Risk Management and the Internal Audit profession Two sides of the same coin? 30 th September 2015

Size: px
Start display at page:

Download "Risk Management and the Internal Audit profession Two sides of the same coin? 30 th September 2015"

Transcription

1 Risk Management and the Internal Audit profession Two sides of the same coin? 30 th September 2015

2 Risk Management and the Internal Audit profession Two sides of the same coin? Mike Wilson Partner M: Sam Arshad Director M: Definitions Risk management; Internal Audit; and Two sides of the same coin. Roles and responsibilities Risk governance: Three lines of defence; and Potential roles of Internal Audit. Emerging themes Leading Practices in Governance, Risk and Compliance; Risk Management trends; and UK Corporate Governance Code Update. 1

3 Definition of Risk Management Risk Management (taken from the Institute of Risk Management). Risk is part of life. Avoiding all risk would result in no achievement, no progress and no reward. It is the combination of the probability of an event and its consequence. Consequences can range from to Risks: Strategic, tactical and operational. Risk management: Includes an assessment of the relative priority of risks and a rigorous approach to monitoring and controlling them. To be effective, risk management must be proportionate to the size and nature of an organisation. 2

4 Definition of Internal Audit Definition of internal auditing (Institute of Internal Audit). Independent objective assurance. Systematic, disciplined approach to evaluate and improve the effectiveness of risk management, control, and governance processes. 3

5 Definition of Two sides of the same coin If two things are two side of the same coin, they are very closely related although they seem different: Violent behaviour and deep insecurity are often two sides of the same coin. 4

6 Risk Governance: Three lines of defence Risk Governance Third line of defence Assurance providers Risk process and content monitoring Liaise with senior management and/or board; Rationalise and systematise risk assessment and governance reporting; Provide oversight; and Provide assurance that riskmanagement processes are adequate and appropriate. Risk process accountability Second line of defence Standard setters of first line Establish policy and process for risk management; Strategic link for the enterprise in terms of risk; Provide guidance and coordination; Identify enterprise trends, synergies, and opportunities for change; Liaison between third line of defence and first line of defence; and Oversight over certain risk areas (e.g., credit, market) and in terms of certain enterprise objectives (e.g., compliance with regulation). First Line of defence Business owners of risk management, control and compliance Risk content accountability Manage risks/implement actions to manage and treat risk; Comply with risk-management process; Implement risk-management processes where applicable; and Execute risk assessments and identify emerging risk. 5

7 Potential roles of Internal Audit Effectiveness and efficiency of controls Adequacy of response to new/emerging risks Effectiveness of policies & procedures Business performance Compliance with laws and regulations Shaping the future Compliance with policies & procedures Strategic support Potential roles for Internal Audit Core assurance (value preservation) Drivers of the role of Internal Audit Low Maturity of controls/environment Maturity of risk management processes Role/existence of other assurance activities High Consultancy (value creation) Other considerations Degree of independence of Internal Audit from the business How much is budgeted, and where the priorities lie 6

8 Efficiency Effectiveness Leading Practices in Governance, Risk & Compliance (GRC) Current State Effectiveness Future State Blurring of risk and control responsibilities between 1 st Line and risk and compliance functions (2 nd Line) Limited risk awareness at 1 st Line; Low risk/control experience Risk and compliance skills pertaining to new regulations are limited/unavailable Inconsistent quality of control testing and test result documentation limits leverage Maintaining EFFECTIVENESS by applying Three Lines of Defense to clarify roles/responsibilities, closing skills gap, and establishing Centers of Excellence for consistency and quality Three Lines of Defense Control Testing E.g., development of test scripts, scheduling of testing, conducting tests of controls, exception analysis, documentation of test results, etc. Skills & Learning Development Center E.g., skills tracking, skills database maintenance, facilitate development of risk and compliance curriculum, delivery of risk and compliance training, etc. Risk and compliance touch points lack coordination and planning Limited linkage of issues repositories/databases Efficiency Lack of leveraging work among risk and compliance functions due to timing Risk and compliance skills and knowledge are not tracked, corroborated (tested) and documented Improving EFFICIENCY of risk and compliance processes via Centers of Excellence, streamlined to help alleviate burden on BUs and allow focus on core responsibilities Knowledge & Data/Issues Management Center E.g., execution and distribution of knowledge, provision of standards and guidance framework, methodology, policies taxonomy reference, escalation rules, data repository / warehouse Master Calendar Planning Center E.g., coordination of risk and compliance calendars for risk assessment and controls testing to streamline touch points at 1 st Line, establishment of a Master Calendar Plan taking into account critical paths and minimum requirements, etc. 7

9 Trends in Risk Management From Governance and compliance perspective Towards Strategy and performance perspective Focused on risk categories Focused on value chains, what is at risk Single risks Interconnected view Within FY impact on liquidity and solvency Multi-year impact viability Hard controls policy, process, sanctions People-based controls behaviours 8

