporate Secretaries 16th Annual Corporate Governance Conference Banff Springs Hotel Banff, AB August 24 27, 2014 The Role of the Chief Risk Office and the Board s Role in Risk Oversight John Fraser Senior Vice President, Internal Audit & former Chief Risk Officer Hydro One Network Inc. August 25, 2014

2 Objectives of this Session Provide some background on Enterprise Risk Management, how it evolved and why it is now a hot topic for board rooms Introduce the core fundamentals of Enterprise Risk Management, what it is, some of the tools and how to explain it to executive management and the board Explain the Chief Risk Officer s role and how it interacts with the board or a board sub-committee Address the board s role in risk oversight increased expectations and what to do

3 How Well is Risk Understood (2006)? In 2006, 60% of directors felt they had an understanding of their company s risks, while executives say that only 18% of directors understand their company s risks. Source: KPMG in Raising the Bar (April 2008) quoting the February 2006 McKinsey Quarterly Survey

4 How Well is Risk Understood (2013)? In 2013, directors surveyed said their knowledge of the risks that the company faced was as follows: 15% of directors said they have a complete understanding 54% said they had a good understanding, and 29% said they had a limited or no understanding McKinsey & Company in Improving board governance via an on line survey in April 2013 of 772 corporate directors, 34 % of whom were chairs. 22% were public companies78% were private companies.

5 What is risk management s contribution to your organization? 47% said It is essential for adding value to our overall business 34% said It can occasionally help us improve the way we do business 15% said Its contribution to our overall organization is only marginal 4% said It does not contribute to our overall business Source: Based on a December 2012 survey by the Economist Intelligence Unit and published by KPMG in 2013 in Expectations of Risk Management Outpacing Capabilities It s Time for Action

6 Some of the Challenges of Implementing ERM The Business Case: Regulatory or Effectiveness? Culture change Agreeing Risk Criteria (Appetite / Tolerances etc.) Staffing: who should lead, skills, workshops, how much data to analyse Level of detail (quantitative and/or qualitative) Software needs and selection

7 Benchmarking ERM Source: Current State of Enterprise Risk Oversight 5 th Edition (June 2014) AICPA & NCSU

8 Benchmarking ERM con: Source: Current State of Enterprise Risk Oversight 5 th Edition (June 2014) AICPA & NCSU

9 Benchmarking ERM con: 1 2 Source: Current State of Enterprise Risk Oversight 5 th Edition (June 2014) AICPA & NCSU

10 Benchmarking ERM con: Companies with a designated Chief Risk Officer Financials with a designated Chief Risk Officer 53 Separate Risk Committees Risk Inventories kept at an enterprise level all Risk Inventories kept at an enterprise level Large Co s 72 Risk Inventories kept at an enterprise level Public Co s 66 Risk Inventories kept at an enterprise level Financials 44 Source: Current State of Enterprise Risk Oversight 5 th Edition (June 2014) AICPA & NCSU

11 Integrating a Risk Framework into the Business 1. ERM Policy and Framework 2. Accountabilities (and the Chief Risk Officer role) 3. Risk Criteria (and appetite / tolerances) 4. Risk Identification (and the use of Risk Workshops) 5. Corporate Risk Profile 6. Business Planning

12 ERM Policy and Framework

13 ERM Policy and Framework ERM Policy: ERM provides uniform processes to identify, measure, treat and report on key risks. This is the umbrella policy under which all other risk policies fall. Key principles include: portfolios of ALL types of risks, integrated with strategic and business planning, annual risk assessments, everyone s responsibility. Key accountabilities: Board and/or board committee, the Chief Executive Officer, Chief Financial Officer, Management and Chief Risk Officer. Key definitions, e.g. of risk. ERM Framework: Establishes the basic process for all risk assessments etc.

14 Accountabilities (and the Chief Risk Officer Role)

15 Accountabilities in ERM BOARD (OR COMMITTEE) CORPORATE RISK PROFILE POLICY & FRAMEWORK EXECUTIVE MANAGEMENT RISK CRITERIA (TOLERANCES) RISK PROFILES & BUSINESS PLANS MANAGE RISKS, $$ LINE MANAGEMENT

16 The Chief Risk Officer Role Alternative models, banks versus others Decision maker, facilitator or opinionator? Centralized/holistic view of the organization Some issues: Who does the CRO work for? Management or the Board? Is the CRO a facilitator or a policeman? Additional reading: Managing the Multiple Dimensions of Risk Part II: The Office of Risk Management by Anette Mikes, Assistant Professor, and Robert S. Kaplan, Baker Foundation Professor, Harvard Business School (2011) Becoming the Lamp Bearer: The Emerging Role of the Chief Risk Officer by Anette Mikes, Assistant Professor, Harvard Business School (2009) Enterprise Risk management From Incentives to Controls by James Lam, John Wiley & Sons (2003)

17 Accountabilities of Risk versus Internal Audit Core internal audit roles Roles with safeguards Audit should not undertake Source: The Role of Internal Auditing in Enterprise-wide Risk Management Institute of Internal Auditors (2004) Internal Auditing s Role in Risk Management Institute of Internal Auditors (2011)

18 The Chief Risk Officer and the Board Touch-points between the Board and the CRO: The ERM Policy and Framework approval Strategic Planning & Business Planning (Objectives) Risk Criteria (e.g. impact scale, tolerances etc) Formal Risk Profiles Frequent Updates Educator (e.g. best practices, benchmarking) Advisor (e.g. hot topics, emerging risks) Whistleblower (not recommended) To be determined (e.g. risk workshops)

19 Risk Criteria and appetite/tolerances

20 Appetite/Tolerances/Criteria Term < Appetite Tolerance Criteria Attitude Used Interchangeably COSO COSO ISO Canada* Canada* Canada* Canada* * = Implementation guide to CAN/CSA-ISO 31000, Risk management Principles and guidelines (2011)

21 Use of Risk Criteria (Appetite & Tolerances etc.) In order to run effective risk workshops In order to create a common understanding of risks by the leadership team, the board and managers Criteria for Business Planning / Resource Allocation prioritization Risk is the effect of uncertainty on objectives ISO 31000

