Embedding Operational Risk

Size: px
Start display at page:

Download "Embedding Operational Risk"

Transcription

1 Embedding Operational Risk Banking & Payments Federation Ireland Angela Calapa, Risk & Regulatory Director

2 Areas of Challenge for Embedding Operational Risk Most banks face a significant number of challenges in bringing Operational Risk (OR) to life. Muddled and unclear accountability for operational risk Inadequate resources Failure to demonstrate the value added to the business A focus on completing the process rather than truly managing the risk Failure to appropriately understand OR risk appetite Failure to manage forward-looking view of risk Operational Risk Management Framework (ORMF) not considered by the business or during business decision making Inability to leverage the ORMF for effective management of conduct related risks Difficulty in supporting risk management with strategic and centralised technology solutions 2

3 Embedding Operational Risk Firms should use OR to run the business. Examples of embedding OR include informing decisions on business plans and change initiatives, forward-looking risk monitoring, and defining an appropriate risk culture. Risk Appetite & Forwardlooking Monitoring Strategy & Business Planning Major Change & Cost-cutting Initiatives Cultural Measurement & Behavioural Reinforcers Embedding Operational Risk Personal Scorecard, Compensation & Incentives Capital Allocation 3

4 Embedding Operational Risk 1. Strategy & Business Planning 1. Strategy & Business Planning Key areas of focus Identify and assess key operational risks to business plan Articulate inherent risk exposure against appetite to inform strategic and operational decisions e.g. new business or products, acquisitions, technology investment Undertake scenario analysis & reverse stress testing against top inherent risks for unexpected losses Strategy & Business Planning Embedding Operational Risk 4

5 Articulating Operational Risk Management Objectives Examples of articulation of ORM objectives and desired outcomes. 1. Strategy & Business Planning The type of OR and the amount the Bank is willing to accept is clearly defined and understood. OR within and / or due to products, services and operations are recognised and identified. Risk are maintained within appetite on a riskreward basis. When appetite is breached, risks are economically brought within appetite. ORM Outcomes Nature & extent of OR faced by firm is understood. The more material the risk, the deeper the understanding. The firm surveys its products, services and operations for changes in risk profile, and risk exposure is monitored vigilantly. Operational risks are owned by 1st line of defence. There is clarity on responsibility and accountability for management of operational risks. 5

6 Operational Risk Appetite & Firm Strategy Explicitly consider OR appetite throughout the business life cycle particularly during strategic planning, new product approval and performance evaluation. Division A Group Division B BU1 BU2 BU3 BU4 Financial Planning 1. Operating Business Plan 2. Strategic Business Plan 3. Budget A Firm Strategy Division C BU5 Capital Planning BU6 1. VaR Forecast 2. Economic Capital Forecast 3. Stress Scenario Analysis Capital Earnings Top down allocation of approved limits A 1. Strategy & Business Planning The Front Office explicitly considers their respective BU s appetite for operational risk during the development of the operating business plan by addressing the following questions: 1. How does the proposed budget address the operational implications of the business strategy considering: Projected growth or contraction Changes in the operational, business and/or regulatory environment 2. How does the proposed budget include consideration of potential operational constraints: Major internal and external losses Staff changes Remediation plans committed to Other projects linked to enhancing/maintaining the operating and control environment 6

7 Embedding Operational Risk 2. Risk Appetite and Forward-looking Monitoring 2. Risk Appetite and Forward-looking Monitoring Key areas of focus Monitor forward-looking risk appetite e.g. set budgeted loss Thresholds in financial forecasting, and metrics to track performance Escalate breaches of these thresholds, showing consequences for future business performance and remedial actions Risk Appetite & Forwardlooking Monitoring Embedding Operational Risk 7

8 Operational Risk Appetite Framework 2. Risk Appetite and Forward-looking Monitoring A mature framework links qualitative and quantitative measures of appetite to specific risk indicators and includes robust governance, monitoring and reporting processes. Business Objectives Strategic objectives set by the Board Top Risks Based on RCSA results and Divisional priorities Mitigation informed by risk appetite OR Appetite The level of risk the Bank is willing to tolerate/accept in the course of doing business in order to achieve its strategic goals Qualitative Statements Quantitative Measures Indicators Objective measures to evaluate risk position with respect to risk appetite Reporting & Response Framework Aggregates the firm s risk profile and supports monitoring and decision making processes Provides a methodology to impose consequences on a consistent basis Qualitative tolerance statements articulate the level at which certain types of risks (including reputational and conduct considerations) will be tolerated or accepted with linkage to some form of indicators to enable monitoring of these levels within predetermined boundaries or limits. Quantitative measures are used to evaluate risk position on a historical basis per division/ function. These loss thresholds can be calibrated against historical data (e.g. past losses by Basel II loss categories over a period of years) as well as forward looking factors (e.g. capital model and scenario analysis). Indicators can evaluate the risk position on a forward looking basis per division/ function and act as early warning indicators to enable appropriate management action to prevent a loss. Breaches of loss thresholds and indicators will be reported and linked to a Response Framework. 8

9 Operational Risk Appetite Example 2. Risk Appetite and Forward-looking Monitoring OR appetite is expressed using a combination of qualitative statements and quantitative measures and linked to existing risk indicators to enable forward-looking monitoring. Set as the annual average of losses below the Individual Material Loss Threshold Qualitative Statement Cumulative Loss Tolerance Level Individual Material Loss Threshold Example Indicators The Bank endeavours to avoid OR events arising from the following: Violations of market integrity through improper market making, manipulative book building and the application of price fraud 5m 30m Number of Front to Back office FX, IR and Price breaks % of total desks fees generated per trader % of trades booked remotely Product profitability Set as approximately the 95 th percentile of the 5 year internal loss distribution Limits are defined for each metric, and these limits are used to calculate the metric s limit utilisation which is a percentage of the metric value vs. its limit 9

