Charter for Enterprise Risk Management

Size: px
Start display at page:

Download "Charter for Enterprise Risk Management"

Transcription

1 for Enterprise Risk Management Prepared by: Shannon Sinclair Version: 1.2 Document Id: Date: Release Date

2 TABLE OF CONTENTS TABLE OF CONTENTS... i 1. Background Objectives Scope Inclusions Exclusions Key Project Deliverables Project Authority Authorization Project Manager Staffing Management Approach Quality Management Risk Management Charter Approvals Appendix Project Schedule... 6 Page i

3 1. Background According to the EDUCAUSE article: Leveraging Enterprise Risk Management: Opportunity for Greater Relevance, colleges and universities were asked to begin Enterprise Risk Management (ERM) programs during the first decade of the 21 st century. As a result of these requests and financial pressures, public and private institutions have been implementing ERM business processes to support strategic and annual planning as well as major new initiatives. Risk management is happening sporadically across campus with varying perceptions of Mines risk appetite. This was identified through a 7-question survey of 16 participants, across three areas. The survey was intended to provide a pulse of where we are at as an Institution. It also identified there was not a common meaning of risk across campus as well as challenges and barriers to risk management including: lack of tools, resources, training, collaboration, knowledge, and authority. According to the Committee of ing Organizations of the Treadway Commission, Enterprise Risk Management (ERM) is a process, effected by an entity s board of directors, management, and other personnel, applied in strategy setting and across the enterprise, designed to identify potential events that may affect the entity, manage risk to be within its risk appetite, to provide reasonable assurance regarding the achievement of entity objectives. It provides structure to avoid downside risk and take advantage of upside risk. The basic steps of ERM include: identification of risks, assessment of the likelihood and impact on the institution, aggregation and integration of risks, development of a risk management plan, and measure, track and communicate risks. Benefits include: Developing a holistic and cohesive system aimed at achieving Mines objectives Enhancing decision making and purposeful resource allocation Assisting management in making informed decisions regarding risk Fostering collaboration through an organization-wide risk language Breaking down barriers between departments and support beneficial change Improving understanding of the interrelated impacts of risk at Mines Without ERM there could be an inconsistent definition of risk, haphazard decision making, silos, challenges to managing risk, and unidentified emerging risks. ERM is intended to progress the mission, vision, core values and strategic and business objectives of the Institution to enhance overall performance. It should become a mindset that is engrained in our decision making process throughout campus. 2. Objectives Define acceptable levels of risk (e.g., Mines Risk Appetite) by August 31, Determine ERM framework to be followed by Institution by October 31, Perform the first round of risk assessment at the University-level (risks identified, prioritized, and management response plans) performed by March 31, Develop Key Risk Indicators (KRIs) by June 30, Report to the Finance & Audit Committee (FAC) by fall Page 1

4 Expand the team for the second phase implementation of department-level risk assessment (risks identified, prioritized, and management response plans) performed by March 31, Scope 3.1 Inclusions While ERM is an on-going process, for purposes of this project, the scope will be defined as follows. The ERM Advisory will initially consist of a core group of members across campus (~12 participants). The team will receive training on ERM and will develop a definition and framework for ERM that fits Mines operations. The team will perform the risk assessment(s) aggregate and determine the most critical risks to the Institution, and determine response plans. KRIs will be developed for monitoring and decision making. The process will then be expanded and monitored on an ongoing basis. Plans will be developed to communicate and engage the Mine s community in ERM to embed risk thinking into the culture and mindset of its constituents. Resources will also be available. 3.2 Exclusions No impact to current systems. Management of all risks at every level of the organization. State risk management will not be included, beyond participation on the team. 4. Key Project Deliverables The deliverable due dates are indicated in Section 8.1: Project Schedule. Key Deliverable Acceptance Criteria Approval By: Project Charter - Core team agrees that it defines the project appropriately - It is in the accepted format ERM Advisory Project Plan Requirements document Risk Appetite Definition ERM Framework - Core team agrees that it defines the project appropriately - It is in the accepted format - Core team agrees that it defines the project appropriately - It is in the accepted format - Statement or guidelines that reflect the tolerance for risk the Institution is willing to take, which is accepted by Executive Leadership - Structured framework based on established guidelines that is repeatable for any department or area ERM Advisory ERM Advisory Executive Leadership ERM Advisory Page 2

5 Risk assessment Response plans Presentation of top risks (e.g., critical, high) Development of KRIs - Operationally fits the Mines environment - Acceptable to Executive and Senior Leadership - Documentation of the risk register (top risks), considering impact and likelihood - Mines leadership agrees with the overall assessment - Documentation of the response plans - Mines leadership agrees with the response plans - Summary of risks (format to be determined heat map, list, balanced scorecard, etc.) - Mines leadership agrees with the identified risks - Metrics that can be monitored to facilitate decision making - Mines leadership agrees with KRIs Report to FAC - Summary of project status Executive Leadership 5. Project Authority 5.1 Authorization This Charter has been initiated by the Office of Internal Audit and authorizes the use of organizational resources to accomplish the objectives of the project. 5.2 Project Manager The Director of Internal Audit will administer and oversee this project on a day-to-day basis. The Director will not be assuming a management role (e.g., making decisions on behalf of the institution or accountable for risk management), but rather facilitating, coaching, coordinating, reporting, and championing the project. 5.3 Staffing Project Manager Director of Internal Audit* ERM Advisory o Academic Affairs representation* o Student Life representation* o Administration & Operation representation* * - Core team Other needed input o Communications and Marketing (consultation) Page 3