22 Risk Criteria* Include: the nature and types of causes and consequences that can occur and how they will be measured; how likelihood will be defined; the timeframe(s) of the likelihood and / or consequence(s); how the level of risk is to be determined; the views of stakeholders; the level at which risk becomes acceptable or tolerable; and whether combinations of multiple risks should be taken into account and, if so, how and which combinations should be considered. * = Per ISO Note: Underlines for emphasis by John Fraser

23 Turning Strategy into Risk Criteria (inc. Tolerances) Strategic Planning Business Objectives How will we measure success for each Business Objective? How are we going to achieve our overall Corporate aims?? What 6-10 objectives do we want to factor in to decision-making? Key Performance Indicators What is our attitude toward failure for each Key Performance Indicator?? Risk Criteria (inc. Tolerances)

24 Example of Risk Tolerances (Criteria) Business Objectives Event Impact Description 5 Worst Case 4 Severe Risk Tolerances 3 Major 2 Moderate 1 Minor Financial Net Income shortfall (after tax, in one year) $>150M shortfall $75-150M shortfall $25-75M shortfall $5-25M shortfall <$5M shortfall Reputation Negative Media Attention; Opinion leader and Public Criticism National media attention; opinion leaders/customers nearly unanimous in public criticism Provincial media attention; most opinion leaders/customers publicly critical Significant local attention; Several opinion leaders/ customers publicly critical Credible letter(s) to Ministry of Energy, to Premier, to Chair of OEB, or to Minister of Environment, that require action Letter(s) to Senior Management Customer /Reliability Outages on the Hydro One system One of: >100,000 Customers Distribution or >1000MW Tx for more than 7 days One of: 40k-100k Customers Dx or MW Tx for 4-7 days One of: 10k-40k Customers Dx or MW Tx for 2-4 days One of: 1k-10k Customers Dx or MW Tx for 4-24 Hrs One of: <1000 Customers Dx or <10MW Tx for <4 Hrs Intolerable Tolerable

25 Actual Risk Criteria Impact Scale Intolerable Tolerable

26 Risk Identification and Evaluation The use of Risk Workshops The use of Interviews The use of Surveys

27 Risk Workshops Risk Management is a contact sport. Diana Del Bel Belluz Risk Workshops are Facilitated for: Major Projects, e.g. construction, Information Technology, Mergers & Acquisitions Major Types of Risks, e.g. environmental Lines of Business, e.g. for business planning Executive Team Board of Directors Note: Risk workshops will not work well in a dysfunctional organization

28 Risk Interviews Based on the Strategic Objectives List of major external events since the last Risk Profile Prior list of top risks: to capture trends and ratings Listings of all possible existing and evolving risks Identification and input of organizational context and learning's Recognizes difference styles of communicating (e.g. blue sky versus detailed)

29 Corporate Risk Profiles

30 Corporate Risk Profiles Purpose and Benefits Frequency, e.g. semi-annual (?) Based on: Interviews & Databases (e.g. risk workshop results) Trends & Emerging risks (e.g. media scans) Reviewed by: Executive (Risk) Committee Board or delegated board committee Input to Strategic & Business Planning (and internal audit plan)

31 Roll Up of Risk Interviews/Workshops Human Resources (R=2.6 / C=2.1) Volatile Work Schedule (R=2.5 / C=2.1) Commercial Culture (R=3.4 / C=2.1) Retaining Expertise R=2.6 / R=2.0) Labour Agreements R=2.4 / C=2.0) Training (R=2.5 / C=2.8) Competition (R=2.7 / C=2.5) Demographics (R=3.5 / C=2.3) Skills (R=2.5 / C=2.6) Budget (R=2.8 / C=2.6)

32 Risk Profile Top Ten Format Risk Source March 2001 Dec Risk Trend Cost Reduction Very High Very High Regulatory Uncertainty High Very High Initial Public Offering High High Customer Relationships High Medium Human Resources Medium Medium Safety High Medium Note: Each risk category is explained with a half page analysis outlining the sources of the risk and the mitigants in place or planned.

33 Heat Map Topic Risk description Likelihood Impact A Compensation Dissatisfaction leads to higher turnover B Recognition If unrecognized leads to errors and less focus C Downsizing More overtime so staff leave for better work/life balance D Demographics Changing demographics leads to more turnover Possible Unlikely Likely Almost Certain Moderate Minor Moderate Moderate Source: COSO 2004 Application Techniques Page 47

34 Risk Map

35 Business Planning

36 Business Planning: Making Choices Based on Value Vehicles?? Intolerable Risks House?? Medical?? + Highest Risk Mitigation Value for money Travel??

37 Summary - The Basic Approach to ERM Establish a policy and procedure (framework based on ISO 31000) Identify a champion and resources Agree on Risk Criteria e.g. an impact scale Create conversations via workshops and interviews Prepare semi-annual risk profiles (based on interviews and/or risk workshops) Incorporate risk prioritization into business planning Include risk assessments in capital projects Monitor and improve

38 Questions?

39 Additional Key ERM Techniques

40 Target Risk Attitude safety 5 "Target" Attitude technical innovation 4 3 customer 2 1 employee relationship 0 environment corporate image revenue growth shareholder return

41 Risk Attitude Comparison safety 5 "Target" Attitude technical innovation 4 3 customer Business development dept Operations dept Accounting dept 2 1 employee relationship 0 environment corporate image revenue growth shareholder return

42 Black Swans

43 Velocity Voting Scale Interval between the initiating event or condition (which is the point at which the risk becomes inevitable) and its peak impact on our business objectives

44 Resilience Voting Scale Ability to detect occurrence of initiating event/condition, and secure/deploy resources (plans, organizations, testing) Availability of or access to resources required to cope with or mitigate the business impact (people, knowledge, liquidity, equipment, etc)

