The 10 th Annual Management Accounting Conference

Size: px
Start display at page:

Download "The 10 th Annual Management Accounting Conference"

Transcription

1 The 10 th Annual Management Accounting Conference Navigating Risk Management Frameworks as a Management Accountant Travellers Beach Hotel and Club, Mombasa Wednesday, 26 th July 2017 Uphold. Public. Interest

2 Contents

3 Introduction Risk Management Frameworks Top 10 Risks in 2016 Contribution/ Role of Management Accountants in ERM Value Add/Benefits and Barriers Recap

4 Objectives By the end of this unit, you should be able to: Understand the various ERM Frameworks. Appreciate the Top 10 Risks in 2016 Appreciate the Role of Management Accountants in ERM Understand the Value Add/Benefits of ERM

5 CONTEXT: In today's world, change and uncertainty are constants... Dynamic IT Industry Security of confidential Information Reputation All Risk types Transparency & Accountability Labour strikes Bad press reports

6 Risk comes from not knowing what you are doing. Warren Buffet

7 Introduction to RISK The possibility that an event will occur and adversely affect the achievement of objectives Committee of Sponsoring Organizations (COSO) Enterprise Risk Management Framework The chance of something happening that will have an impact upon objectives AS/NZS 4360:1999, Risk Management Events that may have a positive impact represent opportunities

8 Recap of definition of Risk, Risk Management and RM Framework Risk : Effect of uncertainty on objectives Risk Management: Coordinated activities to direct and control an organization with regard to risk. - Aim achieve best balance of risk and opportunity and not to eliminate risk RM Framework: A set of components that provide the foundations and organizational arrangements for designing, implementing, reviewing and continually improving risk management throughout the organization. ISO

9 ENTERPRISE RISK MANAGEMENT (ERM) a process, effected by an entity's board of directors, management and other personnel, applied in strategy setting and across the enterprise, designed to identify potential events that may affect the entity, and manage risks to be within its risk appetite, to provide reasonable assurance regarding the achievement of entity objectives.. Source: COSO Enterprise Risk Management Integrated Framework 9

10 Def. of Risk Risk was defined by the International Federation of Accountants (IFAC) (1999) as uncertain future events that could influence the achievement of strategic, operational and financial objectives. Risks have traditionally been defined by management accountants in terms of the possibility of danger, loss, injury or other adverse consequences Audit Committee Guidelines

11 Two Faces of Risk

12 RISK UNIVERSE Strategic Financial Operational Compliance Definition: All risk types and categories across all business lines, functions, geographical locations and legal entities that could affect an organization. Environmental

13 RISK GOVERNANCE 5. Governance Board, Audit & Risk committee, Exec Risk Committee(s), Risk appetite 2. Risk monitoring & reporting Management reporting 4. Organisation Structure Roles and responsibilities, Risk domains, Risk Mgr, HODs, Departmental risk champions Risk identification 1. Risk Universe (All Risk Types) Risks / Opportunities Risk assessment / measurement 6. Lines of Assurance Internal/ External audit Risk Register Risk mitigation & Treatment Risk Matrix 3. Tools, resources, policies & procedures, training, risk culture, systems

14 Objectives, Risk Management and Internal Controls - Relationship Objectives Risk Management Internal Control (mitigation measures

15 RM Frameworks ISO COSO Similarity Basel III Solvency II 1. Identify 2. Assess ANZAC FSA 3. Manage 4. Monitor Objectives 15

16 Most popular frameworks COSO 16

17 Culture Goal setting ERM Life Cycle Identify and prioritize risks Confirm Evaluate next options steps Evaluate Performance Implement Internal Environment Objective Setting Event Identification Risk Assessment Risk Response Control Activities Information & Communication Monitoring

18 Components of ERM Framework.. Authority and pledge to the ERM. RISK Management policy. Mixer of ERM in the institution. Risk Assessment. Risk Response. communication and reporting. Information and Communication. Monitoring.

19 Most popular frameworks ISO

20 ISO Framework Overview The Anti Silo Approach ISO is defined as a process that provides confidence that planned objectives will be achieved within an acceptable degree of residual risk.