10 Trends in Risk Management: Connecting strategy and risk Innovating and pursuing opportunity while balancing upside and downside Financial Performance Targets Markets Risks to Strategy Acquisitions Pricing New markets New products Business model Growth profitability liquidity Leverage Propositions and Brands Clients and Channels Operating model cost Core Business Processes Operational & Technology Infrastructure Organisational Structure, Governance, Risk & Controls People and Culture Measures and Incentives External Risks Internal Risks Natural hazards Commodity prices Geopolitical events Cyber attack Regulatory violations Quality issues Technology and data events Product shortages Focus of the majority of today s risk investments and programmes is value preservation, not value creation 9

11 Trends in Risk Management: Understanding systemic risks Traditional risk map Inter-connected view 10

12 Trends in Risk Management: Risk Culture KPMG s ERM framework KPMG s Risk Culture Framework Cultural drivers Knowledge & Understanding Clarity Are rules, (risk) policies and procedures accurate, concrete and complete and do employees understand what is expected? Visibility Is the behaviour of staff consistent with the intended practices described in the policy and procedure? Belief & Commitment Involvement Do employees feel accountable for the proper use of risk policies and take ownership for the strategy of the organisation? Role Modelling Does management lead by example and display the behaviours that support riskbased decision-making Competencies & Context Practicability Do the organisation s targets correspond to the risk appetite and overall risk strategy and are employees enabled to do what is requested of them in terms of managing risks? Openness It is normal to discuss risks and is there an atmosphere of both challenge and mutual respect? Action & Determination Enforcement Are employees rewarded for responsible behaviour and is irresponsible behaviour disciplined? Improvement Are incidents and near misses evaluated to determine potential risks and do employees feel they learn from their mistakes? 11

13 UK Corporate Governance Code Update Highlights Key revisions covering: Risk management and internal control; Directors remuneration; and Shareholder engagement. New Guidance on Risk Management, Internal Control and Related Financial and Business Reporting (what was the Turnbull Guidance ). Applicable for periods beginning on or after 1 October

14 UK Corporate Governance Code Update (cont.) Risk management and internal control A robust assessment of the principal risks facing the company; and Explicit disclosure of how they are being managed or mitigated. C.2.1 The directors should confirm in the annual report that they have carried out a robust assessment of the principal risks facing the company, including those that would threaten its business model, future performance, solvency or liquidity. The directors should describe those risks and explain how they are being managed or mitigated. Expectation that the board monitors and reviews risk management and internal control systems on an ongoing basis. C.2.3 The board should monitor the company s risk management and internal control systems and, at least annually, carry out a review of their effectiveness, and report on that review in the annual report. The monitoring and review should cover all material controls, including financial, operational and compliance controls. Paragraph 40 Regular reports to the board should provide a balanced assessment of the risks and the effectiveness of the systems of risk management and internal control in managing those risks. The board should form its own view on effectiveness, based on the evidence it obtains, exercising the standard of care generally applicable to directors in the exercise of their duties. Key questions: What constitutes a robust assessment and what evidence will the directors need to support their statement? Does the principal risks disclosure need reassessing? Are they the right risks? Are the disclosures relating to the management and mitigation of the principal risks meaningful? Does the board need to reassess the scope, frequency of reporting and assurance required? Does the board have visibility over all the full universe of risk and all material controls including financial, operational and compliance? WHAT IS THE ROLE OF INTERNAL AUDIT? WHAT IS THE ROLE OF RISK? 13

15 Risk management and the Internal Audit profession Two sides of the same coin AGREE? DISAGREE? 14

16 Thank you

17 The information contained herein is of a general nature and is not intended to address the circumstances of any particular individual or entity. Although we endeavour to provide accurate and timely information, there can be no guarantee that such information is accurate as of the date it is received or that it will continue to be accurate in the future. No one should act on such information without appropriate professional advice after a thorough examination of the particular situation KPMG LLP, a UK limited liability partnership and a member firm of the KPMG network of independent member firms affiliated with KPMG International Cooperative ( KPMG International ), a Swiss entity. All rights reserved. The KPMG name, logo and cutting through complexity are registered trademarks or trademarks of KPMG International.

Enterprise Risk Management (ERM) - Impact of 2017 COSO ERM Model

Enterprise Risk Management (ERM) - Impact of 2017 COSO ERM Model Enterprise Risk Management (ERM) - Impact of 2017 COSO ERM Model Institute of Internal Auditors, Detroit Chapter Meeting February 2019 With you today Sarah Ann Moore Director Internal Audit and Enterprise

More information

Internal Auditors and Enterprise Risk Management (ERM) ICPAK Presentation

Internal Auditors and Enterprise Risk Management (ERM) ICPAK Presentation Internal Auditors and Enterprise Risk Management (ERM) ICPAK Presentation April 2014 Disclaimer This presentation is made by KPMG Kenya, a member firm of the KPMG network of independent firms affiliated

More information

Third Party Risk Management ( TPRM ) Transformation

Third Party Risk Management ( TPRM ) Transformation Third Party Risk Management ( TPRM ) Transformation September 20, 2017 Internal use only An introduction to TPRM What is a Third Party relationship? A Third Party relationship is any business arrangement

More information

Giving you clarity on your change programmes

Giving you clarity on your change programmes Giving you clarity on your change programmes Accelerated Quality Assurance (AQA) from KPMG July 2017 kpmg.com/uk Introduction to successful programmes A successful change programme... Has a clear vision

More information

Enterprise risk management Protecting and enhancing value Advisory

Enterprise risk management Protecting and enhancing value Advisory Enterprise risk management Protecting and enhancing value Advisory July 2017 kpmg.com/cn independent member firms affiliated with KPMG International Cooperative ( KPMG International ), a Swiss entity.