6 o o o Consideration of technology and related support Additional departments and units to subsequently join the ERM Advisory team Work study (possible web development, other tasks) Staffing for Mines roles will be drawn from existing staff. ERM Advisory team will meet on a regular basis (frequency to be determined) and will perform tasks between meetings. One-off meetings will be scheduled depending on project needs. 6. Management Approach 6.1 Quality Management There are two governing frameworks for ERM: the International Organization of Standardization (ISO) and the Committee of ing Organizations (COSO). ISO 31000:2009, Risk management Principles and guidelines, provides principles, framework and a process for managing risk. Using ISO can help increase the likelihood of achieving objectives, improve the identification of opportunities and threats and effectively allocate and use resources for risk treatment. It provides guidance for internal programs. Institutions using it can compare their risk management practices with an internationally recognized benchmark, providing sound principles for effective management and corporate governance. COSO s ERM Integrated Framework accommodates different viewpoints and enhances strategies and decision-making. It also sets out core definitions, components, principles, and provides direction for all levels of management involved in designing, implementing, and conducting enterprise risk management practices. The Framework presiding framework will be selected by the team during the project. However, neither ISO nor COSO have specific quality management requirements. As such, lessons learned will be assessed by the participants at the end of phase 1 and changes will be made to the process going forward. Feedback / evaluation will be requested from the stakeholders of the process to assess value. 6.2 Risk Management Risk will be managed throughout the project with initial risks being identified and monitored going forward. The initial risks identified include: 1. Personnel resources will not be available to accomplish project work. 2. Development of a risk definition and framework may take longer than expected. 3. Risk definition and framework may not fit the Institution s environment. 4. Processes or systems will not be available or efficient for managing the documentation. 5. Tools/resources will not be readily available. 6. Lack of collaboration to identify interrelated risks. 7. Selection of KRIs that do not facilitate decision making. Page 4

7 7. Charter Approvals Project Date Project Manager Date Page 5

8 8. Appendix 8.1 Project Schedule Deliverable Target Date Determine need for centralized ERM process; make 12/31/2016 recommendation Socialize the ERM idea and identify participants for ERM Advisory 2/28/2017 Approval of project management documents including charter, plan, 3/31/2017 and requirements Train participants risks and controls 4/30/2017 Formalize mission, objectives, goals 5/31/2017 Define Mines risk appetite get buy-in from Executives 8/31/2017 Training/ Development of Mines framework to assess risk 10/31/2017 Perform initial risk assessment (University-wide top risks) 2/28/2018 Prioritize risks and develop/obtain response plans 3/31/2018 Monitor performance and reporting 6/30/2018 Communication of risk, status to campus and leadership Ongoing Page 6

Strengthening Your Enterprise Risk Management Process

Strengthening Your Enterprise Risk Management Process Strengthening Your Enterprise Risk Management Process Belinda Mumma, Senior Consultant, Enterprise Risk Management Services bmumma@sollievo.com (866) 605-5664 x3400 Discussion Topics Definition of Enterprise

More information

ISACA. The recognized global leader in IT governance, control, security and assurance

ISACA. The recognized global leader in IT governance, control, security and assurance ISACA The recognized global leader in IT governance, control, security and assurance High-level session overview 1. CRISC background information 2. Part I The Big Picture CRISC Background information About

More information

Enterprise Risk Management: Developing a Model for Organizational Success. White Paper

Enterprise Risk Management: Developing a Model for Organizational Success. White Paper Enterprise Risk Management: Developing a Model for Organizational Success White Paper January 2009 Overview Less than a decade ago, Enterprise Risk Management (ERM) was an unfamiliar concept. Today, the

More information

UNIVERSITY OF COLORADO DEPARTMENT OF INTERNAL AUDIT 2018 AUDIT PLAN As of June 1, 2017

UNIVERSITY OF COLORADO DEPARTMENT OF INTERNAL AUDIT 2018 AUDIT PLAN As of June 1, 2017 UNIVERSITY OF COLORADO DEPARTMENT OF INTERNAL AUDIT 2018 AUDIT PLAN As of June 1, 2017 Table of Contents I. Purpose 1 II. Internal Audit s Role, Objectives and Operational Strategy 1 III. Challenges and

More information

Catching Fraud During a Recession Through Superior Internal Controls. FICPA s 25 th Annual Accounting Show. J. Stephen Nouss September 29, 2010

Catching Fraud During a Recession Through Superior Internal Controls. FICPA s 25 th Annual Accounting Show. J. Stephen Nouss September 29, 2010 Catching Fraud During a Recession Through Superior Internal Controls FICPA s 25 th Annual Accounting Show J. Stephen Nouss September 29, 2010 1 Session Objectives Fraud Facts (2008 Association of Certified

More information

CSR / Sustainability Governance and Management Assessment By Coro Strandberg President, Strandberg Consulting

CSR / Sustainability Governance and Management Assessment By Coro Strandberg President, Strandberg Consulting Introduction CSR / Sustainability Governance and Management Assessment By Coro Strandberg President, Strandberg Consulting www.corostrandberg.com November 2015 Companies which adopt CSR or sustainability

More information

More than 2000 organizations use our ERM solution

More than 2000 organizations use our ERM solution 5 STEPS TOWARDS AN ACTIONABLE RISK APPETITE Contents New Defining Pressures Risk Appetite and Risk Tolerance Benefits The 5 Best of Practices Risk Assessments Benefits of an Actionable Risk Appetite More

More information

Fraud Risk Management

Fraud Risk Management Fraud Risk Management Fraud Risk Management Overview 2017 Association of Certified Fraud Examiners, Inc. Discussion Questions 1. Does your organization follow a specific risk management model? If so, which

More information

The Future of Internal Auditing:

The Future of Internal Auditing: Internal Audit The Future of Internal Auditing: Changing Internal Audit s Value Proposition October 12, 2010 Istanbul, Turkey Presented by: Naman Parekh Partner, Agenda Background of the 2012 Study Key

More information

ERM: Risk Maps and Registers. Performing an ISO Risk Assessment

ERM: Risk Maps and Registers. Performing an ISO Risk Assessment ERM: Risk Maps and Registers Performing an ISO 31000 Risk Assessment Agenda Following a Standard? Framework First Performing a Risk Assessment Assigning Risk Ownership Data Management Questions? Following

More information

Levers of Organizational Change

Levers of Organizational Change Levers of Organizational Change 2 The Impact of Performance Management and First-Line Leaders: On Culture and Organizational Change Overcoming the Barriers Organizations, regardless of institutional size

More information

Risk Intelligent Enterprise Risk Management (ERM) Dolores Atallo-Hazelgreen, Firm Director

Risk Intelligent Enterprise Risk Management (ERM) Dolores Atallo-Hazelgreen, Firm Director Risk Intelligent Enterprise Risk Management (ERM) Dolores Atallo-Hazelgreen, Firm Director March, 2010 Today s Agenda In the Spotlight More Than 15 Minutes of Fame Marketplace Perspective Deloitte Global

More information

IT Audit at Brown. A collaboration between the Information Technology and Internal Audit Teams

IT Audit at Brown. A collaboration between the Information Technology and Internal Audit Teams IT Audit at Brown A collaboration between the Information Technology and Internal Audit Teams Page 1 Agenda Objective Risk Management Overview Internal Audit at Brown IT Audit at Brown Frequently Asked

More information

DeVry Approach to ERM

DeVry Approach to ERM IIA Chicago Chapter 53 rd Annual Seminar April 15, 2013, Donald E. Stephens Convention Center @IIAChicago DeVry Approach to ERM Elizabeth Truelove McDermott, CPA Vice President, Audit, Ethics & Compliance

More information

AUDITING. Auditing PAGE 1

AUDITING. Auditing PAGE 1 AUDITING Auditing 1. Professionalism The International Professional Practices Framework (IPPF) is the conceptual framework that organizes authoritative guidance promulgated by The Institute of Internal

More information

Post: Head of Standards Governance Department/Region: Science and Standards Location: London Purpose of post:

Post: Head of Standards Governance Department/Region: Science and Standards Location: London Purpose of post: Marine Stewardship Council Job Description Post: Head of Standards Governance Department/Region: Science and Standards Location: London Purpose of post: Underpinning and integral to the MSC work and its

More information

Integrated Planning and Institutional Effectiveness: Improvement and Renewal

Integrated Planning and Institutional Effectiveness: Improvement and Renewal T H E U N I V E R S I T Y O F S C R A N T O N Integrated Planning and Institutional Effectiveness: Improvement and Renewal at The University of Scranton S C R A N T O N. Office of Planning & Institutional

More information

Sarbanes-Oxley Act of 2002 Can private businesses benefit from it?

Sarbanes-Oxley Act of 2002 Can private businesses benefit from it? Sarbanes-Oxley Act of 2002 Can private businesses benefit from it? As used in this document, Deloitte means Deloitte Tax LLP, which provides tax services; Deloitte & Touche LLP, which provides assurance

More information

THE ENTERPRISE AND RISK MANAGEMENT POLICY

THE ENTERPRISE AND RISK MANAGEMENT POLICY Appendix 10 THE ENTERPRISE AND RISK MANAGEMENT POLICY 1. INTRODUCTION The Manila Water Company, Inc. (Manila Water) operates in a regulated and dynamic business environment where uncertainties, both detrimental

More information

Enterprise Risk Management Demystified

Enterprise Risk Management Demystified Enterprise Risk Management Demystified Charles W. Soucy, CPCU, CLU, ARM Joe C. Underwood, CPCU, ARM, AIC October 27, 2010 Agenda 1. What is it? A formal definition of ERM How it s different 2. Why do it?

More information

Taking ERM to a. 6 GRC Today / October 2015

Taking ERM to a. 6 GRC Today / October 2015 GLOBAL SCALE 6 GRC Today / October 2015 Global Scale lobal events highlighted by G business scandals, failures, information theft, and natural disasters have shone the spotlight yet again on risk management

More information

Enterprise Risk Management Handbook. June, 2010

Enterprise Risk Management Handbook. June, 2010 Enterprise Risk Management Handbook June, 2010 Table of Contents Overview... 4 What is Enterprise Risk Management?... 5 Why Undertake Enterprise Risk Management?... 6 Draft UW System ERM Vision, Mission,

More information

Advisory on UNESCO s Enterprise Risk Management. Internal Oversight Service Audit Section. IOS/AUD/2016/05 Original: English.

Advisory on UNESCO s Enterprise Risk Management. Internal Oversight Service Audit Section. IOS/AUD/2016/05 Original: English. Internal Oversight Service Audit Section IOS/AUD/2016/05 Original: English Advisory on UNESCO s Enterprise Risk Management July 2016 Auditors: Sameer Pise Dawn Clemitson Christian Muco EXECUTIVE SUMMARY

More information

Caribbean Association of Audit Committee Members Inc. Independent Quality Assurance Assessment of the Internal Audit function

Caribbean Association of Audit Committee Members Inc. Independent Quality Assurance Assessment of the Internal Audit function www.pwc.com/bb Caribbean Association of Audit Committee Members Inc. Independent Quality Assurance Assessment of the Internal Audit function Strengthening the Performance and Influence of the Audit Committee

More information

Practice Guide. Developing the Internal Audit Strategic Plan

Practice Guide. Developing the Internal Audit Strategic Plan Practice Guide Developing the Internal Audit Strategic Plan JUly 2012 Table of Contents Executive Summary... 1 Introduction... 2 Strategic Plan Definition and Development... 2 Review of Strategic Plan...