21 Other Frameworks (cont d) Below is a diagram of the ASNZS framework:

22 Building a RM system Initial study of risks Decision, Risk Manager Risk measurement system Responsibilities and structure Testing Active Risk Management Staff training and maintenance Feb-2001 slide 22

23 Risk Management System Can NOT Predict future Identify business opportunities Be always right! Risk Management System Can Predict loss, given event Identify most dangerous scenarios Recommend how to change risk profile Feb-2001 slide 23

24 Top 10 risks in Data Privacy 2. Cyber Security (30% - KPMG) 3. Third Party Relationships 4. Strategic Change Management (25% -KPMG) 5. Business Continuity and Disaster Recovery 6. Competitive Environment 7. Talent Management 8. Macro Economic Volatility 9. International tax Planning 10. GOVERNANCE 4

25 Treatment of Risk in Management Accounting

26 Risk Management in Accounting 1. Decision Trees:- decision making under Risk 2. Cost-Volume-Profit (CVP) Analysis: Can be used in many situations, including; performing break-even analysis (BEP=FC/SP-VC), evaluating pricing strategy, determining special order/booking acceptance or choice of sales mix Audit Committee Guidelines

27 Risk Management in Accounting (Conti.) 3. Discounted Cash Flow (DCF) Analysis Net Present Value (NPV) Internal Rate of Return (IRR) Weighted Cost of Capital (WCC) should be adjusted for Market Risk; risk free rate + a Risk Premium; The Discount Rate should include; Project risks Market risks (sales and revenue streams) Time dependent value of money 4. Budgeting: management tools to portray in quantitative terms the environment-organizational interface risk is considered in the budgeting process, budget document is risk-excluded and only considers Audit Committee Guidelines consequences of risk.

28 Risk Management in Accounting (Conti.) 5. Strategic Management Accounting: Focus on Market changes; generate Strategic Options; Rational Economic Principles: Internal Rate of Return (IRR) Net Present Value (NPV) Conventional Financial and Risk analysis {Strategic aspects in Risk Analysis} Balanced scorecard, Strategic cost management analysis and Technology roadmapping Audit Committee Guidelines

29 Value Add/ Benefits of ERM

30 Role of M/Accountants M/A shld be concerned with information used in; 1. Formulating business strategy - guidelines/procedures, 2. Planning and controlling activities, 3. Decision-making (Reports/internal & external), 4. Efficient resource usage, 5. Performance improvement and value enhancement, 6. Safeguarding tangible and intangible assets and 7. Corporate governance and internal control; 8. Integrating the Model; and 9. Training. Audit Committee Guidelines

31 Role of Accountants M/A could also; provide useful information to the BoD, risk managers and financial directors in the risk identification and risk assessment process. Audit Committee Guidelines

32 Benefits of Effective ERM Adequate policies, procedures and limits More effective communication with stakeholders on risk and return issues Fewer Surprises: Clarity on Opportunities & Threats Better management reporting Articulation of risk appetite - and embedded process to manage this Common risk language Regulatory data management Accountability and Proactive Management Adequate risk monitoring and MIS Systems integration finance and risk data Lower risk-related costs Risk based allocation of resources & Performance Management 32

33 Benefits of Effective ERM Better outcomes on corporate objectives Reduced Cash Flow Volatility (Insurance, derivatives or controls) Delivery of innovative projects Protection of reputation Better outcomes for service users 33

34 Best Practices in ERM - Results of Global 2012 ERM Survey 34

35 Best Practices in ERM Risk Institute Survey on ERM impact 35

36 Barriers to Effective ERM requirements are NOT connected to corporate strategy Leadership from the top is lacking structures are positioned as compliance Use of emotion vs. facts No clear roadmap for improvement Soft issues of behavior and attitude are ignored-focus on policy, quantification, etc. a backroom exercise / taboo subjects The silo mentality The Golden Boy Mentality Shooting the messenger Organizational confusion too many mgt improvement efforts at once RM approached like a project The scope of intensity and leadership is underestimated Past mistakes are overlooked-no corporate learning from previous risk events

37 Lest we forget. We must become the change we want to see Mahatma Gandhi (Mohandas Karamchand Gandhi 2 October January 1948)

38 Objectives By the end of this unit, you should be able to: Understand the various ERM Frameworks. Appreciate the Top 10 Risks in 2016 Appreciate the Role of Management Accountants in ERM Understand the Value Add/Benefits of ERM

39 CPA KIMEU, Jones MBA,Bcom(Hons), CISA, CPAK,FCCA

29/11/2017. Risk Management Policy

29/11/2017. Risk Management Policy 1 Purpose APA Group (APA) is Australia s leading energy infrastructure business delivering smart, reliable and safe solutions through our deep industry knowledge and interconnected infrastructure. Risk

More information

Risk Management Developing an Effective Audit Plan

Risk Management Developing an Effective Audit Plan 2013 CliftonLarsonAllen LLP Risk Management Developing an Effective Audit Plan Association of Credit Union Internal Auditors P L n L e A l n o s a r n L o t f i l C 3 1 0 2 cliftonlarsonallen.com Discussion