More information

Enterprise risk management Protecting and enhancing value Advisory

Enterprise risk management Protecting and enhancing value Advisory Enterprise risk management Protecting and enhancing value Advisory October 2016 kpmg.co.za 2016 KPMG Services (Pty) Ltd, a South African company and a member firm of the KPMG network of independent member

More information

Corporate governance for banks

Corporate governance for banks Corporate governance for banks Banks in the UAE face challenges in keeping pace with changing regulations, competitive environment and maintaining an effective governance culture. October 2017 KPMG s Corporate

More information

Financial Services Internal Audit insights. Effective Internal Audit RAISING THE BAR. May 2014

Financial Services Internal Audit insights. Effective Internal Audit RAISING THE BAR. May 2014 Financial Services Internal Audit insights Effective Internal Audit RAISING THE BAR May 2014 BACKGROUND AND CURRENT ENVIRONMENT BACKGROUND The regulatory direction been building over several years: Basel

More information

The Concept: Moving from Data Analysis to Data Analytics

The Concept: Moving from Data Analysis to Data Analytics The Concept: Moving from Data Analysis to Data Analytics May 19, 2016 1 2 Challenges: Addressing complex business demand with Data Analytics Solutions Business demands Business Analytics Data attributes

More information

Risk Culture: The Heart and Soul of Enterprise Risk Management

Risk Culture: The Heart and Soul of Enterprise Risk Management Risk Culture: The Heart and Soul of Enterprise Risk Management Philadelphia AFP Conference May 4, 2017 Edmund Green, Managing Director Risk Consulting KPMG, LLP Agenda Introductions What is Culture The

More information

KPMG Smart Controls. Putting you in control of your controls. kpmg.co.uk

KPMG Smart Controls. Putting you in control of your controls. kpmg.co.uk KPMG Smart Controls Putting you in control of your controls kpmg.co.uk KPMG Smart Controls Putting you in control of your controls Our solution for Control Testing, Assurance and Clouded by controls Many

More information

Generating value within the Risk Ecosystem Risk powers performance

Generating value within the Risk Ecosystem Risk powers performance Generating value within the Risk Ecosystem Risk powers performance The Risk Ecosystem Disruption and volatility are impacting today s business climate. CROs and risk executives function in a Risk Ecosystem,

More information

Ready for GDPR? Five steps to turn compliance into your advantage

Ready for GDPR? Five steps to turn compliance into your advantage Ready for GDPR? Five steps to turn compliance into your advantage 2017 KPMG LLP, a UK limited liability partnership and a member firm of the KPMG network of independent member firms affiliated with KPMG

More information

Audit Committee Self Assessment

Audit Committee Self Assessment Audit Committee Institute United Kingdom Audit Committee Self Assessment The audit committee should regularly assess its own effectiveness and the adequacy of its terms of reference, work plans, forums

More information

Astrus Third Party Intelligence

Astrus Third Party Intelligence Astrus Third Party Intelligence Know your risks Introducing Astrus Enhanced Due Diligence and Astrus Monitoring www.kpmg.com/uk/astrus Astrus Background information Incorporation details Activities Addresses

More information

Risk Advisory Services Developing your organisation s governance for competitive advantage

Risk Advisory Services Developing your organisation s governance for competitive advantage Advisory Services Developing your organisation s governance for competitive advantage The Deloitte Advisory Platform of Services can help you to govern your strategic plan to guide your operations measure

More information

The Current State of Risk Management Maturity for Belgian Organizations kpmg.com/be

The Current State of Risk Management Maturity for Belgian Organizations kpmg.com/be Enterprise Risk Management The Current State of Risk Management Maturity for Belgian Organizations kpmg.com/be 2 Enterprise Risk Management Table of content 1. Introduction...05 2. Takeaways...07 3. Key

More information

Powered by technology, our experts are unlocking the value of your audit. Dynamic Audit

Powered by technology, our experts are unlocking the value of your audit. Dynamic Audit Dynamic Audit Powered by technology, our experts are unlocking the value of your audit 1 Audit is evolving The world is changing. By harnessing the power of data, companies are seizing opportunities to

More information

HCCA Audit & Compliance Committee Conference. February 29-March 1, Drivers of ERM. Enterprise Risk Management in Healthcare.