More information

Developing an Integrated Anti-Fraud, Compliance, and Ethics Program

Developing an Integrated Anti-Fraud, Compliance, and Ethics Program Developing an Integrated Anti-Fraud, Compliance, and Ethics Program Establishing an Effective Anti-Fraud, Compliance, and Ethics Function 2018 Association of Certified Fraud Examiners, Inc. Discussion

More information

Business Planning and Governance for Corporate Training

Business Planning and Governance for Corporate Training Business Planning and Governance for Corporate Training Josh Bersin Principal Analyst May 2008 This report has been excerpted from The High-Impact Learning Organization: WhatWorks in the Management, Governance

More information

Enterprise risk management Protecting and enhancing value Advisory

Enterprise risk management Protecting and enhancing value Advisory Enterprise risk management Protecting and enhancing value Advisory October 2016 kpmg.co.za 2016 KPMG Services (Pty) Ltd, a South African company and a member firm of the KPMG network of independent member

More information

Enterprise Risk Management, Compliance, and Management Advisory Services: An Integrated Approach. SCCE s Higher Education Compliance Conference

Enterprise Risk Management, Compliance, and Management Advisory Services: An Integrated Approach. SCCE s Higher Education Compliance Conference Enterprise Risk Management, Compliance, and Management Advisory Services: An Integrated Approach SCCE s Higher Education Compliance Conference June 13, 2011 Objectives Implementing Enterprise Risk Management

More information

This charter defines the purpose, authority and responsibility of News Corporation s (the Company ) Corporate Audit Department.

This charter defines the purpose, authority and responsibility of News Corporation s (the Company ) Corporate Audit Department. CORPORATE AUDIT DEPARTMENT CHARTER PURPOSE This charter defines the purpose, authority and responsibility of News Corporation s (the Company ) Corporate Audit Department. The Institute of Internal Auditors

More information

Agenda. Enterprise Risk Management Defined. The Intersection of Enterprise-wide Risk Management (ERM) and Business Continuity Management (BCM)

Agenda. Enterprise Risk Management Defined. The Intersection of Enterprise-wide Risk Management (ERM) and Business Continuity Management (BCM) The Intersection of Enterprise-wide Risk (ERM) and Business Continuity (BCM) Marc Dominus 2005 Protiviti Inc. EOE Agenda Terminology and Process Introductions ERM Process Overview BCM Process Overview

More information

Risk Appetite Framework Linking Risk to Strategy Joseph A. Iraci Managing Director, TD Ameritrade

Risk Appetite Framework Linking Risk to Strategy Joseph A. Iraci Managing Director, TD Ameritrade Risk Appetite Framework Linking Risk to Strategy Joseph A. Iraci Managing Director, TD Ameritrade All Comments Presented Here and Discussed Represent the View of the Speaker and Are Not Necessarily the

More information

Enterprise Risk Management: Aligning Risk with Strategy & Performance June 26, :45 p.m. 4:45 p.m.

Enterprise Risk Management: Aligning Risk with Strategy & Performance June 26, :45 p.m. 4:45 p.m. Enterprise Risk Management: Aligning Risk with Strategy & Performance June 26, 2017 3:45 p.m. 4:45 p.m. Presented by: Marc Winkler Director P&G Associates 646 Highway 18 East Brunswick, NJ 08816 P: 877-651-1700

More information

Internal audit strategic planning Making internal audit s vision a reality during a period of rapid transformation

Internal audit strategic planning Making internal audit s vision a reality during a period of rapid transformation 2015 State of the Internal Audit Profession Study Internal audit strategic planning Making internal audit s vision a reality during a period of rapid transformation 68% of companies have gone through or

More information

INFORMATION TECHNOLOGY SERVICES. KEY PRIORITIES for CSU Information Technology In support of Graduation Initiative 2025

INFORMATION TECHNOLOGY SERVICES. KEY PRIORITIES for CSU Information Technology In support of Graduation Initiative 2025 INFORMATION TECHNOLOGY SERVICES KEY PRIORITIES for CSU Information Technology In support of Graduation Initiative 2025 September 2017 INTRODUCTION The California State University recently embarked on the

More information

ICMA PRACTICES FOR EFFECTIVE LOCAL GOVERNMENT LEADERSHIP Approved by the ICMA Executive Board June 2017; effective November 2017

ICMA PRACTICES FOR EFFECTIVE LOCAL GOVERNMENT LEADERSHIP Approved by the ICMA Executive Board June 2017; effective November 2017 Reorganization The Credentialing Advisory Board proposed, and the Leadership Advisory and Executive Boards agreed, that the ICMA Practices should be organized as a narrative rather than a list. The following

More information

Strengthening Control and integrity: A Checklist for government Managers

Strengthening Control and integrity: A Checklist for government Managers Forum: Analytics and Risk Management Tools for Making Better Decisions Strengthening Control and integrity: A Checklist for government Managers By James A. Bailey The next contribution is based on a Center

More information

Portfolio Management Professional (PfMP)

Portfolio Management Professional (PfMP) Portfolio Management Professional (PfMP) E X A M I N AT I O N CO N T E N T O U T L I N E Project Management Institute Portfolio Management Professional (PfMP) Examination Content Outline Published by:

More information

Managing Successful Programmes 2011 Glossary of Terms and Definitions

Managing Successful Programmes 2011 Glossary of Terms and Definitions Version 2, November 2011 This glossary: is subject to terms and conditions agreed to by downloading the glossary, uses international English which has been adopted to reflect and facilitate the international