10 Embedding Operational Risk Appetite OR appetite is embedded across the Group: vertically through the organisational structure with all businesses required to implement and operate as per OR policy. 1. The Board will decide the type and amount of OR the Bank is willing take for the pursuit of its business goals. It is good practice for the Board to document its appetite in the Firm s appetite statements. 2. The firm s appetite statement is then cascaded to business entities usually in the form of do s and don ts found in the Bank-wide operational policy suite. 3. Legal entities implement the policies by cascading the do s and don ts to the business lines whose responsibility is to ensure the procedures in place comply with the policies. 4. Finally, at operational level, procedure and processes are assessed as part of the self-control assessment to ensure that they contain effective controls for managing the operational risks and its sources. 2. Risk Appetite and Forward-looking Monitoring 10

11 Embedding Operational Risk 3. Major Change & Cost-cutting Initiatives 3. Major Change & Cost-cutting Initiatives Key areas of focus Assess impact of change on OR profile of the business, e.g. whether cost cutting initiatives increase or reduce OR exposure Major Change & Cost-cutting Initiatives Monitor change implementation against impact on OR profile, using defined programme stage gates Embedding Operational Risk Include senior OR management in programme approval & decision forums 11

12 3. Major Change & Cost-cutting Initiatives Principles for an Effective Change Management Process 1 st Line Ownership & Alignment to Top of House Decision Making Process Change initiatives driven centrally across the firm, by a COO function for example, can help to ensure consistency in approach, minimum risk & control standards and alignment to firm-wide strategy and objectives. Clear Governance Paths & Authorities Functions supporting the change management process should be given appropriate authority to effectively drive the change programme and provide oversight and challenge. Clear Objectives Risk & Control assessments and Post Implementation reviews should be linked back to the original objectives. Firm-wide Understanding of Risk and Control Processes Training should be driven centrally to ensure consistent understanding of fundamentals across the 3 lines of defence. Use of Available Frameworks & Metrics Classification of Change Use of existing metrics, tools and common taxonomies (e.g. for articulating risks and controls) across the firm for all risk assessment processes can support risk profile aggregation, decision making and reporting. Change initiatives classified by a risk or impact matrix can help to define the correct level of stakeholder engagement and oversight for the change programme. 12

13 New Major Change Management Process Map 3. Major Change & Cost-cutting Initiatives New Major Change Risk and Control Design & Plan Implementation Initiative Assessment Post Implementation Review 3 LOD 2 LOD 1 LOD Programme ExCo Mngmt Change Initiative Approval by Senior Management Committees Business Initiates Change Proposal Change Risk Management Process Owners Engaged and Informed of Change Initiative - Supervision and Monitoring of Progress against Agreed Objectives - Point of Escalation for Issues in Programme Delivery - Co-ordinate Risk & Control Assessment Phase - Report on Progress - Define Target State - Perform Risk & Control Assessment of Planned Change - Make Risk Appetite and Acceptance Decisions Functional Input 2 nd Line into Risk & Challenge and Control Oversight of Assessment Process - Co-Ordinate Process Design & Plans Across 1LOD and 2LOD - Report on Progress Business Process and Technical Design and Plan Formal Approval of Plan and Acceptance vs. Risk Appetite Functional Input into Design & Plan and Sign- Off 2nd Line Oversight add Challenge of Process - Co-ordinate Implementation Phase - Report on Progress - Project Close-out - Business Process Implementation - In-flight Assessment Against Plan Functional 2 nd Line Oversight Process and Challenge of Implementation Process / In-flight and Sign-Off Assessment Against Plan - Final Sign-Off - Understand Lessons Learnt which have Firm-Wide / Strategic Impact - Co-ordinate Implementation Phase - Report on Lessons Learnt from Change Management Process - Changes Accepted into BAU - Post-Implementation Review (PIR) - Understand Process-level Lessons Learnt Functional Acceptance & Post Implementation Review Internal Audit Review of Accepted/BAU Processes and Controls 13 2 nd Line Oversight and Challenge of PIR 13

14 Embedding Operational Risk 4. Capital Allocation 4. Capital Allocation Key areas of focus Distribute regulatory capital adequately and appropriately based on size and potential OR exposure Promote good business behaviours by incentivising the businesses through the use of a forward-looking OR profile Utilise operational risk loss data in a way which gives insights into the riskiness of businesses Capital Allocation Embedding Operational Risk 14

15 Implications of OR Capital Modelling Changes The objectives of the allocation approach include: Promote good business behaviours by incentivising the businesses through the use of a forwardlooking operational risk profile. Distribute regulatory capital adequately and appropriately based on size and potential operational risk exposure. Continue to utilise operational risk loss data in a way which gives insights into the riskiness of businesses. The operational capital could be allocated to the businesses via three criteria based on predetermined weightings. An example is shown below: Total OpRisk Capital 4. Capital Allocation One mechanism to incentivise businesses to proactively manage risk is through capital allocation. Forward-looking OpRisk Profile Size Indicator Historical OpRisk Losses 40% 30% 30% Typically this information is available on a monthly basis but it may be more appropriate to discuss capital allocation on a quarterly/bi-annual basis at senior management committees. 15

16 Embedding Operational Risk 5. Cultural Measurement & Behavioural Reinforcers 5. Cultural Measurement & Behavioural Reinforcers Key areas of focus Define a statement showing what the risk culture should be Include good risk management behaviour in the purpose, vision and values of the bank Use behavioural reinforcers to embed desired OR behaviours e.g. business leaders as OR champions, OR culture communicated throughout the firm Cultural Measurement & Behavioural Reinforcers Embedding Operational Risk 16