HCCA Audit & Compliance Committee Conference. February 29-March 1, Drivers of ERM. Enterprise Risk Management in Healthcare. Enterprise Risk Management in Healthcare Deloitte & Touche LLP Heather Hagan, Senior Manager Nancy Perilstein, Senior Manager February 29, 2016 Discussion Items Drivers of Enterprise Risk Management (ERM)

More information

LEVERAGING ERM BEYOND COMPLIANCE. July 25, 2017

LEVERAGING ERM BEYOND COMPLIANCE. July 25, 2017 LEVERAGING ERM BEYOND COMPLIANCE July 25, 2017 Presenters Steve Menaker Shawn Dahl Adam Marshall Assurance Partner, National Manufacturing Industry Lead Principal, Risk Advisory Services Director, Risk

More information

The viability statement. Finding opportunities in the new regulatory challenge March 2015

The viability statement. Finding opportunities in the new regulatory challenge March 2015 The viability statement Finding opportunities in the new regulatory challenge March 2015 Foreword The clock is already ticking for directors of listed 1 companies with accounting periods beginning on or

More information

Creating a Risk Intelligent Enterprise: Risk governance

Creating a Risk Intelligent Enterprise: Risk governance Creating a Risk Intelligent Enterprise: Risk governance Risk governance: Overseeing risk and risk management Robust risk governance drives a consistent and coordinated approach to risk across the organization

More information

Internal audit insights High impact areas of focus

Internal audit insights High impact areas of focus 2014 Internal audit insights High impact areas of focus To be truly effective, internal audit departments should ensure that their efforts are targeted at the key risks and issues facing their business

More information

pwc.co.uk Enterprise Risk Management

pwc.co.uk Enterprise Risk Management pwc.co.uk Enterprise Risk Management Contents What s on your mind? 01 Our point of view 02 What good looks like 04 How we can help 06 What you gain 07 When to act 08 Intelligent Digital 09 What s on your

More information

Enterprise Risk Management Survey 2011

Enterprise Risk Management Survey 2011 Enterprise Risk Management Survey 2011 - A Driver of Enterprise Value in the Emerging Environment Governance, Risk and Compliance Services (GRCS) KPMG in India 6 April 2011 Neville Dumasia About this survey

More information

Product serialization and traceability mandates. kpmg.com

Product serialization and traceability mandates. kpmg.com Product serialization and traceability mandates kpmg.com 1 Product serialization and traceability mandates Increasing threats to patient safety from counterfeited, adulterated, and diverted pharmaceutical

More information

GRI s G4 Guidelines: the impact on reporting

GRI s G4 Guidelines: the impact on reporting CLIMATE CHANGE & SUSTAINABILITY KPMG International GRI s G4 Guidelines: the impact on reporting The Global Reporting Initiative (GRI) launched its fourth generation Sustainability Reporting Guidelines

More information

Emerging & disruptive technology risks

Emerging & disruptive technology risks Emerging & disruptive technology risks Shawn W. Lafferty, KPMG Partner IT Internal Audit/Risk Assurance April 2018 Why IT internal audit? find ways to overcome resource and budgetary constraints. This

More information

Insights into Mining Issue 12: Unlocking the value of D&A

Insights into Mining Issue 12: Unlocking the value of D&A Insights into Mining Issue 12: Unlocking the value of D&A Data and Analytics (D&A) increasingly shapes our world. The use of advanced analytics is enabling better and faster business decisions, which is

More information

CFOs: The catalyst for integrating strategy, risk and finance

CFOs: The catalyst for integrating strategy, risk and finance CFOs: The catalyst for integrating strategy, risk and finance July 2012 Australian resources companies have always had to contend with fluctuating commodity prices. However, the volatility of today s markets

More information

Revenue recognition and leasing

Revenue recognition and leasing Revenue recognition and leasing A private equity perspective Michael Nesta Partner, Accounting Advisory Services KPMG LLP Steve Thompson Partner, Accounting Advisory Services KPMG LLP Introduction Agenda

More information

Digital Labor Analytics

Digital Labor Analytics Digital Labor Analytics for Risk and Compliance Transformation April 2017 Digital labor analytics and technology supports the Risk and Compliance Ecosystem and the new wave of automated compliance and

More information

What is Digital Trust?

What is Digital Trust? TRUST Contents What is Digital Trust? Abacus Shopping Thank you for placing your order Your groceries will be delivered tomorrow at 9am Would you like to continue shopping? yes no Welcome Back! Click here

More information

Auditing Governance at Board level October 2017

Auditing Governance at Board level October 2017 Auditing Governance at Board level October 2017 Agenda What is Governance? Role and mandate of Internal Audit Planning Governance Considerations Risk Governance Framework Common pitfalls in assessing governance

More information

Culture: Why is it important?