More information

DIRECTOR TRAINING AND QUALIFICATIONS: SAMPLE SELF-ASSESSMENT TOOL February 2015

DIRECTOR TRAINING AND QUALIFICATIONS: SAMPLE SELF-ASSESSMENT TOOL February 2015 DIRECTOR TRAINING AND QUALIFICATIONS: SAMPLE SELF-ASSESSMENT TOOL February 2015 DIRECTOR TRAINING AND QUALIFICATIONS SAMPLE SELF-ASSESSMENT TOOL INTRODUCTION The purpose of this tool is to help determine

More information

COMPETENCIES AND SKILLS REQUIRED FOR CERTIFICATION IN EDUCATIONAL LEADERSHIP IN FLORIDA, Fourth Edition 2012

COMPETENCIES AND SKILLS REQUIRED FOR CERTIFICATION IN EDUCATIONAL LEADERSHIP IN FLORIDA, Fourth Edition 2012 COMPETENCIES AND SKILLS REQUIRED FOR CERTIFICATION IN EDUCATIONAL LEADERSHIP IN FLORIDA, Fourth Edition 2012 Florida Department of Education http://www.fldoe.org/asp/fele/default.asp Developed, produced,

More information

Critical Success Factor in ERM Implementation

Critical Success Factor in ERM Implementation Critical Success Factor in ERM Implementation Mohd Shahari Idris 4 th & 5 th June 2014, Mandarin Oriental Hotel, KL Integrating Risk and Objectives VISION MISSION STRATEGY MAP ENTERPRISE RISK MANAGEMENT

More information

Clarifying the Role of. Enterprise Risk Management

Clarifying the Role of. Enterprise Risk Management Clarifying the Role of Enterprise Risk Management Introductions/Opening Remarks Speakers: Doug Webster, Director, Risk Officer, US Agency for International Development Mike Wetklow, Deputy CFO, National

More information

Inside of a ring or out, ain t nothing wrong with going down. It s staying down that s wrong. Muhammad Ali

Inside of a ring or out, ain t nothing wrong with going down. It s staying down that s wrong. Muhammad Ali MANAGING OPERATIONAL RISK IN THE 21 ST CENTURY White Paper Series Inside of a ring or out, ain t nothing wrong with going down. It s staying down that s wrong. Muhammad Ali 2 In today s competitive and

More information

A Risk Management Framework for the CGIAR System

A Risk Management Framework for the CGIAR System Agenda Item 10 For Decision Issued: 25 October 2017 A Risk Management Framework for the CGIAR System Purpose Building on core principles presented at SC4 for early input, this paper summarizes the main

More information

METROPOLITAN TRANSPORTATION AUTHORITY

METROPOLITAN TRANSPORTATION AUTHORITY ENTERPRISE RISK MANAGEMENT AND INTERNAL CONTROL GUIDELINES Pursuant to Public Authorities Law Section 2931 Adopted by the Board on November 16, 2016 These guidelines apply to the Metropolitan Transportation

More information

A Risk Practitioners Guide to ISO 31000: 2018

A Risk Practitioners Guide to ISO 31000: 2018 A Risk Practitioners Guide to ISO 31000: 2018 Review of the 2018 version of the ISO 31000 risk management guidelines and commentary on the use of this standard by risk professionals 1 A Risk Practitioners

More information

Public Engagement with Research

Public Engagement with Research University of Oxford Public Engagement with Research Strategic Plan 1.0 Preamble The purpose of this Plan is two-fold: 1.1 to frame an ambitious vision for Public Engagement with Research at Oxford; 1.2

More information

Practitioners Network for Large Landscape Conservation Organizational Charter

Practitioners Network for Large Landscape Conservation Organizational Charter Practitioners Network for Large Landscape Conservation Organizational Charter Last updated: December 7, 2015 1. Scope and Objectives The Practitioners Network ( Network ) is an alliance of individuals

More information

Beginning a Business Sustainability Plan

Beginning a Business Sustainability Plan Beginning a Business Sustainability Plan NYS Pollution Prevention Institute Anahita Williamson Director Michelle Butler Senior Engineer Trish Donohue Senior Engineer Sustainable Supply Chain & Technology,

More information

IMPLEMENT A PIPELINE SMS

IMPLEMENT A PIPELINE SMS GROUP HOW TO IMPLEMENT A PIPELINE SMS AN INTRODUCTORY GUIDE WITH IMPLEMENTATION SUGGESTIONS AND STRATEGIES 3 2 YOUR GUIDE TO IMPLEMENTATION. An Introductory Guide on How to Implement Pipeline SMS Implementing

More information

A New Framework for Risk Management

A New Framework for Risk Management A New Framework for Risk Management JOHN MCLAUGHLIN, MANAGING DIRECTOR, ARTHUR J. GALLAGHER & CO. Traditional Risk Management Without guidance an organization s risk strategy will be made and repeatedly

More information

Finance Division. Strategic Plan

Finance Division. Strategic Plan Finance Division Strategic Plan 2014-2019 Introduction FINANCE DIVISION The Finance Division of Carnegie Mellon University (CMU) provides financial management, enterprise planning and stewardship in support

More information

RSA ARCHER MATURITY MODEL: AUDIT MANAGEMENT

RSA ARCHER MATURITY MODEL: AUDIT MANAGEMENT RSA ARCHER MATURITY MODEL: AUDIT MANAGEMENT OVERVIEW Internal Audit (IA) plays a critical role in mitigating the risks an organization faces. Audit must do so in a world of increasing risks and compliance

More information

The New Engagement: A Bold Statement of Colliding Concepts Transcending Traditional Solutions