17 Measuring Proactive Culture Change 5. Cultural Measurement & Behavioural Reinforcers A proactive, client centric approach to conduct and culture helps rebuild trust in the industry rather than simply react to regulatory requirements. The programme is governed by 5 key principles: 1. Don t reinvent the wheel - align with global initiatives and leverage work already underway 2. Lead from the line - each workstream should have a business sponsor and SME workstream lead 3. Build from established foundation - leverage and build on elements of the strong positive culture that may already exist 4. Prioritise, don t do everything at once - start with the levers that engage and make the biggest impact fast 5. Play the long game - first focus on moving fast and completing quick wins before moving to the longer term formal elements of structure, policies, processes and other infrastructure HR enablers Strategy Values Organisation structure & governance Communication Measurement Infrastructure Processes & Policies 17

18 Key Benefits of Measuring Proactive Culture Change Track the Changes to Culture Reinforcers Behaviours Outcomes 5. Cultural Measurement & Behavioural Reinforcers Short term measures to determine if the programme is completing activities as planned, creating the right environment for culture Medium term measures to determine if people are displaying the desired behaviours required to meet the target culture Long term measures to determine if the target culture has been met The benefits of this approach are: Business leaders are engaged from the beginning and feel more ownership of the changes, helping to bring the rest of the business on the journey with them There is an initial focus on quick wins so that an impact is made quickly Measuring the changes on a bi-annual basis allows frequent tracking of the same measures so clear progress or issue areas can be identified Thereby the programme enhances the chances of success by gaining clear leadership buyin, engaging the business, working with and not duplicating other initiatives and tracking the progress of both the programme and culture journeys. 18

19 Embedding Operational Risk 6. Personal Scorecard, Compensation and Incentives 6. Personal Scorecard, Compensation & Incentives Key areas of focus Embed OR objectives into every employee s performance scorecard e.g. timely completion of OR training, demonstrating target behaviours Include performance against OR objectives as a key measure when setting remuneration and incentives Personal Scorecard, Compensation and Incentives Embedding Operational Risk 19

20 A Shortlist of Critical Things to Get Right 1 Having people with the right skills across the first and second line of defence 2 The right risk culture; defined, embedded into enablers and measured Demonstrably linking operational risk management & measurement to decision making, allowing management of risk rather than issues Speaking the language of the business and avoiding operational risk jargon where possible (KRIs, BEICFs, KCIs, RCSAs.) Driving consistent use of operational risk tools by the first line in running the business 6 Supported by a high quality enterprise-wide risk management framework; underpinned by a common language and component linkage 20

21 This publication has been prepared for general guidance on matters of interest only, and does not constitute professional advice. You should not act upon the information contained in this publication without obtaining specific professional advice. No representation or warranty (express or implied) is given as to the accuracy or completeness of the information contained in this publication, and, to the extent permitted by law, PricewaterhouseCoopers LLP, its members, employees and agents do not accept or assume any liability, responsibility or duty of care for any consequences of you or anyone else acting, or refraining to act, in reliance on the information contained in this publication or for any decision based on it PricewaterhouseCoopers LLP. All rights reserved. In this document, "" refers to the UK member firm, and may sometimes refer to the network. Each member firm is a separate legal entity. Please see for further details.

KEY. riskupdate PREDICTIONS FOR Risk Reward. Jan 2011

KEY. riskupdate PREDICTIONS FOR Risk Reward. Jan 2011 riskupdate Risk Reward Jan 2011 The quarterly independent risk review for banks and financial institutions worldwide 10 KEY PREDICTIONS FOR 2011 Also in this issue DO WE HAVE ANYTHING NEW SINCE 2008 TO

More information

The Value of Consulting Assuring Audit Committee & other Key Stakeholders of IA s Quality

The Value of Consulting Assuring Audit Committee & other Key Stakeholders of IA s Quality The Value of Consulting Assuring Audit Committee & other Key Stakeholders of IA s Quality Shirley Machaba Africa IA leader, SA board chairman, Africa board member, Partner In Charge Menlyn/ Pretoria office

More information

The Sector Skills Council for the Financial Services Industry. National Occupational Standards. Risk Management for the Financial Sector

The Sector Skills Council for the Financial Services Industry. National Occupational Standards. Risk Management for the Financial Sector The Sector Skills Council for the Financial Services Industry National Occupational Standards Risk Management for the Financial Sector Final version approved April 2009 IMPORTANT NOTES These National Occupational

More information

Operational Resilience Measure and Report

Operational Resilience Measure and Report Operational Resilience Measure and Report 26 Sept 2017 Lewis McKenzie Andrew Charlton Evolution of Resilience Regulation Regulatory Challenge Board accountability for critical infrastructure. Requirement

More information

GUIDANCE NOTE FOR DEPOSIT TAKERS (Class 1(1) and Class 1(2))

GUIDANCE NOTE FOR DEPOSIT TAKERS (Class 1(1) and Class 1(2)) GUIDANCE NOTE FOR DEPOSIT TAKERS (Class 1(1) and Class 1(2)) Operational Risk Management MARCH 2017 STATUS OF GUIDANCE The Isle of Man Financial Services Authority ( the Authority ) issues guidance for

More information

Increasing the Intensity and Effectiveness of Supervision

Increasing the Intensity and Effectiveness of Supervision Increasing the Intensity and Effectiveness of Supervision Consultative Document Guidance on Supervisory Interaction with Financial Institutions on Risk Culture 18 November 2013 Table of Contents Page

More information

Agenda. Enterprise Risk Management Defined. The Intersection of Enterprise-wide Risk Management (ERM) and Business Continuity Management (BCM)

Agenda. Enterprise Risk Management Defined. The Intersection of Enterprise-wide Risk Management (ERM) and Business Continuity Management (BCM) The Intersection of Enterprise-wide Risk (ERM) and Business Continuity (BCM) Marc Dominus 2005 Protiviti Inc. EOE Agenda Terminology and Process Introductions ERM Process Overview BCM Process Overview

More information

Caribbean Association of Audit Committee Members Inc. Independent Quality Assurance Assessment of the Internal Audit function

Caribbean Association of Audit Committee Members Inc. Independent Quality Assurance Assessment of the Internal Audit function www.pwc.com/bb Caribbean Association of Audit Committee Members Inc. Independent Quality Assurance Assessment of the Internal Audit function Strengthening the Performance and Influence of the Audit Committee