Culture: Why is it important? Culture: Why is it important? I Heart Audit Conference February 24, 2017 Edmund Green, KPMG Jeff Rowland, USAA Disclaimer The contents of this presentation do not necessarily reflect any approach used

More information

Room for improvement. The KPMG Survey of Business Reporting. UK Findings. kpmg.com/betterbusinessreporting

Room for improvement. The KPMG Survey of Business Reporting. UK Findings. kpmg.com/betterbusinessreporting Room for improvement The KPMG Survey of Business Reporting UK Findings kpmg.com/betterbusinessreporting UK Findings from KPMG s Survey of Business Reporting KPMG International s Survey of Business Reporting

More information

Enterprise Risk Management in Health Care

Enterprise Risk Management in Health Care Enterprise Risk Management in Health Care Deloitte & Touche LLP Ian Waxman, Senior Manager February 23, 2015 Enterprise Risk Management Formal definition of risk: Risk is any event that can adversely affect

More information

KPMG s National Charity application form

KPMG s National Charity application form KPMG s National Charity application form Thank you for applying to be KPMG s National Charity. All applicants must use this form to complete their application. Please ensure that your responses stay within

More information

Embedding Operational Risk

Embedding Operational Risk Embedding Operational Risk Banking & Payments Federation Ireland Angela Calapa, Risk & Regulatory Director Areas of Challenge for Embedding Operational Risk Most banks face a significant number of challenges

More information

IIROC 2015 Financial Administrators Section Conference

IIROC 2015 Financial Administrators Section Conference IIROC 2015 Financial Administrators Section Conference September 11, 2015 kpmg.ca Presenters Chris Cornell KPMG Partner, Financial Services Steven Sharma KPMG Partner, Financial Services 2 Agenda Current

More information

September 9, 2016 kpmg.ca

September 9, 2016 kpmg.ca IIROC 2016 Financial Administrators Section Conference September 9, 2016 kpmg.ca Presenters The contacts at KPMG in connection with this presentation are: Chris Cornell KPMG Partner, Financial Services

More information

MANAGING RISK AT SUNCORP

MANAGING RISK AT SUNCORP SUNCORP GROUP LIMITED CORPORATE GOVERNANCE MANAGING RISK AT SUNCORP 1 MANAGING RISK AT SUNCORP Managing risk is a key contributor to Suncorp Group's success. The Board and management recognise that an

More information

Certification - Good and poor practice seen in banks

Certification - Good and poor practice seen in banks Certification - Good and poor practice seen in banks TISA SM&CR Certification starts sooner than you think 29 January 2019 Max Lewis, Director, KPMG SMCR Background & context June 2013: Parliamentary Commission

More information

Taking ERM to a. 6 GRC Today / October 2015

Taking ERM to a. 6 GRC Today / October 2015 GLOBAL SCALE 6 GRC Today / October 2015 Global Scale lobal events highlighted by G business scandals, failures, information theft, and natural disasters have shone the spotlight yet again on risk management

More information

Leveraging ERM to meet. and create business value. Management Flora Do, Senior Manager, Enterprise Risk Management

Leveraging ERM to meet. and create business value. Management Flora Do, Senior Manager, Enterprise Risk Management Leveraging ERM to meet regulatory requirements and create business value Susan Hwang, National Leader, Enterprise Risk Management Flora Do, Senior Manager, Enterprise Risk Management March 27, 2012 With

More information

KING IV IMPLEMENTATION

KING IV IMPLEMENTATION KING IV IMPLEMENTATION The board of directors implements the highest standards of corporate governance at all operations. The board understands and values long-term and ethical client relationships, and

More information

Data rich governance. Three keys to leading consumer data and information practices. kpmg.com

Data rich governance. Three keys to leading consumer data and information practices. kpmg.com Data rich governance Three keys to leading consumer data and information practices kpmg.com 2018 KPMG LLP, a Delaware limited liability partnership and the U.S. member firm of the KPMG network of independent

More information

Key TSA provisions your M&A team needs to know now

Key TSA provisions your M&A team needs to know now Key TSA provisions your M&A team needs to know now March 2018 kpmg.com 1 1 Companies are increasingly focusing on a rigorous Transition Service Agreement (TSA) as a key component in creating deal value.

More information

GRI s G4 Guidelines: the impact on reporting

GRI s G4 Guidelines: the impact on reporting CLIMATE CHANGE & SUSTAINABILITY KPMG International GRI s G4 Guidelines: the impact on reporting The Global Reporting Initiative (GRI) launched its fourth generation Sustainability Reporting Guidelines

More information

Planning to win. Deal Advisory / Australia. Driving value growth through competitive, flexible funding and supportive financing relationships.

Planning to win. Deal Advisory / Australia. Driving value growth through competitive, flexible funding and supportive financing relationships. Planning to win Deal Advisory / Australia Driving value growth through competitive, flexible funding and supportive financing relationships. Enhancing value through capital structuring and financing. /

More information

Risk Management Culture: The Linkage Between Ethics & Compliance and ERM September 14, 2009

Risk Management Culture: The Linkage Between Ethics & Compliance and ERM September 14, 2009 2009 Compliance and Ethics Institute Risk Management Culture: The Linkage Between Ethics & Compliance and ERM September 14, 2009 Table of contents Section 1 2 3 4 5 6 Learning objectives Why measure risk

More information

Corporate Governance and Financial Markets

Corporate Governance and Financial Markets Corporate Governance and Financial Markets World Congress of Accountants Istanbul, Turkey 14 November 2006 Jerry Edwards Senior Advisor on Accounting and Auditing Policy Financial Stability Forum Basel,

More information

Andrea ROSIGNOLI Partner KPMG

Andrea ROSIGNOLI Partner KPMG sponsored by THE FUTURE OF CORPORATE REPORTING AND THE ROLE OF THE INTEGRATED THINKING Andrea ROSIGNOLI Partner KPMG 1 The future of corporate reporting and integrated thinking What are the main challenges

More information

Bringing Solvency II alive in the boardroom are you doing enough?