More information

COSO ERM: Integrating with Strategy and Performance. Michael Parkinson

COSO ERM: Integrating with Strategy and Performance. Michael Parkinson COSO ERM: Integrating with Strategy and Performance Michael Parkinson Content The COSO Frameworks Risk (Enterprise) Risk Management The COSO risk management framework A few highlights Questions for management

More information

Executive Teams and the Use of ISO in Decision Making. Scott Wightman, ARM-E National Director Gallagher ERM Practice

Executive Teams and the Use of ISO in Decision Making. Scott Wightman, ARM-E National Director Gallagher ERM Practice Executive Teams and the Use of ISO 31000 in Decision Making Scott Wightman, ARM-E National Director Gallagher ERM Practice Agenda Defining ERM Mission, Objectives and Uncertainty Governance and Risk Varying

More information

Agenda. Enterprise Risk Management Defined. The Intersection of Enterprise-wide Risk Management (ERM) and Business Continuity Management (BCM)

Agenda. Enterprise Risk Management Defined. The Intersection of Enterprise-wide Risk Management (ERM) and Business Continuity Management (BCM) The Intersection of Enterprise-wide Risk (ERM) and Business Continuity (BCM) Marc Dominus 2005 Protiviti Inc. EOE Agenda Terminology and Process Introductions ERM Process Overview BCM Process Overview

More information

Compliance, Internal Audit, and Risk Management: What do they look like at a Managed Care Plan?

Compliance, Internal Audit, and Risk Management: What do they look like at a Managed Care Plan? Compliance, Internal Audit, and Risk Management: What do they look like at a Managed Care Plan? And, other words of wisdom... Objectives: Define risk and identify where risk comes from Recognize what risk

More information

Strengthening Your Enterprise Risk Management Process

Strengthening Your Enterprise Risk Management Process Strengthening Your Enterprise Risk Management Process Belinda Mumma, Senior Consultant, Enterprise Risk Management Services bmumma@sollievo.com (866) 605-5664 x3400 Discussion Topics Definition of Enterprise

More information

Enterprise Risk Management: Developing a Model for Organizational Success. White Paper

Enterprise Risk Management: Developing a Model for Organizational Success. White Paper Enterprise Risk Management: Developing a Model for Organizational Success White Paper January 2009 Overview Less than a decade ago, Enterprise Risk Management (ERM) was an unfamiliar concept. Today, the

More information

IRM s Professional Standards in Risk Management PART 1 Consultation: Functional Standards

IRM s Professional Standards in Risk Management PART 1 Consultation: Functional Standards IRM s Professional Standards in Risk PART 1 Consultation: Functional Standards Setting standards Building capability Championing learning and development Raising the risk profession s profile Supporting

More information

Leveraging Internal Audit and Corporate Compliance for Effective Risk Management

Leveraging Internal Audit and Corporate Compliance for Effective Risk Management Leveraging Internal Audit and Corporate Compliance for Effective Risk Management April 18, 2016 Don Sinko Chief Integrity Officer Cleveland Clinic Agenda Cleveland Clinic Integrity Office Model The 3 Lines

More information

Emerging Trends in Auditing ERM COSO ERM 2017

Emerging Trends in Auditing ERM COSO ERM 2017 Emerging Trends in Auditing ERM COSO ERM 2017 AGENDA Our Agenda for today will Include; Introducing COSO ERM 2017. Organizational Bias Risk - Aware Culture Risk Portfolio View. Risk Appetite & Tolerance.

More information

2017 North American Pulse of Internal Audit. Public Sector Focus. Courageous Leadership: Instilling Confidence from Within

2017 North American Pulse of Internal Audit. Public Sector Focus. Courageous Leadership: Instilling Confidence from Within 2017 North American Pulse of Internal Audit Public Sector Focus Courageous Leadership: Instilling Confidence from Within Agenda Pulse Overview Topics Communications Not Traditionally Subject to Assurance

More information

Enterprise Risk Management at

Enterprise Risk Management at Enterprise Risk Management at John R.S. Fraser Vice President, Internal Audit & Chief Risk Officer, Hydro One Inc. February 15, 2006 for PRMIA Toronto Chapter - The Fields Institute Summary 1. Background

More information

Enterprise Risk Management Course outline

Enterprise Risk Management Course outline Enterprise Risk Management Course outline Day One: Understanding Enterprise Risk Management (ERM) What is ERM Explanation of ERM and why it is not fully understood The current economic crisis and how ERM

More information

The Current State of Risk Management Maturity for Belgian Organizations kpmg.com/be