45 Additional Readings

Enterprise Risk Management at

Enterprise Risk Management at Enterprise Risk Management at John R.S. Fraser Vice President, Internal Audit & Chief Risk Officer, Hydro One Inc. February 15, 2006 for PRMIA Toronto Chapter - The Fields Institute Summary 1. Background

More information

Sample Corporate Risk Management Policy

Sample Corporate Risk Management Policy Sample Corporate Risk Management Policy This document provides a sample Risk Management policy which includes an overview of the key roles and responsibilities of the various stakeholders. Risk Oversight

More information

Gleim CIA Review Updates to Part Edition, 1st Printing June 2018

Gleim CIA Review Updates to Part Edition, 1st Printing June 2018 Page 1 of 15 Gleim CIA Review Updates to Part 1 2018 Edition, 1st Printing June 2018 Study Unit 3 Control Frameworks and Fraud Pages 66 through 69 and 76 through 77, Subunit 3.2: In accordance with the

More information

Role of Board of Directors in Risk Management. CPA Erick Audi Thursday, 15 th November 2018

Role of Board of Directors in Risk Management. CPA Erick Audi Thursday, 15 th November 2018 Role of Board of Directors in Risk Management Presentation by: CPA Erick Audi Thursday, 15 th November 2018 Uphold public interest Presentation Agenda Introduction & Definitions Legal Provisions/Guidelines

More information

Guidance Note: Corporate Governance - Board of Directors. January Ce document est aussi disponible en français.

Guidance Note: Corporate Governance - Board of Directors. January Ce document est aussi disponible en français. Guidance Note: Corporate Governance - Board of Directors January 2018 Ce document est aussi disponible en français. Applicability The Guidance Note: Corporate Governance - Board of Directors (the Guidance

More information

TORONTO COMMUNITY HOUSING CORPORATION CHARTER OF THE BOARD OF DIRECTORS

TORONTO COMMUNITY HOUSING CORPORATION CHARTER OF THE BOARD OF DIRECTORS TORONTO COMMUNITY HOUSING CORPORATION CHARTER OF THE BOARD OF DIRECTORS PURPOSE: Toronto Community Housing Corporation ( TCHC ) is the largest social housing provider in Canada and the second largest in

More information

Risk Management at Statistics Canada

Risk Management at Statistics Canada Risk Management at Statistics Canada Presentation to Workshop on Risk Management Practices in Statistical Organizations J. Mayda April 25 th, 2016 Introduction Statistics Canada has had a formal Integrated

More information

Sample Strategy and Value Oversight Policy

Sample Strategy and Value Oversight Policy Sample Strategy and Value Oversight Policy This document provides a sample Strategy & Value Oversight policy which includes a high level overview of the key roles and responsibilities of the various participants.

More information

Gleim CPA Review Updates to Business Environment and Concepts 2018 Edition, 1st Printing March 2018

Gleim CPA Review Updates to Business Environment and Concepts 2018 Edition, 1st Printing March 2018 Page 1 of 16 Gleim CPA Review Updates to Business Environment and Concepts 2018 Edition, 1st Printing March 2018 The content of BEC Study Unit 2, Subunit 2, has undergone extensive edits due to the 2017

More information

Active Essex Risk Management Strategy

Active Essex Risk Management Strategy Active Essex Risk Management Strategy 2017-2021 November 2017 Contents 1. Policy Statement 2. Statement of Commitment 3. Risk Management Framework 4. Risk Appetite 5. Risk Maturity 6. Risk Management Levels

More information

Catching Fraud During a Recession Through Superior Internal Controls. FICPA s 25 th Annual Accounting Show. J. Stephen Nouss September 29, 2010

Catching Fraud During a Recession Through Superior Internal Controls. FICPA s 25 th Annual Accounting Show. J. Stephen Nouss September 29, 2010 Catching Fraud During a Recession Through Superior Internal Controls FICPA s 25 th Annual Accounting Show J. Stephen Nouss September 29, 2010 1 Session Objectives Fraud Facts (2008 Association of Certified

More information

Enterprise Risk Management

Enterprise Risk Management Enterprise Risk Management Status Report October 22, 2003 Office of the City Auditor This page is intentionally blank. Office of the City Auditor Enterprise Risk Management Status Report History On August

More information

Agenda. Enterprise Risk Management Defined. The Intersection of Enterprise-wide Risk Management (ERM) and Business Continuity Management (BCM)

Agenda. Enterprise Risk Management Defined. The Intersection of Enterprise-wide Risk Management (ERM) and Business Continuity Management (BCM) The Intersection of Enterprise-wide Risk (ERM) and Business Continuity (BCM) Marc Dominus 2005 Protiviti Inc. EOE Agenda Terminology and Process Introductions ERM Process Overview BCM Process Overview

More information

THE ENTERPRISE AND RISK MANAGEMENT POLICY

THE ENTERPRISE AND RISK MANAGEMENT POLICY Appendix 10 THE ENTERPRISE AND RISK MANAGEMENT POLICY 1. INTRODUCTION The Manila Water Company, Inc. (Manila Water) operates in a regulated and dynamic business environment where uncertainties, both detrimental

More information

Strengthening Your Enterprise Risk Management Process

Strengthening Your Enterprise Risk Management Process Strengthening Your Enterprise Risk Management Process Belinda Mumma, Senior Consultant, Enterprise Risk Management Services bmumma@sollievo.com (866) 605-5664 x3400 Discussion Topics Definition of Enterprise

More information

Internal Auditors and Enterprise Risk Management (ERM) ICPAK Presentation

Internal Auditors and Enterprise Risk Management (ERM) ICPAK Presentation Internal Auditors and Enterprise Risk Management (ERM) ICPAK Presentation April 2014 Disclaimer This presentation is made by KPMG Kenya, a member firm of the KPMG network of independent firms affiliated

More information

Enterprise Risk Management (ERM) How Internal Audit Can Add Great Value

Enterprise Risk Management (ERM) How Internal Audit Can Add Great Value ASSOCIATION OF HEALTHCARE INTERNAL AUDITORS 2009 ANNUAL CONFERENCE Charting a Course for Excellence Enterprise Risk Management (ERM) How Internal Audit Can Add Great Value to Your Organization s ERM Process