Bringing Solvency II alive in the boardroom are you doing enough? FINANCIAL SERVICES Bringing Solvency II alive in the boardroom are you doing enough? Results and commentary from our Solvency II Board training and communications survey July 2012 kpmg.co.uk/solvencyii

More information

EY Center for Board Matters Boards and internal audit

EY Center for Board Matters Boards and internal audit EY Center for Board Matters Boards and internal audit Working together to strengthen risk management Growing demands on boards The role of the board has always been an important and demanding one, but

More information

Boards and internal audit: Working together to strengthen risk management

Boards and internal audit: Working together to strengthen risk management Boards and internal audit: Working together to strengthen risk management Growing demands on boards The role of the board has always been an important and demanding one, but today s board members face

More information

The Value of Consulting Assuring Audit Committee & other Key Stakeholders of IA s Quality

The Value of Consulting Assuring Audit Committee & other Key Stakeholders of IA s Quality The Value of Consulting Assuring Audit Committee & other Key Stakeholders of IA s Quality Shirley Machaba Africa IA leader, SA board chairman, Africa board member, Partner In Charge Menlyn/ Pretoria office

More information

<IR>: how does it fit into the UK corporate reporting landscape?

<IR>: how does it fit into the UK corporate reporting landscape? : how does it fit into the UK corporate reporting landscape? Not everything that counts, can be counted, and not everything that can be counted, counts. Albert Einstein The UK environment The International

More information

MiFID II - Product Governance

MiFID II - Product Governance MiFID II - Product Governance The product governance rules under MiFID II, including guidelines issued by ESMA, take effect from 3 January 2018. The new regime represents a fundamental change to European

More information

Lya Villasuso OECD Corporate Affairs Division Response ed to: RE: Corporate Governance and the Financial Crises

Lya Villasuso OECD Corporate Affairs Division Response  ed to: RE: Corporate Governance and the Financial Crises Richard F. Chambers Certified Internal Auditor Certification in Control Self-Assessment Certified Government Auditing Professional President April 16, 2009 Lya Villasuso OECD Corporate Affairs Division

More information

How to get the most out of your governance structures. Risk Series Paper 3

How to get the most out of your governance structures. Risk Series Paper 3 How to get the most out of your governance structures Risk Series Paper 3 How to get the most out of your governance structures Regulation and the ever complex financial world have driven forward the need

More information

AIB Group plc (Holding Company)

AIB Group plc (Holding Company) AIB Group plc (Holding Company) Board Risk Committee Terms of Reference Approved by the AIB Group plc Board on 22 February 2018 Office of the Group Company Secretary 1 (A) (B) (C) References in this document

More information

Cultivating a Risk Intelligent Culture A fresh perspective

Cultivating a Risk Intelligent Culture A fresh perspective Cultivating a Risk Intelligent Culture A fresh perspective October 2012 Why culture? In managing risk effectively it is important to understand what drives behaviours towards risk As the Global Financial

More information

THE ARCG CHARTER. Issued in March 2008

THE ARCG CHARTER. Issued in March 2008 THE ARCG CHARTER Issued in March 2008 Index Part A Internal Audit Purpose Charter Mission Independence Scope & Responsibilities Authority Accountability Standards Part B Compliance Introduction Guiding

More information

Overview of service lines

Overview of service lines KPMG European Competence Centre Overview of service lines The Institute of members conference Warwick 28th of June 2010 2010 KPMG Advisory, a Belgian civil CVBA/SCRL and a member firm of the KPMG network

More information

Sarbanes-Oxley Act of 2002 Can private businesses benefit from it?

Sarbanes-Oxley Act of 2002 Can private businesses benefit from it? Sarbanes-Oxley Act of 2002 Can private businesses benefit from it? As used in this document, Deloitte means Deloitte Tax LLP, which provides tax services; Deloitte & Touche LLP, which provides assurance

More information

Building Trust in Regulation

Building Trust in Regulation Building Trust in Regulation Presentation to the PSA Annual Conference Tim Aldrich, Associate Director, KPMG LLP (UK) 10 March, 2017 Why trust? Source: Global Trust Barometer, Edelman, 2017 2 Trust diminishing

More information

Powered by DATA+ ANALYTICS. KPMG Audit

Powered by DATA+ ANALYTICS. KPMG Audit Powered by DATA+ ANALYTICS KPMG Audit Roger O Donnell Global Head of Data & Analytics, Audit 2 Our audit takes a rigorous journey through the data At KPMG, we ve been performing audits for over 100 years,

More information

The compliance investment

The compliance investment The compliance investment Realising the value of compliance through greater effectiveness, efficiency, and sustainability kpmg.com.au 2017 KPMG, an Australian partnership and a member firm of the KPMG