More information

A Discussion About Internal Controls February 2016

A Discussion About Internal Controls February 2016 A Discussion About Internal Controls February 2016 What we will cover today 001 Introductions 002 Defining Internal Controls 003 COSO Internal Controls Integrated Framework 004 Approach to Designing Internal

More information

The Agile Enterprise May 2012

The Agile Enterprise May 2012 www.pwc.com The Agile Enterprise May 2012 Contents Executive summary 2 Background 5 Understanding what drives complexity in business 6 Addressing the complexity 8 Unlocking the potential to Simplify,

More information

Transformation confidence Helping you get closer to your transformation programme

Transformation confidence Helping you get closer to your transformation programme www.pwc.com/riskassurance Transformation confidence Helping you get closer to your transformation programme The executive summary series paper No.4 Most senior executives will only ever sponsor one or

More information

Guideline. Operational Risk Management. Category: Sound Business and Financial Practices. No: E-21 Date: June 2016

Guideline. Operational Risk Management. Category: Sound Business and Financial Practices. No: E-21 Date: June 2016 Guideline Subject: Category: Sound Business and Financial Practices No: E-21 Date: June 2016 1. Purpose and Scope of the Guideline This Guideline sets out OSFI s expectations for the management of operational

More information

Rising to the challenge Delivering Internal Audit excellence

Rising to the challenge Delivering Internal Audit excellence www.pwc.co.uk Rising to the challenge Delivering Internal Audit excellence Internal Audit. Expect More. November 2016 Welcome Lindsey Paterson Scotland Internal Audit Government and Public Sector Leader

More information

CORPORATE GOVERNANCE FRAMEWORK

CORPORATE GOVERNANCE FRAMEWORK CORPORATE GOVERNANCE FRAMEWORK 1 P a g e TABLE OF CONTENTS Page 1. Introduction 3 2. Purpose 3 3. Scope 4 4. Governance Principles 4 4.1 Role Players 4 4.2 Combined Assurance 4 5. Governance Structure

More information

Human Resources and Organisational Development: Outcomes

Human Resources and Organisational Development: Outcomes 1 Aston People 2020 - Human Resources Strategy Proactively supporting Aston s 2020 Vision Contents Background Page 4 Vision Page 4 Purpose Pages 4-5 Human Resources and Organisational Development: Outcomes

More information

Translate stakeholder needs into strategy. Governance is about negotiating and deciding amongst different stakeholders value interests.

Translate stakeholder needs into strategy. Governance is about negotiating and deciding amongst different stakeholders value interests. Principles Principle 1 - Meeting stakeholder needs The governing body is ultimately responsible for setting the direction of the organisation and needs to account to stakeholders specifically owners or

More information

From Dictionary.com. Risk: Exposure to the chance of injury or loss; a hazard or dangerous chance

From Dictionary.com. Risk: Exposure to the chance of injury or loss; a hazard or dangerous chance Sharon Hale and John Argodale May 28, 2015 2 From Dictionary.com Enterprise: A project undertaken or to be undertaken, especially one that is important or difficult or that requires boldness or energy

More information

Enterprise risk management Protecting and enhancing value Advisory

Enterprise risk management Protecting and enhancing value Advisory Enterprise risk management Protecting and enhancing value Advisory July 2017 kpmg.com/cn independent member firms affiliated with KPMG International Cooperative ( KPMG International ), a Swiss entity.

More information

What s the cost of control? Keeping control of your business when cash is king

What s the cost of control? Keeping control of your business when cash is king Get up to speed Building Better Finance Functions What s the cost of control? Keeping control of your business when cash is king whatwouldyouliketochange.com 2 PricewaterhouseCoopers LLP Contents Managing

More information

Risk Management Strategy

Risk Management Strategy Risk Management Strategy 2017-2019 Created by: Role Name Title Author / Editor Kevin McMahon Head of Risk Management & Resilience Lead Executive Margo McGurk Director of Finance & Performance Approved

More information

Catching Fraud During a Recession Through Superior Internal Controls. FICPA s 25 th Annual Accounting Show. J. Stephen Nouss September 29, 2010

Catching Fraud During a Recession Through Superior Internal Controls. FICPA s 25 th Annual Accounting Show. J. Stephen Nouss September 29, 2010 Catching Fraud During a Recession Through Superior Internal Controls FICPA s 25 th Annual Accounting Show J. Stephen Nouss September 29, 2010 1 Session Objectives Fraud Facts (2008 Association of Certified

More information

Working Capital the cheapest source of cash 2017 Middle East Working Capital study

Working Capital the cheapest source of cash 2017 Middle East Working Capital study www.pwc.com Working Capital the cheapest source of cash 2017 Middle East Working Capital study Key findings Working capital performance has continued to deteriorate further across key Middle East territories

More information

Group Chief Risk Officer

Group Chief Risk Officer 165 We made excellent progress towards Group 's 2015 roadmap of high performance risk culture across the Group, as we have built robust and scalable foundations, enabling us to create value to support

More information

Unleashing the power of innovation

Unleashing the power of innovation How the role of innovation within the business and the way companies innovate are being transformed. Unleashing the power of innovation www.pwc.com 2 Unleashing the power of innovation Gauging changing

More information

IoD Code of Practice for Directors

IoD Code of Practice for Directors The Four Pillars of Governance Best Practice Institute of Directors in New Zealand (Inc). IoD Code of Practice for Directors This Code provides guidance to directors to assist them in carrying out their

More information

UK FSA Code of Practice. The relationship between supervisors and external auditors

UK FSA Code of Practice. The relationship between supervisors and external auditors www.pwc.co.uk The relationship between supervisors and external auditors Robert Konowalchuk, 30 Agenda 1. Background 2. Overview of FSA guidance 3. Benefits and challenges Slide 2 1. Background Events