The Current State of Risk Management Maturity for Belgian Organizations kpmg.com/be Enterprise Risk Management The Current State of Risk Management Maturity for Belgian Organizations kpmg.com/be 2 Enterprise Risk Management Table of content 1. Introduction...05 2. Takeaways...07 3. Key

More information

Enterprise Risk Management

Enterprise Risk Management BUSINESS RISK MANAGEMENT LTD Enterprise Risk Management Who should attend? Risk managers Managers and Directors responsible for the risk management function or process Senior Internal Auditors and audit

More information

Enterprise Risk Management Defined and Explained

Enterprise Risk Management Defined and Explained Enterprise Risk Management Defined and Explained Council of Engineering and Scientific Society Executives ACCESSE16 July 27, 2016 Paul Klein Managing Director Not-for-Profit Atlantic Coast Market Territory

More information

Charter for Enterprise Risk Management

Charter for Enterprise Risk Management for Enterprise Risk Management Prepared by: Shannon Sinclair Version: 1.2 Document Id: Date: Release Date TABLE OF CONTENTS TABLE OF CONTENTS... i 1. Background... 1 2. Objectives... 1 3. Scope... 2 3.1

More information

Successful ERM Program Standards. Definitions of Enterprise Risk Management (ERM)

Successful ERM Program Standards. Definitions of Enterprise Risk Management (ERM) 1 Successful ERM Program Standards Enterprise Risk Management Vendor Management Business Continuity IT GRC Internal Audit Regulatory Compliance Manager William C. Hord V.P. of Enterprise Risk Management

More information

Enterprise Risk Management Demystified

Enterprise Risk Management Demystified Enterprise Risk Management Demystified Charles W. Soucy, CPCU, CLU, ARM Joe C. Underwood, CPCU, ARM, AIC October 27, 2010 Agenda 1. What is it? A formal definition of ERM How it s different 2. Why do it?

More information

Introduction to ERM (Enterprise Risk Management)

Introduction to ERM (Enterprise Risk Management) Introduction to ERM (Enterprise Risk Management) Jonathan Burns Director of Finance for Paramount Health Care since November 2014 Relocated to NW OH from Lexington, KY Prior roles in higher education and

More information

Inside of a ring or out, ain t nothing wrong with going down. It s staying down that s wrong. Muhammad Ali

Inside of a ring or out, ain t nothing wrong with going down. It s staying down that s wrong. Muhammad Ali MANAGING OPERATIONAL RISK IN THE 21 ST CENTURY White Paper Series Inside of a ring or out, ain t nothing wrong with going down. It s staying down that s wrong. Muhammad Ali 2 In today s competitive and

More information

This policy establishes the approach to risk management at Sunshine Coast Council (Council) and outlines the guiding principles and framework.

This policy establishes the approach to risk management at Sunshine Coast Council (Council) and outlines the guiding principles and framework. Organisational policy Risk Management Policy Corporate Plan reference: Endorsed by Chief Executive Officer: Manager responsible for policy: A strong community In all our communitites, people are included,

More information

Catching Fraud During a Recession Through Superior Internal Controls. FICPA s 25 th Annual Accounting Show. J. Stephen Nouss September 29, 2010

Catching Fraud During a Recession Through Superior Internal Controls. FICPA s 25 th Annual Accounting Show. J. Stephen Nouss September 29, 2010 Catching Fraud During a Recession Through Superior Internal Controls FICPA s 25 th Annual Accounting Show J. Stephen Nouss September 29, 2010 1 Session Objectives Fraud Facts (2008 Association of Certified

More information

Tactical Implementation of Enterprise Risk Management

Tactical Implementation of Enterprise Risk Management Tactical Implementation of Enterprise Risk Management Presented by: Glen Cooper Copyright Tactical Implementation of ERM CONGRATULATIONS YOU HAVE SUCCESSFULLY MADE YOUR BUSINESS CASE AND ACHIEVED MANAGEMENT

More information

Enterprise Risk Management And Beyond. Copyright WHA Insurance

Enterprise Risk Management And Beyond. Copyright WHA Insurance Enterprise Risk Management And Beyond Copyright WHA Insurance Presented by Jeff Griffin September 18, 2018 ERM And Beyond Today s goals are: 1. What is ERM and why it s important to your organization 2.

More information

Agenda. Agenda. Definitions and Processes. Risks. Audit & ERM. Key Strategies. Conclusions ERM and Audit 1. ERM and Audit.