More information

Stakeholders. Shareholders. Societal licence Shareholders Corporate governance. Viability. Corporate governance reform

Stakeholders. Shareholders. Societal licence Shareholders Corporate governance. Viability. Corporate governance reform The Deloitte Academy December 2017 Governance in brief Stakeholders Societal licence Shareholders Responsible business Transparency Corporate governance Viability Company purpose Audit committee Culture

More information

Risk consulting. Conduct risk: Aligning product, customer and value. kpmg.ie

Risk consulting. Conduct risk: Aligning product, customer and value. kpmg.ie Risk consulting Conduct risk: Aligning product, customer and value kpmg.ie Conduct risk: Aligning product, customer and value KPMG explores the challenges that the integrated Irish financial services sector

More information

Audit Committee Reports External Audit Effectiveness

Audit Committee Reports External Audit Effectiveness Audit Committee Reports External Audit Effectiveness The revised 2012 UK Corporate Governance Code states that a separate section of the annual report should describe the work of the audit committee in

More information

Management Capability Index India 2016 report Executive summary

Management Capability Index India 2016 report Executive summary Management Capability Index India 2016 report Executive summary September 2016 KPMG.com/in 01 About Management Capability Index survey AIMA in collaboration with KPMG presents the fourth edition of Management

More information

Environmental, social and governance (ESG) materiality assessment

Environmental, social and governance (ESG) materiality assessment Environmental, social and governance (ESG) materiality assessment August 2017 kpmg.com/nz Considering materiality leads to credible ESG disclosures The business as usual perspective provided by financial

More information

An Overview of the 2013 COSO Framework. August 2013

An Overview of the 2013 COSO Framework. August 2013 An Overview of the 2013 COSO Framework August 2013 Introduction Dean Geesler, KPMG Senior Manager Course Objectives Summarize the key changes from the 1992 Framework to the 2013 Framework including the

More information

REPORT 2015/077 INTERNAL AUDIT DIVISION

REPORT 2015/077 INTERNAL AUDIT DIVISION INTERNAL AUDIT DIVISION REPORT 2015/077 Advisory engagement to assist the International Trade Centre in its efforts to develop a risk management framework 29 July 2015 Assignment No. VE2014/350/01 CONTENTS

More information

OJK Workshop: Conduct Risk. Tuesday 9 September 2014

OJK Workshop: Conduct Risk. Tuesday 9 September 2014 OJK Workshop: Conduct Risk Tuesday 9 September 2014 Introductions Disclaimer: The information contained herein is of a general nature and is not intended to address the circumstances of any particular

More information

Stakeholders. Shareholders. Societal licence Shareholders Corporate governance. Viability. Corporate governance reform

Stakeholders. Shareholders. Societal licence Shareholders Corporate governance. Viability. Corporate governance reform The Deloitte Academy June 2018 Governance in brief Stakeholders Societal licence Shareholders Responsible business Transparency Corporate governance Viability Company purpose Audit committee Culture Strategy

More information

Positioning Internal Audit to Deliver Value

Positioning Internal Audit to Deliver Value Positioning Internal Audit to Deliver Value IIA Dallas Chapter 5th Annual Super Conference October 28, 2016 History of Internal Audit 4000 B.C Formal record-keeping systems were first instituted in the

More information

Right now! 26th Annual Insurance Conference Tuesday, November 28, kpmg.ca/insuranceconference2017

Right now! 26th Annual Insurance Conference Tuesday, November 28, kpmg.ca/insuranceconference2017 Right now! 26th Annual Insurance Conference Tuesday, November 28, 2017 kpmg.ca/insuranceconference2017 Agenda Topic IT Cost Optimization 3 Technology challenges 4 Case for change 5 Identifying the right

More information

2013 Legislative & Regulatory Landscape

2013 Legislative & Regulatory Landscape AUDIT COMMITTEE INSTITUTE 2013 Legislative & Regulatory Landscape James P. Liddy KPMG Vice Chair Audit March 28, 2013 Today s Discussion 2013 Legislative & Regulatory Landscape: Perspective from the Capital

More information

Top 5 reasons incident response is failing. kpmg.com

Top 5 reasons incident response is failing. kpmg.com Top 5 reasons incident response is failing kpmg.com b Top 5 reasons incident response is failing Introduction The Incident Response function within an organization is responsible for assessing the integrity

More information

External Quality Assessment Review of University of Florida s Office of Internal Audit

External Quality Assessment Review of University of Florida s Office of Internal Audit External Quality Assessment Review of University of Florida s Office of Internal Audit May 30, 2017 TABLE OF CONTENTS Executive Summary... 1 Objectives, Scope and Methodology... 2 Summary of Results...