More information

Introduction to ERM (Enterprise Risk Management)

Introduction to ERM (Enterprise Risk Management) Introduction to ERM (Enterprise Risk Management) Jonathan Burns Director of Finance for Paramount Health Care since November 2014 Relocated to NW OH from Lexington, KY Prior roles in higher education and

More information

ORGANIZATIONAL INTEGRITY & AUDIT SERVICES ANNUAL WORK PLAN DEVELOPMENT RISK ASSESSMENT FACTORS

ORGANIZATIONAL INTEGRITY & AUDIT SERVICES ANNUAL WORK PLAN DEVELOPMENT RISK ASSESSMENT FACTORS RISK RATINGS The overall assessment of risk should be made in consideration of both the Impact of the area to Trinity Health and the Likelihood of a significant risk issues occurring in the area being

More information

20 Years in the Making. Meet the New ICIF: Revisions to COSO s Internal Control Integrated Framework. Dr. Sandra Richtermeyer COSO Board Member

20 Years in the Making. Meet the New ICIF: Revisions to COSO s Internal Control Integrated Framework. Dr. Sandra Richtermeyer COSO Board Member Meet the New ICIF: Revisions to COSO s Internal Control Integrated Framework Dr. Sandra Richtermeyer COSO Board Member Associate Dean and Professor of Accountancy Xavier University Cincinnati Ohio USA

More information

UNF Finance and Audit Committee January 15, 2013

UNF Finance and Audit Committee January 15, 2013 Item 7 UNF Finance and Audit Committee January 15, 2013 Issue Office of Internal Auditing Audit Planning Methodology Proposed Action Report Background Information The purpose of this item is to present

More information

CSR / Sustainability Governance and Management Assessment By Coro Strandberg President, Strandberg Consulting

CSR / Sustainability Governance and Management Assessment By Coro Strandberg President, Strandberg Consulting Introduction CSR / Sustainability Governance and Management Assessment By Coro Strandberg President, Strandberg Consulting www.corostrandberg.com November 2015 Companies which adopt CSR or sustainability

More information

Enterprise Risk Management Defined and Explained

Enterprise Risk Management Defined and Explained Enterprise Risk Management Defined and Explained Council of Engineering and Scientific Society Executives ACCESSE16 July 27, 2016 Paul Klein Managing Director Not-for-Profit Atlantic Coast Market Territory

More information

Board of Directors Performance Self-Evaluation Questionnaire

Board of Directors Performance Self-Evaluation Questionnaire Board of Directors Performance Self-Evaluation Questionnaire Please check the number that best represents your opinion on each question or statement. In each case 1 is the least favorable response and

More information

RISK AND COMPENSATION COMMITTEE TERMS OF REFERENCE

RISK AND COMPENSATION COMMITTEE TERMS OF REFERENCE RISK AND COMPENSATION COMMITTEE TERMS OF REFERENCE Mandate The Risk and Compensation Committee oversees the Company s 1 Enterprise Risk Management (ERM) Program, including the Company s identification

More information

Corporate Governance Statement

Corporate Governance Statement Corporate Governance Statement This Corporate Governance Statement of Yellow Brick Road Holdings Limited (the Company ) has been prepared in accordance with the 3 rd Edition of the Australian Securities

More information

QUILTER PLC ( Quilter or the Company ) BOARD RISK COMMITTEE TERMS OF REFERENCE

QUILTER PLC ( Quilter or the Company ) BOARD RISK COMMITTEE TERMS OF REFERENCE QUILTER PLC ( Quilter or the Company ) BOARD RISK COMMITTEE TERMS OF REFERENCE Version approved by the Quilter Board (the Board ) on 15 February 2018. 1. Role The role of the Board Risk Committee (the

More information

Treasury s Leading Role in Enterprise Risk Management

Treasury s Leading Role in Enterprise Risk Management Treasury s Leading Role in Enterprise Risk Management May 2015 Presented To Presented By Kevin Ruiz Principal 2015 Treasury Strategies, Inc. All rights reserved. Situation The Expanding Scope and Value

More information

Statement on Risk Management and Internal Control

Statement on Risk Management and Internal Control INTRODUCTION The Board affirms its overall responsibility for the Group s system of internal control and risk management and for reviewing the adequacy and effectiveness of the system. The Board is pleased

More information

Current State of Enterprise Risk Oversight:

Current State of Enterprise Risk Oversight: Current State of Enterprise Risk Oversight: Progress is Occurring but Opportunities for Improvement Remain July 2012 Mark Beasley Bruce Branson Bonnie Hancock Deloitte Professor of ERM Associate Director,

More information

Canadian Insurance Accountants Association

Canadian Insurance Accountants Association www.pwc.com/ca Canadian Insurance Accountants Association Corporate Governance Rising Expectations Presented By: Sandeep Dhiman May 20, 2015 Agenda 1. Current Corporate Governance Environment 2. Hot Topics

More information

Guidance Note: Corporate Governance - Audit Committee. January Ce document est aussi disponible en français.

Guidance Note: Corporate Governance - Audit Committee. January Ce document est aussi disponible en français. Guidance Note: Corporate Governance - Audit Committee January 2018 Ce document est aussi disponible en français. Applicability The Guidance Note: Corporate Governance Audit Committee (the Guidance Note

More information

Board of Directors Mandate VIA Rail Canada Inc.

Board of Directors Mandate VIA Rail Canada Inc. Board of Directors Mandate VIA Rail Canada Inc. 1. PURPOSE The Board of Directors ( Board ) is accountable to the Shareholder and reports to Parliament through the Minister of Transport ( Minister ). The

More information

Enterprise Risk Management Demystified

Enterprise Risk Management Demystified Enterprise Risk Management Demystified Charles W. Soucy, CPCU, CLU, ARM Joe C. Underwood, CPCU, ARM, AIC October 27, 2010 Agenda 1. What is it? A formal definition of ERM How it s different 2. Why do it?