More information

Charity Governance Code. Checklist for small charities UNW LLP

Charity Governance Code. Checklist for small charities UNW LLP Charity Governance Code UNW LLP Procedures in place Action required Organisational purpose: the board is clear about the charity s aims and ensures that these are being delivered effectively and sustainably

More information

Managing the payments landscape Standing still is not an option

Managing the payments landscape Standing still is not an option www.pwc.co.uk Managing the payments landscape Standing still is not an option The findings from a new PwC survey: Standing still is not an option Fast, efficient and reliable payment systems underpin the

More information

A Strategic Approach to Bank Fraud

A Strategic Approach to Bank Fraud Fraud Case Study A Strategic Approach to Bank Fraud How Banks Can Move From Reactive to Proactive Fraud Prevention and Detection Fraud prevention and detection remains one of the biggest and most pressing

More information

Generating value within the Risk Ecosystem Risk powers performance

Generating value within the Risk Ecosystem Risk powers performance Generating value within the Risk Ecosystem Risk powers performance The Risk Ecosystem Disruption and volatility are impacting today s business climate. CROs and risk executives function in a Risk Ecosystem,

More information

Integrated Reporting Taking the first steps August 2013

Integrated Reporting Taking the first steps August 2013 www.pwc.com Integrated Reporting Taking the first steps August 2013 Agenda Drivers for change Integrated reporting and the IIRC Current reporting practices Benefits of integrated reporting The path towards

More information

pwc.com.au PwC Infrastructure Advisory (Brisbane) Darren Black November 2013

pwc.com.au PwC Infrastructure Advisory (Brisbane) Darren Black November 2013 pwc.com.au Infrastructure Advisory (Brisbane) Darren Black November 2013 Discussion Points Commercial Feasibility Objectives o What is the Point of the Business Case? o Risk Development o Updated Business

More information

FSB Consultative Document - Guidance on Supervisory Interaction with Financial Institutions on Risk Culture

FSB Consultative Document - Guidance on Supervisory Interaction with Financial Institutions on Risk Culture Richard F. Chambers Certified Internal Auditor Certified Government Auditing Professional Certification in Control Self-Assessment Certification in Risk Management Assurance President and Chief Executive

More information

Bank of Ireland. Service Integration as a means to govern a multivendor. 11 th October 2013

Bank of Ireland. Service Integration as a means to govern a multivendor. 11 th October 2013 Bank of Ireland Integration as a means to govern a multivendor IT estate 11 th October 2013 Gerry Flanagan (Accenture) Sharon Donnelly (Bank of Ireland) Agenda Introductions What is Introduction and why

More information

Measuring and communicating success

Measuring and communicating success Government and the 19th Annual Global CEO Survey / 2016 Redefining success in a changing world Measuring and communicating success www.pwc.com/ceosurvey Contents Measuring and communicating success 04

More information

healthalliance Purpose, Vision and Principles

healthalliance Purpose, Vision and Principles Principles Vision Purpose Statement Planning Manager, Procurement healthalliance Purpose, Vision and Principles To be right behind better healthcare. Our role as provider of non-clinical services to the

More information

Risk consulting. Conduct risk: Aligning product, customer and value. kpmg.ie

Risk consulting. Conduct risk: Aligning product, customer and value. kpmg.ie Risk consulting Conduct risk: Aligning product, customer and value kpmg.ie Conduct risk: Aligning product, customer and value KPMG explores the challenges that the integrated Irish financial services sector

More information

The anglo american Safety way. Safety Management System Standards

The anglo american Safety way. Safety Management System Standards The anglo american Safety way Safety Management System Standards 2 The Anglo American Safety Way CONTENTS Introduction 04 Anglo American Safety Framework 05 Safety in anglo american 06 Monitoring and review

More information

5. Effective controls and risk management

5. Effective controls and risk management Capita plc 35 5. Effective controls and risk management Managing our business Our flat management structure and governance procedures promote accountability and knowledge sharing across the business. This

More information

Enterprise Risk Management: Developing a Model for Organizational Success. White Paper

Enterprise Risk Management: Developing a Model for Organizational Success. White Paper Enterprise Risk Management: Developing a Model for Organizational Success White Paper January 2009 Overview Less than a decade ago, Enterprise Risk Management (ERM) was an unfamiliar concept. Today, the

More information

IT GOVERNANCE. WITH ROBERT GOODSELL, MANAGING DIRECTOR JOE BRUTSCHE, DIRECTOR PwC. April 4, 2013

IT GOVERNANCE. WITH ROBERT GOODSELL, MANAGING DIRECTOR JOE BRUTSCHE, DIRECTOR PwC. April 4, 2013 IT GOVERNANCE WITH ROBERT GOODSELL, MANAGING DIRECTOR JOE BRUTSCHE, DIRECTOR PwC April 4, 2013 Agenda The challenge IT Governance defined IT Governance components Next steps Questions THE CHALLENGE The

More information

Is your supplier risk management keeping pace with your strategic

Is your supplier risk management keeping pace with your strategic Is your supplier risk management keeping pace with your strategic imperatives? What is the role of Internal Audit? Agenda 1. Introduction 2. What is supplier risk management? 3. What's the problem? 4.

More information

Our Corporate Strategy Information & Intelligence

Our Corporate Strategy Information & Intelligence Our Corporate Strategy Information & Intelligence May 2016 UNCLASSIFIED Information & Intelligence: Executive Summary What is our strategic approach for information & intelligence? Our decisions and actions

More information

The Future of Internal Auditing:

The Future of Internal Auditing: Internal Audit The Future of Internal Auditing: Changing Internal Audit s Value Proposition October 12, 2010 Istanbul, Turkey Presented by: Naman Parekh Partner, Agenda Background of the 2012 Study Key

More information

HR s Role in Culture Change. FTI Consulting A Case Study

HR s Role in Culture Change. FTI Consulting A Case Study HR s Role in Culture Change FTI Consulting A Case Study April 2017 Culture is as critical as strategy and organization All three must be in sync How a company wins in a market Coherent Business Strategy

More information

A Practical Approach to Enterprise Risk Management

A Practical Approach to Enterprise Risk Management A Practical Approach to Enterprise Risk Management Presented by: Amit Govil Managing Partner, P&G Associates John McIsaac President, McIsaac Risk Solutions Today s Agenda I. Defining ERM II. Implementation

More information

Governance Guideline SEPTEMBER 2013 BC CREDIT UNIONS.