More information

Appendix 2 JFSA s views on the comments submitted in English

Appendix 2 JFSA s views on the comments submitted in English Appendix 2 JFSA s views on the comments submitted in English ( ) The name of the individual legal entity is omitted in consideration of privacy. No Comments JFSA s views on comments 1. 1) General - We

More information

Group Chief Risk Officer

Group Chief Risk Officer 165 We made excellent progress towards Group 's 2015 roadmap of high performance risk culture across the Group, as we have built robust and scalable foundations, enabling us to create value to support

More information

Guideline. Operational Risk Management. Category: Sound Business and Financial Practices. No: E-21 Date: June 2016

Guideline. Operational Risk Management. Category: Sound Business and Financial Practices. No: E-21 Date: June 2016 Guideline Subject: Category: Sound Business and Financial Practices No: E-21 Date: June 2016 1. Purpose and Scope of the Guideline This Guideline sets out OSFI s expectations for the management of operational

More information

Internal audit in insurance: market issues and trends

Internal audit in insurance: market issues and trends Internal audit in insurance: market issues and trends Contents 3 Legal risk The need for clarity 5 Solvency II Pillar 3 A complex process 7 Strategic risk Be prepared 9 How EY can help 1 Insurance internal

More information

Can the public sector deliver a zero tolerance approach to corruption risk?

Can the public sector deliver a zero tolerance approach to corruption risk? Can the public sector deliver a zero tolerance approach to corruption risk? Australian Public Sector Anti-Corruption Conference November 2017 Disclaimer The presentation and accompanying slide pack are

More information

Board Evaluation Is your Board ready for SREP governance reviews? Deloitte Malta Risk Advisory - Banking

Board Evaluation Is your Board ready for SREP governance reviews? Deloitte Malta Risk Advisory - Banking Board Evaluation Is your Board ready for SREP governance reviews? Deloitte Malta Risk Advisory - Banking 00 An effective board and well functioning corporate governance structure is a crucial element to

More information

CORPORATE GOVERNANCE FRAMEWORK

CORPORATE GOVERNANCE FRAMEWORK CORPORATE GOVERNANCE FRAMEWORK 1 P a g e TABLE OF CONTENTS Page 1. Introduction 3 2. Purpose 3 3. Scope 4 4. Governance Principles 4 4.1 Role Players 4 4.2 Combined Assurance 4 5. Governance Structure

More information

FARM MANAGEMENT CONSULTING Advisory Solutions to Enhance Farm Profitability and Operations

FARM MANAGEMENT CONSULTING Advisory Solutions to Enhance Farm Profitability and Operations FARM MANAGEMENT CONSULTING Advisory Solutions to Enhance Farm Profitability and Operations OUR CORE SERVICES Introduction Management and strategic planning Farm business reviews Production economics and

More information

Enterprise Risk Management Report 2018

Enterprise Risk Management Report 2018 Enterprise Risk Management Report 2018 Introduction Setting and embedding an organisation s risk appetite is a critical function of the board. Some level of risk is inherent within all organisational activities:

More information

Accelerating your automation journey through outsourcing

Accelerating your automation journey through outsourcing 0 Automation benefits with BPO contracts Accelerating your automation journey through outsourcing How to get more from your Business Process Outsourcing contracts June 2018 kpmg.com/uk KPMG International

More information

The COSO Risk Framework: A reference for internal control? Transition from COSO I to COSO II

The COSO Risk Framework: A reference for internal control? Transition from COSO I to COSO II The COSO Risk Framework: A reference for internal control? Transition from COSO I to COSO II S P E A K E R : D O T T. FA B I O A C C A R D I C O U R S E O F B U S I N E S S A U D I T I N G U N I V E R

More information

EUROPEAN CONFEDERATION OF INSTITUTES OF INTERNAL AUDITING (IVZW)

EUROPEAN CONFEDERATION OF INSTITUTES OF INTERNAL AUDITING (IVZW) EUROPEAN CONFEDERATION OF INSTITUTES OF INTERNAL AUDITING (IVZW) Claude Cargou PRESIDENT Phil Tarling VICE PRESIDENT Head Office: c/o IIA Belgium Koningstraat 109-111, bus 5 - B-1000 Brussels (Belgium)

More information

Internal controls over financial reporting

Internal controls over financial reporting Internal controls over financial reporting Outlining a program that meets stakeholder expectations kpmg.com After showing why a company s internal controls over financial reporting (ICOFR) program may

More information

Aligning and Integrating ERM and Business Process. Federal ERM Summit September 9, :00-12:00

Aligning and Integrating ERM and Business Process. Federal ERM Summit September 9, :00-12:00 Aligning and Integrating ERM and Business Process Federal ERM Summit September 9, 2013 11:00-12:00 1 Agenda Defining Risk and ERM The ERM Value Proposition An Integrated ERM Framework Aligning ERM with

More information

Enterprise Performance Management in the Pharmaceutical Industry. kpmg.co.uk

Enterprise Performance Management in the Pharmaceutical Industry. kpmg.co.uk Enterprise Performance Management in the Pharmaceutical Industry kpmg.co.uk Are your performance management processes, metrics and tools prepared for tomorrow s strategic challenges in pharmaceuticals?

More information

Commodity & Energy Risk Management

Commodity & Energy Risk Management Commodity Introduction Organisations exposed to energy, metal, and agricultural commodity raw materials are increasingly challenged by competitive economies, volatile markets, and onerous regulatory and

More information