The New Engagement: A Bold Statement of Colliding Concepts Transcending Traditional Solutions The New Engagement: A Bold Statement of Colliding Concepts Transcending Traditional Solutions North Carolina State University Office of Outreach & Engagement NC STATE UNIVERSITY VISION, MISSION, VALUES

More information

Superintendent Performance Review Survey Board of Directors

Superintendent Performance Review Survey Board of Directors AP-B-101.2.1 APPENDIX Superintendent Performance Review Survey Administrative Procedures Revised November 17, 2012 Superintendent Performance Review Survey Board of Directors The following survey is to

More information

Enterprise Risk Management Implementation Foundations and Reflections of a University Chief Risk Officer at the Five Year Milestone

Enterprise Risk Management Implementation Foundations and Reflections of a University Chief Risk Officer at the Five Year Milestone Enterprise Risk Management Implementation Foundations and Reflections of a University Chief Risk Officer at the Five Year Milestone Tim Wiseman Assistant Vice Chancellor for Enterprise Risk Management

More information

Risk Management Strategy

Risk Management Strategy Risk Management Strategy 2017-2019 Created by: Role Name Title Author / Editor Kevin McMahon Head of Risk Management & Resilience Lead Executive Margo McGurk Director of Finance & Performance Approved

More information

AUDIT UNDP ENTERPRISE RISK MANAGEMENT SYSTEM. Report No Issue Date: 4 April 2014

AUDIT UNDP ENTERPRISE RISK MANAGEMENT SYSTEM. Report No Issue Date: 4 April 2014 UNITED NATIONS DEVELOPMENT PROGRAMME AUDIT OF UNDP ENTERPRISE RISK MANAGEMENT SYSTEM Report No. 1181 Issue Date: 4 April 2014 Table of Contents Executive Summary i I. The ERM system in UNDP 1 II. Detailed

More information

Concept of Operations. Disaster Cycle Services Program Essentials DCS WC OPS PE

Concept of Operations. Disaster Cycle Services Program Essentials DCS WC OPS PE Concept of Operations Disaster Cycle Services Program Essentials DCS WC OPS PE October 2014 Change Log Date Page(s) Section Change Owner: Disaster Cycle Services 2 Change Log... 2 Introduction... 4 Purpose...

More information

EFFICIENT USE OF AUDIT COMMITTEES

EFFICIENT USE OF AUDIT COMMITTEES AGENDA EFFICIENT USE OF AUDIT COMMITTEES BRENT YOUNG, CPA JERRY GAITHER, CPA Best practices related to: Audit Committee Process Internal Audit Risk Management 2 AUDIT COMMITTEE PROCESS AND PROCEDURES Audit

More information

UNF Finance and Audit Committee January 15, 2013

UNF Finance and Audit Committee January 15, 2013 Item 7 UNF Finance and Audit Committee January 15, 2013 Issue Office of Internal Auditing Audit Planning Methodology Proposed Action Report Background Information The purpose of this item is to present

More information

Ministry of Finance Comptroller General Victoria, BC

Ministry of Finance Comptroller General Victoria, BC Ministry of Finance Comptroller General Victoria, BC Provide your strong leadership, financial aptitude, and communication skills to this integral role in the executive team The Ministry of Finance plays

More information

IT Prioritization CHARTER

IT Prioritization CHARTER IT Prioritization CHARTER VERSION: 2.0 REVISION DATE: July 22, 2013 Background In late 2012, UW-Platteville conducted an assessment of University-wide IT Prioritization, defined as the framework for decision

More information

LEVERAGING COSO ACROSS THE THREE LINES OF DEFENSE

LEVERAGING COSO ACROSS THE THREE LINES OF DEFENSE Committee of Sponsoring Organizations of the Treadway Commission Governance and Internal Control LEVERAGING COSO ACROSS THE THREE LINES OF DEFENSE By The Institute of Internal Auditors Douglas J. Anderson

More information

Executive Director Profile

Executive Director Profile Executive Director Profile February 2016 Role Summary: Reporting to the Assistant Deputy Minister 1, the primary areas of focus for the Executive Director are: Provide advice and support to the Assistant

More information

Translate stakeholder needs into strategy. Governance is about negotiating and deciding amongst different stakeholders value interests.

Translate stakeholder needs into strategy. Governance is about negotiating and deciding amongst different stakeholders value interests. Principles Principle 1 - Meeting stakeholder needs The governing body is ultimately responsible for setting the direction of the organisation and needs to account to stakeholders specifically owners or

More information

RISK MANAGEMENT FRAMEWORKS: Adapt, Don t Adopt. Here s a primer on how to use two well-known approaches.

RISK MANAGEMENT FRAMEWORKS: Adapt, Don t Adopt. Here s a primer on how to use two well-known approaches. RISK MANAGEMENT FRAMEWORKS: Adapt, Don t Adopt Here s a primer on how to use two well-known approaches. By Mark L. Frigo, CMA, CPA, and Richard J. Anderson, CPA As enterprise risk management (ERM) continues

More information

Information Technology Services Project Management Office Operations Guide

Information Technology Services Project Management Office Operations Guide Information Technology Services Project Management Office Operations Guide Revised 3/31/2015 Table of Contents ABOUT US... 4 WORKFLOW... 5 PROJECT LIFECYCLE... 6 PROJECT INITIATION... 6 PROJECT PLANNING...