More information

MPAC BOARD OF DIRECTORS MANDATE

MPAC BOARD OF DIRECTORS MANDATE MPAC BOARD OF DIRECTORS MANDATE The Municipal Property Assessment Corporation Act is the foundation of the governance model that establishes Municipal Property Assessment Corporation (MPAC) and sets out

More information

From Backyard Business to Public Company

From Backyard Business to Public Company From Backyard Business to Public Company The Changing Role of the Management Accountant IMA Michigan Fall Conference October 29, 2008 John Pollara CMA, IMA Chair Emeritus 1 2 3 4 5 6 7 8 9 10 11 12 Definitions

More information

DeVry Approach to ERM

DeVry Approach to ERM IIA Chicago Chapter 53 rd Annual Seminar April 15, 2013, Donald E. Stephens Convention Center @IIAChicago DeVry Approach to ERM Elizabeth Truelove McDermott, CPA Vice President, Audit, Ethics & Compliance

More information

The COSO Risk Framework: A reference for internal control? Transition from COSO I to COSO II

The COSO Risk Framework: A reference for internal control? Transition from COSO I to COSO II The COSO Risk Framework: A reference for internal control? Transition from COSO I to COSO II S P E A K E R : D O T T. FA B I O A C C A R D I C O U R S E O F B U S I N E S S A U D I T I N G U N I V E R

More information

Performance Risk Management Jonathan Blackmore, May 2013

Performance Risk Management Jonathan Blackmore, May 2013 Performance Risk Management Jonathan Blackmore, May 2013!@# Topics The world is changing How leading companies turn risk into results Back to basics 2 Company focus Market Risk Management an evolving journey

More information

Enterprise Risk Management: Developing a Model for Organizational Success. White Paper

Enterprise Risk Management: Developing a Model for Organizational Success. White Paper Enterprise Risk Management: Developing a Model for Organizational Success White Paper January 2009 Overview Less than a decade ago, Enterprise Risk Management (ERM) was an unfamiliar concept. Today, the

More information

Sub-section Content. 1 Preliminaries - Post title: Head of Group Risk - Reports to: CRO - Division: xxx - Department: xxx - Location: xxx

Sub-section Content. 1 Preliminaries - Post title: Head of Group Risk - Reports to: CRO - Division: xxx - Department: xxx - Location: xxx Sub-section Content 1 Preliminaries - Post title: Head of Group Risk - Reports to: CRO - Division: xxx - Department: xxx - Location: xxx 2 Job Purpose - To assist in the maintenance and development of

More information

DIRECTOR TRAINING AND QUALIFICATIONS: SAMPLE SELF-ASSESSMENT TOOL February 2015

DIRECTOR TRAINING AND QUALIFICATIONS: SAMPLE SELF-ASSESSMENT TOOL February 2015 DIRECTOR TRAINING AND QUALIFICATIONS: SAMPLE SELF-ASSESSMENT TOOL February 2015 DIRECTOR TRAINING AND QUALIFICATIONS SAMPLE SELF-ASSESSMENT TOOL INTRODUCTION The purpose of this tool is to help determine

More information

Three Lines of Defense vs. Five Lines of Assurance

Three Lines of Defense vs. Five Lines of Assurance Three Lines of Defense vs. Five Lines of Assurance Elevating the Role of the Board and CEO in Risk Governance Tim Leech, Managing Director Risk Oversight Solutions Inc. Lauren Hanlon, Director Risk Oversight

More information

The challenges of and solutions for implementing enterprise risk management

The challenges of and solutions for implementing enterprise risk management Business Horizons (2016) xxx, xxx xxx Available online at www.sciencedirect.com ScienceDirect www.elsevier.com/locate/bushor The challenges of and solutions for implementing enterprise risk management

More information

Integrating Corporate Compliance Programs into Enterprise Risk Management Programs

Integrating Corporate Compliance Programs into Enterprise Risk Management Programs Integrating Corporate Compliance Programs into Enterprise Risk Management Programs Baker Tilly refers to Baker Tilly Virchow Krause, LLP, an independently owned and managed member of Baker Tilly International.

More information

Mandate of the Board of Directors

Mandate of the Board of Directors Mandate of the Board of Directors Last approved by the Board of Directors on May 7, 2018 GEORGE WESTON LIMITED Mandate of the Board of Directors 1. ROLE The role of the Board is to provide governance and

More information

BOARD CHARTER OF THE AUDIT AND RISK OVERSIGHT COMMITTEE

BOARD CHARTER OF THE AUDIT AND RISK OVERSIGHT COMMITTEE BOARD CHARTER OF THE AUDIT AND RISK OVERSIGHT COMMITTEE EURO-MED LABORATORIES PHIL., INC. I. PURPOSE The Audit and Risk Oversight Committee shall assist the Board of Directors in fulfilling its oversight

More information

MAGNA INTERNATIONAL INC. BOARD CHARTER

MAGNA INTERNATIONAL INC. BOARD CHARTER MAGNA INTERNATIONAL INC. BOARD CHARTER MAGNA INTERNATIONAL INC. BOARD CHARTER Purpose This Charter has been adopted by the Board of Directors to assist the Board in the exercise of its responsibilities.

More information

ENTERPRISE RISK MANAGEMENT

ENTERPRISE RISK MANAGEMENT ENTERPRISE RISK MANAGEMENT PROFILE AND BACKGROUND JOHN TOSCANO, CPA, PARTNER 959-200-7211 john.toscano@cohnreznick.com John Toscano, CPA is a partner with CohnReznick LLP and leads the Firm s Independent

More information

Introductions. Enterprise Risk Management. Thinus Nienaber. Why are You here? Where are You coming from? Where are You going?

Introductions. Enterprise Risk Management. Thinus Nienaber. Why are You here? Where are You coming from? Where are You going? Enterprise Risk Management PRESENTED BY Thinus Nienaber Introductions Why are You here? Where are You coming from? Where are You going? What do You expect? From the intervention? From Yourself? Let s share!