Governance Guideline SEPTEMBER 2013 BC CREDIT UNIONS. Governance Guideline SEPTEMBER 2013 BC CREDIT UNIONS www.fic.gov.bc.ca INTRODUCTION The Financial Institutions Commission 1 (FICOM) holds the Board of Directors 2 (board) accountable for the stewardship

More information

Global Transfer Pricing Conference

Global Transfer Pricing Conference www.pwc.com/transferpricing Global Transfer Pricing Conference Data analytics and transformation October 2016 The new normal full TransParency Today s presenters Brian T. Burt Laurent Bellay David A. Nickson

More information

Mental Health & Wellbeing Strategy

Mental Health & Wellbeing Strategy Mental Health & Wellbeing Strategy October 2017 If this report has raised any concerns for you or someone you know, please contact Lifeline on 13 11 14 Energy Networks Australia publications can be downloaded

More information

Risk Appetite Framework Linking Risk to Strategy Joseph A. Iraci Managing Director, TD Ameritrade

Risk Appetite Framework Linking Risk to Strategy Joseph A. Iraci Managing Director, TD Ameritrade Risk Appetite Framework Linking Risk to Strategy Joseph A. Iraci Managing Director, TD Ameritrade All Comments Presented Here and Discussed Represent the View of the Speaker and Are Not Necessarily the

More information

The Roles and Obligations of NEDs in the Governance Process

The Roles and Obligations of NEDs in the Governance Process www.pwc.com The Roles and Obligations of NEDs in the Governance Process Restricted use - Actual and as proposed in CRD (IV) ensuring the best mix of Executives and non- Executive Directors MFSA Seminar

More information

Analytics: The Widening Divide

Analytics: The Widening Divide Neil Beckley, FSS Leader, IBM Growth Markets Analytics: The Widening Divide How companies are achieving competitive advantage through analytics What you will take away from this session 1 Understand Why

More information

Internal Audit Advisory

Internal Audit Advisory www.pwc.com.cy Internal Audit Advisory The PwC Internal Audit Confident and informed decision making for your third line of defence Every successful business is underpinned by robust governance and controls

More information

REVISED CORPORATE GOVERNANCE PRINCIPLES FOR BANKS (CONSULTATION PAPER) ISSUED BY THE BASEL COMMITTEE ON BANKING SUPERVISION

REVISED CORPORATE GOVERNANCE PRINCIPLES FOR BANKS (CONSULTATION PAPER) ISSUED BY THE BASEL COMMITTEE ON BANKING SUPERVISION January 9, 2015 Secretariat of the Basel Committee on Banking Supervision Bank for International Settlements CH-4002 Basel, Switzerland Submitted via http://www.bis.org/bcbs/commentupload.htm REVISED CORPORATE

More information

Cultivating a Risk Intelligent Culture A fresh perspective

Cultivating a Risk Intelligent Culture A fresh perspective Cultivating a Risk Intelligent Culture A fresh perspective October 2012 Why culture? In managing risk effectively it is important to understand what drives behaviours towards risk As the Global Financial

More information

Model risk management A practical approach for addressing common issues

Model risk management A practical approach for addressing common issues Model risk management A practical approach for addressing common issues Table of contents An overview of model risk 1 Model governance 2 Modeling standards 3 Model validation 4 Embedding a model risk culture

More information

Sarbanes-Oxley Act of 2002 Can private businesses benefit from it?

Sarbanes-Oxley Act of 2002 Can private businesses benefit from it? Sarbanes-Oxley Act of 2002 Can private businesses benefit from it? As used in this document, Deloitte means Deloitte Tax LLP, which provides tax services; Deloitte & Touche LLP, which provides assurance

More information

Policy Capability Framework. Development, insights and applications

Policy Capability Framework. Development, insights and applications Policy Capability Framework Development, insights and applications Our intent and approach The Policy Project aims to improve the performance of the policy function and the quality of policy advice across

More information

Stand out for the right reasons Getting your approach to CASS right

Stand out for the right reasons Getting your approach to CASS right www.pwc.co.uk/fsrr Stand out for the right reasons Getting your approach to CASS right Our dedicated CASS Advisory team can help you with all your client asset needs. The CASS challenges The Financial

More information

Efficient risk management. Presentation to the Interdepartmental Accounting Group 2013 conference

Efficient risk management. Presentation to the Interdepartmental Accounting Group 2013 conference Efficient risk management Presentation to the Interdepartmental Accounting Group 2013 conference Outline - Enterprise Risk Management a definition - The promise vs the reality. What s the problem? - What

More information

More than 2000 organizations use our ERM solution

More than 2000 organizations use our ERM solution 5 STEPS TOWARDS AN ACTIONABLE RISK APPETITE Contents New Defining Pressures Risk Appetite and Risk Tolerance Benefits The 5 Best of Practices Risk Assessments Benefits of an Actionable Risk Appetite More

More information

Taking ERM to a. 6 GRC Today / October 2015

Taking ERM to a. 6 GRC Today / October 2015 GLOBAL SCALE 6 GRC Today / October 2015 Global Scale lobal events highlighted by G business scandals, failures, information theft, and natural disasters have shone the spotlight yet again on risk management

More information

Turning risk into opportunity Third Party Governance & Risk Management

Turning risk into opportunity Third Party Governance & Risk Management Turning risk into opportunity Third Party Governance & Risk Management #DeloitteRA The rise of the extended enterprise Global third party ecosystems of organisations, also known as the extended enterprise