More information

About the Pulse of Internal Audit

About the Pulse of Internal Audit About the Pulse of Internal Audit Number of Responses The IIA s Audit Executive Center (AEC ) has gathered insight from leaders in the CAEs 460 profession through the annual Pulse of Internal Audit survey

More information

DIVERSITY. Strategic Plan. Office of Institute Diversity. Achieving Inclusive Excellence

DIVERSITY. Strategic Plan. Office of Institute Diversity. Achieving Inclusive Excellence DIVERSITY Office of Institute Diversity Strategic Plan Achieving Inclusive Excellence From the Vice President Achieving Inclusive Excellence A Strategic Vision and Plan for the Office of Institute Diversity

More information

KENT STATE UNIVERSITY UNIVERSITY EMPLOYEE SEPARATION PLAN (UESP) STRATEGIC HIRING PROCESS OVERVIEW FY 2017

KENT STATE UNIVERSITY UNIVERSITY EMPLOYEE SEPARATION PLAN (UESP) STRATEGIC HIRING PROCESS OVERVIEW FY 2017 OBJECTIVE KENT STATE UNIVERSITY UNIVERSITY EMPLOYEE SEPARATION PLAN (UESP) STRATEGIC HIRING PROCESS OVERVIEW FY 2017 Create a UESP comprehensive strategic hiring process to: 1) optimize non-faculty personnel

More information

TOOL 8.1. HR Transformation Milestones Checklist. The RBL Group 3521 N. University Ave, Ste. 100 Provo, UT

TOOL 8.1. HR Transformation Milestones Checklist. The RBL Group 3521 N. University Ave, Ste. 100 Provo, UT HR TOOL 8.1 HR Transformation Milestones Checklist The RBL Group 3521 N. University Ave, Ste. 100 Provo, UT 84604 801.373.4238 www.hrtransformation.com TOOL 8.1 HR Transformation Milestones Checklist In

More information

A Roadmap for Developing Effective Collaborations & Partnerships to Advance the Employment of Individuals with Disabilities in the Federal Sector

A Roadmap for Developing Effective Collaborations & Partnerships to Advance the Employment of Individuals with Disabilities in the Federal Sector ADVANCING WORKFORCE DIVERSITY Employer Assistance and Resource AskEARN.org Network on Disability Inclusion ADVANCING WORKFORCE DIVERSITY nce and Resource ility Inclusion A Roadmap for Developing Effective

More information

Corporate Risk Management Audit

Corporate Risk Management Audit Corporate Risk Management Audit Office of the Chief Audit Executive Audit and Assurance Services Directorate Juin 2014 Cette publication est également disponible en français. This publication is available

More information

The 9 knowledge Areas and the 42 Processes Based on the PMBoK 4th

The 9 knowledge Areas and the 42 Processes Based on the PMBoK 4th The 9 knowledge Areas and the 42 Processes Based on the PMBoK 4th www.pmlead.net PMI, PMP, CAPM and PMBOK Guide are trademarks of the Project Management Institute, Inc. PMI has not endorsed and did not

More information

Dallas Center for Performance Excellence (CPE) Executive Summary

Dallas Center for Performance Excellence (CPE) Executive Summary Dallas Center for Performance Excellence (CPE) Executive Summary Publication Date: January 8, 2015 The Center for Performance Excellence (CPE) is a continuous improvement initiative commissioned by the

More information

International Finance Corporation

International Finance Corporation International Finance Corporation Corporate Governance and Internal Audit Overview Bob Lamm Independent Senior Advisor Center for Corporate Governance Deloitte LLP Neil White Global IA Analytics Leader

More information

IPPF Practice Guide. Assessing the Adequacy of

IPPF Practice Guide. Assessing the Adequacy of Assessing the Adequacy of Risk Management Using ISO 31000 December 2010 Table of Contents Executive Summary... 1 Introduction... 1 Risk Management in the Organization... 2 Internal Auditing and Risk Management...

More information

Ready to help lead a dynamic team that is reshaping health care shared services and how they re delivered?

Ready to help lead a dynamic team that is reshaping health care shared services and how they re delivered? Ready to help lead a dynamic team that is reshaping health care shared services and how they re delivered? Mohawk Medbuy is a national not for profit shared service organization trusted by Canadian hospitals

More information

Guidance Note: Corporate Governance - Audit Committee. March Ce document est aussi disponible en français.

Guidance Note: Corporate Governance - Audit Committee. March Ce document est aussi disponible en français. Guidance Note: Corporate Governance - Audit Committee March 2015 Ce document est aussi disponible en français. Applicability The Guidance Note: Corporate Governance Audit Committee (the Guidance Note )

More information

Project Management Overview 4/17/2013 1

Project Management Overview 4/17/2013 1 Project Management Overview 4/17/2013 1 Without Project Management 4/17/2013 2 Without Project Management 4/17/2013 3 What is a Project? A temporary and one-time endeavor undertaken to create a unique

More information

Enterprise Risk Management

Enterprise Risk Management Compliance, Audit, Risk Management and Legal Affairs Committee Enterprise Risk Management Higher Education Scorecards, Performance Based Metrics, and Faculty Compensation Alan D. Phillips Vice President

More information

Introducing ISO 22301

Introducing ISO 22301 Introducing ISO 22301 1 2 Background How was the ISO22301 formed? Contributors 3 Context 4 Source documents included BS25999-2 NFPA 1600 ASIS OR standard Singapore standards ISO 27031 ISO Guide 73 ISOPAS22399

More information

Session 7: Corporate Governance

Session 7: Corporate Governance Session 7: Corporate Governance New York Bankers Association-Community Bank Auditors Group 2016 Internal Audit Training-June 6-8, 2016 MEMBER OF ALLINIAL GLOBAL, AN ASSOCIATION OF LEGALLY INDEPENDENT FIRMS

More information

OPERATIONAL EXCELLENCE ACROSS THE ERO ENTERPRISE: Adding Value to the Compliance Monitoring and Enforcement Program