More information

COSO ERM: Integrating with Strategy and Performance. Michael Parkinson

COSO ERM: Integrating with Strategy and Performance. Michael Parkinson COSO ERM: Integrating with Strategy and Performance Michael Parkinson Content The COSO Frameworks Risk (Enterprise) Risk Management The COSO risk management framework A few highlights Questions for management

More information

Certificate in Enterprise Risk Management

Certificate in Enterprise Risk Management Certificate in Enterprise Risk Management Who should attend? Risk managers Managers and Directors responsible for the risk management function or process Senior Internal Auditors and audit managers Other

More information

AUDIT COMMITTEE CHARTER APRIL 30, 2018

AUDIT COMMITTEE CHARTER APRIL 30, 2018 AUDIT COMMITTEE CHARTER APRIL 30, 2018 I. Purpose The Audit Committee ( Committee ) is appointed by the Board of Directors ( Board ) to assist the Board in its oversight responsibilities relating to: the

More information

GRM OVERSEAS LIMITED RISK MANAGEMENT POLICY

GRM OVERSEAS LIMITED RISK MANAGEMENT POLICY GRM OVERSEAS LIMITED RISK MANAGEMENT POLICY As approved by the Board of Directors at their meeting held on 11.11.2014. 1 P a g e Contents 1. Risk Management...3 2. Policy...3 3. Risk Management Philosophy...3

More information

Quality Assurance and Improvement Program

Quality Assurance and Improvement Program Internal Audit Foundations Standards 1000, 1010, 1100, 1110, 1111, 1120, 1130, 1300, 1310, 1320, 1321, 1322, 2000, 2040 There is an Internal Audit Charter in place Internal Audit Charter is in place The

More information

From Dictionary.com. Risk: Exposure to the chance of injury or loss; a hazard or dangerous chance

From Dictionary.com. Risk: Exposure to the chance of injury or loss; a hazard or dangerous chance Sharon Hale and John Argodale May 28, 2015 2 From Dictionary.com Enterprise: A project undertaken or to be undertaken, especially one that is important or difficult or that requires boldness or energy

More information

Corporate Governance Statement

Corporate Governance Statement Corporate Governance Statement This Corporate Governance Statement of Yellow Brick Road Holdings Limited (the company ) has been prepared in accordance with the 3 rd Edition of the Australian Securities

More information

Establishing Enterprise Risk Management in

Establishing Enterprise Risk Management in Establishing Enterprise Risk Management in Management Practices Introductions/Opening Remarks Speakers: Cynthia Vitters, Chief Risk Officer, Federal Student Aid Mike Wetklow, Branch Chief, Office of Management

More information

Audit, Risk and Compliance Committee Terms of Reference. Atlas Mara Limited. (The "COMPANY") Amendments approved by the Board on 22 March 2016

Audit, Risk and Compliance Committee Terms of Reference. Atlas Mara Limited. (The COMPANY) Amendments approved by the Board on 22 March 2016 Audit, Risk and Compliance Committee Terms of Reference Atlas Mara Limited (The "COMPANY") Amendments approved by the Board on 22 March 2016 1. OVERVIEW 1.1 The primary objective of the committee is to

More information

Can HR Evolve Faster? What's in Its Way? - and

Can HR Evolve Faster? What's in Its Way? - and Can HR Evolve Faster? What's in Its Way? - and How to Remove It John Boudreau April 19, 2010 Extending the Paradigm Compliance Maintain compliance and control Services Provide effective services Human

More information

Assessment of the Design Effectiveness of Entity Level Controls. Office of the Chief Audit Executive

Assessment of the Design Effectiveness of Entity Level Controls. Office of the Chief Audit Executive Assessment of the Design Effectiveness of Entity Level Controls Office of the Chief Audit Executive February 2017 Cette publication est également disponible en français. This publication is available in

More information

MAGNA INTERNATIONAL INC. BOARD CHARTER

MAGNA INTERNATIONAL INC. BOARD CHARTER MAGNA INTERNATIONAL INC. BOARD CHARTER Purpose This Charter has been adopted by the Board of Directors to assist the Board in the exercise of its responsibilities. This Charter, together with the Corporate

More information

Audit Committee Reporting: Trends and Best Practices. Claudio de los Rios CPA, CA, Wolters Kluwer November 1, 2016

Audit Committee Reporting: Trends and Best Practices. Claudio de los Rios CPA, CA, Wolters Kluwer November 1, 2016 Audit Committee Reporting: Trends and Best Practices Claudio de los Rios CPA, CA, Wolters Kluwer November 1, 2016 Claudio de los Rios Canadian CPA,CA Public accounting and Tax in Vancouver, Canada Deloitte,

More information

Risk Management in the 21 st Century Ameren Business Risk Management

Risk Management in the 21 st Century Ameren Business Risk Management Management in the 21 st Century Ameren Business Management Charles A. Bremer V.P. Ameren Service Center/Information Technology Ameren Services Co. November, 2007 Ameren s History 2 Ameren Today Electric

More information

Road map for. March 19, Enterprise Risk Management USI Insurance Services National, Inc. All rights reserved.

Road map for. March 19, Enterprise Risk Management USI Insurance Services National, Inc. All rights reserved. Road map for Enterprise Risk Management March 19, 2018 2018 USI Insurance Services National, Inc. All rights reserved. Enterprise Risk Management (ERM) Roadmap ERM has come full circle in some ways. When

More information

Enterprise Risk Management. Focus on the Future June 2017

Enterprise Risk Management. Focus on the Future June 2017 Enterprise Risk Management Focus on the Future June 2017 2017 Crowe 2017 Crowe Horwath Horwath LLP LLP Learning Objectives and Agenda Objectives Distinguish Risk Management from ERM Understand the Value

More information

Strengthening Control and integrity: A Checklist for government Managers

Strengthening Control and integrity: A Checklist for government Managers Forum: Analytics and Risk Management Tools for Making Better Decisions Strengthening Control and integrity: A Checklist for government Managers By James A. Bailey The next contribution is based on a Center