More information

Implementing Category Management for Common Goods and Services

Implementing Category Management for Common Goods and Services Implementing Category Management for Common Goods and Services Darbi Dillon Office of Federal Procurement Policy 1800 G Street NW, Washington DC 20006 Audit Tax Advisory Grant Thornton LLP 333 John Carlyle

More information

Whitepaper September Middle East Perspective State of the Internal Audit Profession 2016

Whitepaper September Middle East Perspective State of the Internal Audit Profession 2016 Whitepaper September 2016 Middle East Perspective State of the Internal Audit Profession 2016 Foreword 4 Introduction 5 Value Staying effective in a changing world 6 Leadership 5 attributes of the most

More information

Third Party Risk Management ( TPRM ) Transformation

Third Party Risk Management ( TPRM ) Transformation Third Party Risk Management ( TPRM ) Transformation September 20, 2017 Internal use only An introduction to TPRM What is a Third Party relationship? A Third Party relationship is any business arrangement

More information

Enterprise risk management Protecting and enhancing value Advisory

Enterprise risk management Protecting and enhancing value Advisory Enterprise risk management Protecting and enhancing value Advisory October 2016 kpmg.co.za 2016 KPMG Services (Pty) Ltd, a South African company and a member firm of the KPMG network of independent member

More information

Conduct risk: Aligning product, customer and value

Conduct risk: Aligning product, customer and value Conduct risk: Aligning product, customer and value May 2016 KPMG explores the challenges that the integrated Australian financial services sector faces when it comes to measuring and managing conduct risk

More information

Assessment of the effectiveness of the Audit Committee

Assessment of the effectiveness of the Audit Committee Assessment of the effectiveness of the Audit Committee We firmly believe that most benefit is to be gained from an in-depth review of all areas of Audit Committee activity, preferably facilitated by a

More information

Risk culture. Building great organisations and growing your foundation for success CAPABILITY STATEMENT 2016

Risk culture. Building great organisations and growing your foundation for success CAPABILITY STATEMENT 2016 Risk culture Building great organisations and growing your foundation for success CAPABILITY STATEMENT 2016 What the regulators are saying about risk culture 2 3 An effective risk culture guides and facilitates

More information

How can you improve your ability to identify, respond and adapt to significant operational interruptions?

How can you improve your ability to identify, respond and adapt to significant operational interruptions? How can you improve your ability to identify, respond and adapt to significant operational interruptions? Agenda I Introductions and objectives II Why is resilience important III Typical issues be aware

More information

Global investor survey on corporate reporting

Global investor survey on corporate reporting www.pwc.com Global investor survey on corporate reporting November 2017 Investors say the quality of reporting is key to their investment analysis I typically review the annual report/ 10-K/20-F of the

More information

Advisory Services Governance, Risk & Compliance

Advisory Services Governance, Risk & Compliance Advisory Services Governance, Risk & Compliance Caribbean Association of Audit Committee Members Inc. 2010 Conference Caretakers of Integrity and Accountability: The Role of Internal Audit in Corporate

More information

Internal Audit and Technology Sustainable Analytics

Internal Audit and Technology Sustainable Analytics Internal Audit and Technology Sustainable Analytics Neil While, Partner, Internal Audit Analytics Deloitte Advisory December 14, 2015 0 The Four Faces of the Chief Auditor 1 Copyright 2015 Deloitte Development

More information

BERMUDA MONETARY AUTHORITY

BERMUDA MONETARY AUTHORITY BERMUDA MONETARY AUTHORITY CORPORATE GOVERNANCE POLICY FOR TRUST (REGULATION OF TRUST BUSINESS) ACT 2001 INVESTMENT BUSINESS ACT 2003 INVESTMENT FUNDS ACT 2006 JANUARY 2014 TABLE OF CONTENTS I. INTRODUCTION...

More information

CGEIT Certification Job Practice

CGEIT Certification Job Practice CGEIT Certification Job Practice Job Practice A job practice serves as the basis for the exam and the experience requirements to earn the CGEIT certification. This job practice consists of task and knowledge

More information

June PwC s Data and Analytics Survey 2016 Big Decisions

June PwC s Data and Analytics Survey 2016 Big Decisions June 2016 PwC s Data and Analytics Survey 2016 Big Decisions Are executives using Data & Analytics to make big decisions? In May 2014, we surveyed 1,135 senior executives on the ways they were making big

More information

Fit for the Future: Innovative Global Talent Transformation

Fit for the Future: Innovative Global Talent Transformation www.pwc.com Fit for the Future: Innovative Global Talent Transformation November 2015 Challenges of today Discussion Outline Talent and performance needs Building a fit for the future talent organisation

More information

A Value Management Approach to Business Transformation

A Value Management Approach to Business Transformation A Value Management Approach to Business Transformation Chris Carter, KPMG LLP Nov 17-18, 2014 Canadian Value Symposium Toronto, Ontario A Value Management Approach to Business Transformation Understanding

More information

AVOIDING THE BLAME GAME. DRIVING COLLABORATION THROUGH EFFECTIVE SERVICE INTEGRATION AND MANAGEMENT

AVOIDING THE BLAME GAME. DRIVING COLLABORATION THROUGH EFFECTIVE SERVICE INTEGRATION AND MANAGEMENT AVOIDING THE BLAME GAME. DRIVING COLLABORATION THROUGH EFFECTIVE SERVICE INTEGRATION AND MANAGEMENT Government and commercial organisations are striving to deliver increasingly flexible and agile ICT whilst

More information

ASSURANCE FRAMEWORK. A framework to assure the Board that it is delivering the best possible service for its citizens SEPTEMBER 2010.