OPERATIONAL EXCELLENCE ACROSS THE ERO ENTERPRISE: Adding Value to the Compliance Monitoring and Enforcement Program OPERATIONAL EXCELLENCE ACROSS THE ERO ENTERPRISE: Adding Value to the Compliance Monitoring and Enforcement Program A Discussion Paper By the Midwest Reliability Organization I. INTRODUCTION This discussion

More information

Advisory Services Governance, Risk & Compliance

Advisory Services Governance, Risk & Compliance Advisory Services Governance, Risk & Compliance Caribbean Association of Audit Committee Members Inc. 2010 Conference Caretakers of Integrity and Accountability: The Role of Internal Audit in Corporate

More information

DEPUTY CHIEF OF POLICE RECRUITMENT PACKAGE

DEPUTY CHIEF OF POLICE RECRUITMENT PACKAGE The Bradford West Gwillimbury and the Town of Innisfil Police Services Board DEPUTY CHIEF OF POLICE RECRUITMENT PACKAGE TABLE OF CONTENTS Description Page No. Letter from the Chief of Police Designate

More information

2014 Integrated Internal Control Plan. FRCC Spring Compliance Workshop April 8-10, 2014

2014 Integrated Internal Control Plan. FRCC Spring Compliance Workshop April 8-10, 2014 2014 Integrated Internal Control Plan Contents Definitions Integrated Components of COSO Internal Control Framework The COSO Internal Control Framework and Seminole Control Environment Risk Assessment

More information

Agenda. Enterprise Risk Management Leads to Strategic Alignment and Value Creation 9/12/2013

Agenda. Enterprise Risk Management Leads to Strategic Alignment and Value Creation 9/12/2013 Enterprise Management Leads to Strategic Alignment and Value Creation Presented by: Alyssa Martin, Advisory Services Alyssa G. Martin, CPA Advisory Partner with 25 years of experience. Practice emphasis

More information

Changes Reviewed by Date. JO Technology Manager - Samer Huwwari JO Manager, Risk & Control Technology: Issa Laty. CIO, Jordan- Mohammad Aburoub

Changes Reviewed by Date. JO Technology Manager - Samer Huwwari JO Manager, Risk & Control Technology: Issa Laty. CIO, Jordan- Mohammad Aburoub Governance and Management of Information and Related Technologies Guide 2017 Revision History Changes Reviewed by Date Version Author JO Technology Manager - Samer Huwwari JO Manager, Risk & Control Technology:

More information

H U M A N R E S O U R C E S M A N A G E R

H U M A N R E S O U R C E S M A N A G E R DESCRIPTION OF WORK: H U M A N R E S O U R C E S M A N A G E R Employees in this banded class provide leadership and supervision to professional/technical staff in the delivery of a contemporary human

More information

Credit Union Social Responsibility Tool GOVERNANCE AND MANAGEMENT FOR CREDIT UNION SOCIAL RESPONSIBILITY

Credit Union Social Responsibility Tool GOVERNANCE AND MANAGEMENT FOR CREDIT UNION SOCIAL RESPONSIBILITY Credit Union Social Responsibility Tool GOVERNANCE AND MANAGEMENT FOR CREDIT UNION SOCIAL RESPONSIBILITY NOVEMBER 2011 ACKNOWLEDGEMENTS Credit Union Central of Canada (Canadian Central) would like to

More information

Tools & Techniques II: Lead Auditor

Tools & Techniques II: Lead Auditor About This Course Tools & Techniques II: Lead Auditor Course Description Learn the skills necessary to lead an audit team with confidence. This course provides an overview of the life cycle of an audit

More information

Program Management Professional (PgMP)

Program Management Professional (PgMP) Program Management Professional (PgMP) E X A M I N AT I O N CO N T E N T O U T L I N E Project Management Institute Program Management Professional (PgMP ) Examination Content Outline April 2011 Published

More information

Informed Decision Making

Informed Decision Making Informed Decision Making WHEFA Workshop March 2018 Investment advisory services are offered through CliftonLarsonAllen Wealth Advisors, LLC, an SEC-registered investment advisor. Choose Your Own Adventure

More information

LIVING IN THE REAL WORLD THE LEGAL AND INSURANCE ASPECTS OF SMS

LIVING IN THE REAL WORLD THE LEGAL AND INSURANCE ASPECTS OF SMS LIVING IN THE REAL WORLD THE LEGAL AND INSURANCE ASPECTS OF SMS Minneapolis, Minnesota August 8-9, 2017 Special Thanks Our Host: August 8-9, 2017 Panelists Risk Management Perspective Michael Yip, Vice

More information

ECQA Certified Profession. Governance SPICE Model. Internal Financial Control Assessor Training Programme

ECQA Certified Profession. Governance SPICE Model. Internal Financial Control Assessor Training Programme ECQA Certified Profession Governance SPICE Model used by the Internal Financial Control Assessor Training Programme Contact: János Ivanyos Memolux Ltd. +36 1 467403 ivanyos@memolux.hu www.training.ia-manager.org

More information

SUSTAINABILITY ACTION PLAN

SUSTAINABILITY ACTION PLAN SUSTAINABILITY ACTION PLAN 2015-2020 Sustainability and Building Excellence Strategic Principles Introduction The University is committed to acting in a socially responsible way that maximises its positive

More information

Plans for a Balanced Scorecard Approach to Information Security Metrics

Plans for a Balanced Scorecard Approach to Information Security Metrics MetriCon 3.0 Workshop Presentation Plans for a Balanced Scorecard Approach to Information Security Metrics Kevin Peuhkurinen The Great-West Life Assurance Company Background The Information Security Office

More information