More information

The Gym Group plc. (the Company ) Audit and Risk Committee - Terms of Reference. Adopted by the board on 14 October 2015 (conditional on Admission)

The Gym Group plc. (the Company ) Audit and Risk Committee - Terms of Reference. Adopted by the board on 14 October 2015 (conditional on Admission) The Gym Group plc (the Company ) Audit and Risk Committee - Terms of Reference Adopted by the board on 14 October 2015 (conditional on Admission) 1. BACKGROUND The board of directors of the Company (the

More information

Enterprise Risk Management

Enterprise Risk Management Compliance, Audit, Risk Management and Legal Affairs Committee Enterprise Risk Management Higher Education Scorecards, Performance Based Metrics, and Faculty Compensation Alan D. Phillips Vice President

More information

Introduction. The Assessment consists of:

Introduction. The Assessment consists of: ESG / Sustainability Governance Assessment: A Roadmap to Build a Sustainable Board By Coro Strandberg President, Strandberg Consulting www.corostrandberg.com November 2018 Introduction This is a tool for

More information

IFC Corporate Governance Progression Matrix for Listed Companies. (Integrating Environmental, Social, and Governance Issues)

IFC Corporate Governance Progression Matrix for Listed Companies. (Integrating Environmental, Social, and Governance Issues) IFC Corporate Governance Progression Matrix for Listed Companies (Integrating Environmental, Social, and Governance Issues) International Finance Corporation 2018. All rights reserved. 2121 Pennsylvania

More information

IRM s Professional Standards in Risk Management PART 1 Consultation: Functional Standards

IRM s Professional Standards in Risk Management PART 1 Consultation: Functional Standards IRM s Professional Standards in Risk PART 1 Consultation: Functional Standards Setting standards Building capability Championing learning and development Raising the risk profession s profile Supporting

More information

Corporate Governance Statement

Corporate Governance Statement Corporate Governance Statement This Corporate Governance Statement of Yellow Brick Road Holdings Limited (the company ) has been prepared in accordance with the 3 rd Edition of the Australian Securities

More information

Risk Management in Istat: from the project to the process

Risk Management in Istat: from the project to the process WORKSHOP ON RISK MANAGEMENT SYSTEMS AND PRACTICES Risk Management in Istat: from the project to the process Genève, 25-26 April 2016 Page 1 Management System Network Values and ethics Organizational culture

More information

Director Training and Qualifications

Director Training and Qualifications 4711 Yonge Street Suite 700 Toronto ON M2N 6K8 Telephone: 416-325-9444 Toll Free 1-800-268-6653 Fax: 416-325-9722 4711, rue Yonge Bureau 700 Toronto (Ontario) M2N 6K8 Téléphone : 416 325-9444 Sans frais

More information

The COSO Approach to Enterprise Risk Management

The COSO Approach to Enterprise Risk Management Bank Enterprise Management May 4 5, 2016 New York City The COSO Approach to Enterprise Management Presented by: Jack R. Salvetti, Principal S.R. Snodgrass, P.C. About COSO The Committee of Sponsoring Organizations

More information

Chapter 3 Workers Compensation Board: Governance and Long-term Sustainability

Chapter 3 Workers Compensation Board: Governance and Long-term Sustainability Chapter 3 Workers Compensation Board: Governance and Long-term Sustainability Overall Conclusions The Board of Directors has governance structures and processes to provide oversight and accountability

More information

ISO INTERNATIONAL STANDARD. Risk management Principles and guidelines. Management du risque Principes et lignes directrices

ISO INTERNATIONAL STANDARD. Risk management Principles and guidelines. Management du risque Principes et lignes directrices INTERNATIONAL STANDARD ISO 31000 First edition 2009-11-15 Risk management Principles and guidelines Management du risque Principes et lignes directrices http://mahdi.hashemitabar.com Reference number ISO

More information

CORPORATE GOVERNANCE STATEMENT

CORPORATE GOVERNANCE STATEMENT CORPORATE GOVERNANCE STATEMENT 20 17 CORPORATE GOVERNANCE STATEMENT Regis Healthcare Limited (Regis) has adopted the 3rd edition of the ASX Corporate Governance Principles and Recommendations released

More information

Enterprise Risk Management

Enterprise Risk Management 1 Enterprise Risk Management Building an Effective Enterprise Risk Management Program in a Community Bank Jay Gallo Chief Risk Officer Topics for Discussion 2 Defining Enterprise Risk Management Do Community

More information

Compliance, Internal Audit, and Risk Management: What do they look like at a Managed Care Plan?

Compliance, Internal Audit, and Risk Management: What do they look like at a Managed Care Plan? Compliance, Internal Audit, and Risk Management: What do they look like at a Managed Care Plan? And, other words of wisdom... Objectives: Define risk and identify where risk comes from Recognize what risk

More information

FEDERAL HOME LOAN BANK OF INDIANAPOLIS CHARTER FOR THE AUDIT COMMITTEE

FEDERAL HOME LOAN BANK OF INDIANAPOLIS CHARTER FOR THE AUDIT COMMITTEE BOARD APPROVAL: JULY 16, 2015 FEDERAL HOME LOAN BANK OF INDIANAPOLIS Mission The mission of the Audit Committee ( Committee ) is to assist the Board of Directors ( Board ) in fulfilling its fiduciary responsibilities

More information

CORPORATE GOVERNANCE STATEMENT

CORPORATE GOVERNANCE STATEMENT Corporate Governance Statement 2015 CORPORATE GOVERNANCE STATEMENT THE COMPANY S APPROACH TO CORPORATE GOVERNANCE The Board of the Company is responsible for the governance of the Company and its controlled

More information

2012 CliftonLarsonAllen LLP. A Practical & Tactical Approach to. Management (ERM) Cooperatives (NSAC) Jennifer Leary, Partner National Risk Management

2012 CliftonLarsonAllen LLP. A Practical & Tactical Approach to. Management (ERM) Cooperatives (NSAC) Jennifer Leary, Partner National Risk Management A Practical & Tactical Approach to Implementing Enterprise Risk Management (ERM) National Society of Accountants for Cooperatives (NSAC) Jennifer Leary, Partner National Risk Management 1 1 Speaker Bio