ASSURANCE FRAMEWORK. A framework to assure the Board that it is delivering the best possible service for its citizens SEPTEMBER 2010. ASSURANCE FRAMEWORK A framework to assure the Board that it is delivering the best possible service for its citizens SEPTEMBER 2010 V3 Draft 1 SECTION NO. ASSURANCE FRAMEWORK CONTENTS 1. INTRODUCTION 3

More information

A Risk Practitioners Guide to ISO 31000: 2018

A Risk Practitioners Guide to ISO 31000: 2018 A Risk Practitioners Guide to ISO 31000: 2018 Review of the 2018 version of the ISO 31000 risk management guidelines and commentary on the use of this standard by risk professionals 1 A Risk Practitioners

More information

An intelligent approach to unlocking value in service delivery transformation Focus on risk from the start

An intelligent approach to unlocking value in service delivery transformation Focus on risk from the start An intelligent approach to unlocking value in service delivery transformation Focus on risk from the start A proactive approach can go a long way toward mitigating many of the risks associated with service

More information

IIA South and IIA East. Assurance Mapping. 2 nd February David Alexander

IIA South and IIA East. Assurance Mapping. 2 nd February David Alexander IIA South and IIA East Assurance Mapping 2 nd February 2018 David Alexander daa.risk@gmail.com 07584 092411 TODAY S PROGRAMME Examine the benefits and pitfalls associated with assurance mapping Review

More information

The compliance investment

The compliance investment The compliance investment Realising the value of compliance through greater effectiveness, efficiency, and sustainability kpmg.com.au 2017 KPMG, an Australian partnership and a member firm of the KPMG

More information

Risk Management Strategy. Version: V3.0

Risk Management Strategy. Version: V3.0 Risk Management Strategy Version: V3.0 Date: October 2016 Classification: DCC Public Document Control (Document Control Heading) Revision History (Document Control Subtitle) Revision Date Summary of Changes

More information

CFO Perspectives CFO Speaks

CFO Perspectives CFO Speaks India CFO Newsletter August 2016 CFO Perspectives CFO Speaks Mr. Jaimin Bhatt President & Group Chief Financial Officer Kotak Mahindra Bank Limited 1. From your latest experience, what are some of the

More information

Industry 4.0: Building the digital enterprise

Industry 4.0: Building the digital enterprise www.pwc.fi Industry 4.0: Building the digital enterprise Key findings from 2016 Global Industry 4.0 Survey Finland s perspective Industry 4.0 creates the digital enterprise comprising of digitised and

More information

Building an. Effective Board

Building an. Effective Board Building an Effective Board Who we are Established in 1996, Effective Governance is now Australasia s largest and most experienced independent corporate governance consulting firm. Our mission is to deliver

More information

Improving transparency and disclosure

Improving transparency and disclosure www.pwc.com Improving transparency and disclosure Good practice reporting by portfolio companies Private Equity Reporting Group The Guidelines for Disclosure and Transparency in Private Equity March 2016

More information

UK Gender Pay Gap Report 2017

UK Gender Pay Gap Report 2017 UK Gender Pay Gap Report 2017 1 Gender Pay Gap Report 2017 At Citi, we believe diversity and inclusion at all levels of our organisation are critical to our success, and that our gender strategy sets out

More information

Enterprise Risk Management. Focus on the Future June 2017

Enterprise Risk Management. Focus on the Future June 2017 Enterprise Risk Management Focus on the Future June 2017 2017 Crowe 2017 Crowe Horwath Horwath LLP LLP Learning Objectives and Agenda Objectives Distinguish Risk Management from ERM Understand the Value

More information

International Finance Corporation

International Finance Corporation International Finance Corporation Corporate Governance and Internal Audit Overview Bob Lamm Independent Senior Advisor Center for Corporate Governance Deloitte LLP Neil White Global IA Analytics Leader

More information

THE 6 KEYS TO UNLOCKING THE POTENTIAL IN YOUR PEOPLE

THE 6 KEYS TO UNLOCKING THE POTENTIAL IN YOUR PEOPLE THE 6 KEYS TO UNLOCKING THE POTENTIAL IN YOUR PEOPLE 6 vital steps when you consider investing in training & development. A guide to the questions to ask yourself and any potential training providers before

More information

Modules for Accounting and Finance

Modules for Accounting and Finance Modules for Accounting and Finance Modules, other than Introductory modules may have pre-requisites or co-requisites (please, see module descriptions below) and a student must have undertaken and passed

More information

Director Procurement & Value Delivery

Director Procurement & Value Delivery Position Reports to Direct Reports Band Director Procurement & Value Delivery Chief Executive Heads of Procurement (3), Sustainability Officer (1), Head Procurement Operations (1), Head Clinical Engagement

More information

Job Description. Background. Date: April No. of reports: Nil. Delegated Financial Authority: (If applicable)

Job Description. Background. Date: April No. of reports: Nil. Delegated Financial Authority: (If applicable) Job Description Job Title: Management Accountant Date: April 2018 Responsible to: Location: Job Status: No. of reports: Delegated Financial Authority: (If applicable) Finance and Facilities Manager Wellington

More information

Agile leadership for change initiatives

Agile leadership for change initiatives Agile leadership for change initiatives Author Melanie Franklin Director Agile Change Management Limited Contents Introduction 3 Agile principles 3 Introduction to Agile techniques 6 Working in sprints

More information

Internal Auditors and Enterprise Risk Management (ERM) ICPAK Presentation

Internal Auditors and Enterprise Risk Management (ERM) ICPAK Presentation Internal Auditors and Enterprise Risk Management (ERM) ICPAK Presentation April 2014 Disclaimer This presentation is made by KPMG Kenya, a member firm of the KPMG network of independent firms affiliated

More information

INTERTEK GROUP PLC INTERTEK S MODERN SLAVERY STATEMENT 2017

INTERTEK GROUP PLC INTERTEK S MODERN SLAVERY STATEMENT 2017 INTERTEK GROUP PLC INTERTEK S MODERN SLAVERY STATEMENT 2017 This statement has been published in accordance with the UK s Modern Slavery Act 2015. It sets out the steps taken by Intertek Group plc and

More information