More information

Abu Dhabi Commercial Bank PJSC Code of Corporate Governance

Abu Dhabi Commercial Bank PJSC Code of Corporate Governance Definitions In this code, the following words and phrases shall have the meanings assigned to them below: Audit Committee Bank Best Practices Board Chairman Code Directors Executive Director GCEO GCFO

More information

Lya Villasuso OECD Corporate Affairs Division Response ed to: RE: Corporate Governance and the Financial Crises

Lya Villasuso OECD Corporate Affairs Division Response  ed to: RE: Corporate Governance and the Financial Crises Richard F. Chambers Certified Internal Auditor Certification in Control Self-Assessment Certified Government Auditing Professional President April 16, 2009 Lya Villasuso OECD Corporate Affairs Division

More information

AUDIT AND RISK COMMITTEE CHARTER

AUDIT AND RISK COMMITTEE CHARTER AUDIT AND RISK COMMITTEE CHARTER Contents Page A. Introduction 1 B. Statement of Policy 1 C. Perspective 1 D. Roles and Responsibilities 2 E. Membership 7 F. Meetings and Schedule of Activities 7 G. Reporting

More information

All expenses are inclusive of taxes. Please note there may be occasions whereby there is a delay in posting an expense due to timing of travel.

All expenses are inclusive of taxes. Please note there may be occasions whereby there is a delay in posting an expense due to timing of travel. TRAVEL AND HOSPITALITY DISCLOSURES The Government of Canada has implemented a series of measures to strengthen public sector management by enhancing transparency and oversight of public resources in the

More information

APM Risk SiG Conference 26 th October 2006 Reporting risks to the board

APM Risk SiG Conference 26 th October 2006 Reporting risks to the board APM Risk SiG Conference 26 th October 2006 Reporting risks to the board Purpose The purpose of this paper is to summarise the key points from the various presentations and knowledge sharing session held

More information

TOR NAME Responsible Owner Effective date Technology Strategy Committee (TSC) Terms of Reference (TOR) College Board

TOR NAME Responsible Owner Effective date Technology Strategy Committee (TSC) Terms of Reference (TOR) College Board TOR NAME Responsible Owner Effective date Technology Strategy Committee (TSC) Terms of Reference (TOR) Technology Strategy Committee March 30, 2017 TOR number Approval Body Replaces TSC 2017-18 TOR College

More information

CGEIT Certification Job Practice

CGEIT Certification Job Practice CGEIT Certification Job Practice Job Practice A job practice serves as the basis for the exam and the experience requirements to earn the CGEIT certification. This job practice consists of task and knowledge

More information

RE: Internal Control Integrated Framework: Guidance on Monitoring Internal Control Systems Discussion Document

RE: Internal Control Integrated Framework: Guidance on Monitoring Internal Control Systems Discussion Document 3701 Algonquin Road, Suite 1010 Telephone: 847.253.1545 Rolling Meadows, Illinois 60008, USA Facsimile: 847.253.1443 Web Sites: www.isaca.org and www.itgi.org 31 October 2007 COSO Board of Directors In

More information

Guidance Note: Corporate Governance - Audit Committee. March Ce document est aussi disponible en français.

Guidance Note: Corporate Governance - Audit Committee. March Ce document est aussi disponible en français. Guidance Note: Corporate Governance - Audit Committee March 2015 Ce document est aussi disponible en français. Applicability The Guidance Note: Corporate Governance Audit Committee (the Guidance Note )

More information

A Practical Approach to Enterprise Risk Management

A Practical Approach to Enterprise Risk Management A Practical Approach to Enterprise Risk Management Presented by: Amit Govil Managing Partner, P&G Associates John McIsaac President, McIsaac Risk Solutions Today s Agenda I. Defining ERM II. Implementation

More information

International Finance Corporation

International Finance Corporation International Finance Corporation Corporate Governance and Internal Audit Overview Bob Lamm Independent Senior Advisor Center for Corporate Governance Deloitte LLP Neil White Global IA Analytics Leader

More information

GOVERNANCE AND HUMAN RESOURCES COMMITTEE TERMS OF REFERENCE

GOVERNANCE AND HUMAN RESOURCES COMMITTEE TERMS OF REFERENCE GOVERNANCE AND HUMAN RESOURCES COMMITTEE TERMS OF REFERENCE Purpose The purpose of the Governance and Human Resources Committee of the Board of Directors (Board) of the Municipal Property Assessment Corporation

More information

AUDIT REPORT NOVEMBER

AUDIT REPORT NOVEMBER RISK MANAGEMENT AUDIT REPORT NOVEMBER 2009 TABLE OF CONTENTS EXECUTIVE SUMMARY........3 STATEMENT OF ASSURANCE......6 1 INTRODUCTION...7 BACKGROUND......7 AUDIT OBJECTIVES.........9 AUDIT SCOPE AND APPROACH........9

More information

Report on the Current State of Enterprise Risk Oversight

Report on the Current State of Enterprise Risk Oversight ERM INITIATIVE AT NC STATE UNIVERSITY Report on the Current State of Enterprise Risk Oversight Management Accounting Research Conducted on Behalf of the American Institute of CPAs Mark Beasley, Bruce Branson,

More information

HYDRO ONE LIMITED CORPORATE GOVERNANCE GUIDELINES

HYDRO ONE LIMITED CORPORATE GOVERNANCE GUIDELINES HYDRO ONE LIMITED CORPORATE GOVERNANCE GUIDELINES The board of directors (the Board ) of Hydro One Limited (including its subsidiaries, the Company ) and its management are committed to standards of corporate

More information

EY Center for Board Matters. Leading practices for audit committees

EY Center for Board Matters. Leading practices for audit committees EY Center for Board Matters for audit committees As an audit committee member, your role is increasingly complex and demanding. Regulators, standard-setters and investors are pressing for more transparency

More information