Agenda. Agenda. Definitions and Processes. Risks. Audit & ERM. Key Strategies. Conclusions ERM and Audit 1. ERM and Audit. Agenda 1 Agenda Definitions and Processes Risks Audit & ERM Key Strategies Conclusions 2 2017 1 ERM: Definition From Wikipedia, the free encyclopedia ERM in business includes the methods and processes

More information

DMJ Miller & Assoc., Inc. 11/10/2015. Risky Business. Risk Based Thinking A Proactive Approach

DMJ Miller & Assoc., Inc. 11/10/2015. Risky Business. Risk Based Thinking A Proactive Approach Risky Business Risk Based Thinking A Proactive Approach 11/10/2015 ISO 9001 2015-09-15 Quality Management systems - Requirements New Concepts Product Documentation Product and Services Documented Information

More information

Risk appetite and internal audit

Risk appetite and internal audit 30 April 2018 Risk appetite and internal audit Chartered Institute of Internal Auditors This guidance looks at the nature of risk appetite and how it has come to the fore following the financial crisis

More information

Understanding the Challenge and Incredible Potential of IT Governance

Understanding the Challenge and Incredible Potential of IT Governance Understanding the Challenge and Incredible Potential of IT Governance REALIZING THE MOST VALUE FROM TECHNOLOGY THROUGH BUSINESS GOV ERNANC E O F IT Governance defined gov er nance noun (ˈgə-vər-nən(t)s)

More information

CGEIT Certification Job Practice

CGEIT Certification Job Practice CGEIT Certification Job Practice Job Practice A job practice serves as the basis for the exam and the experience requirements to earn the CGEIT certification. This job practice consists of task and knowledge

More information

Business Continuity & Risk Management

Business Continuity & Risk Management Business Continuity & Risk Management David Muil, Global VP Business Development 1 Intertek 2013, Agenda Understanding Risk Business Continuity Management Risk assessment Summary 2 Intertek 2013, Risk

More information

Measuring and Managing Risk Culture

Measuring and Managing Risk Culture Measuring and Managing Risk Culture John Nicholls, Lesley Brown Risk management framework Stress & Scenario Testing Risk Appetite Link to Business Strategy Risk Culture Identify & Assess Risks Monitoring

More information

Auditing Corporate Strategies

Auditing Corporate Strategies Auditing Corporate Strategies Beyond traditional auditing Mohamad Nassar - Grant Thornton 10 November 2016 What is a Corporate Strategy audit? A strategy audit involves assessing the actual direction of

More information

Texas Tech University System

Texas Tech University System Texas Tech University System October 31, 2017 ERM Overview Evolution of Risk Management Risk Traditional Definition The possibility that something bad or unpleasant will happen. Merriam-Webster Minimizing

More information

Certificate in Enterprise Risk Management

Certificate in Enterprise Risk Management Certificate in Enterprise Risk Management Who should attend? Risk managers Managers and Directors responsible for the risk management function or process Senior Internal Auditors and audit managers Other

More information

The Sector Skills Council for the Financial Services Industry. National Occupational Standards. Risk Management for the Financial Sector

The Sector Skills Council for the Financial Services Industry. National Occupational Standards. Risk Management for the Financial Sector The Sector Skills Council for the Financial Services Industry National Occupational Standards Risk Management for the Financial Sector Final version approved April 2009 IMPORTANT NOTES These National Occupational

More information

Enterprise Risk Management Montana State Fund

Enterprise Risk Management Montana State Fund Enterprise Risk Management Montana State Fund Report to the Board January 28, 2011 Presented by: Mary Peter, Director of Enterprise Risk Management Enterprise Risk Management (ERM) Defined An integrated

More information

Capturing the Upside of ERM

Capturing the Upside of ERM Capturing the Upside of ERM ERM Annual Conference Continental Resort Hotel, Mombasa 08 Aug 2015 Gilbert Mwalili Managing Director Talk of town today Kenya Airways' stay in the skies troubled with new Sh29

More information

Risk Management Strategy

Risk Management Strategy Risk Management Strategy 2017-2019 Created by: Role Name Title Author / Editor Kevin McMahon Head of Risk Management & Resilience Lead Executive Margo McGurk Director of Finance & Performance Approved

More information

Strategic Risk Management -The Route to Business success

Strategic Risk Management -The Route to Business success BUSINESS RISK MANAGEMENT LTD Strategic Risk Management -The Route to Business success Attend this brand new seminar led by world renowned expert Phil Griffiths of Business Risk Management Ltd and learn

More information

From Dictionary.com. Risk: Exposure to the chance of injury or loss; a hazard or dangerous chance

From Dictionary.com. Risk: Exposure to the chance of injury or loss; a hazard or dangerous chance Sharon Hale and John Argodale May 28, 2015 2 From Dictionary.com Enterprise: A project undertaken or to be undertaken, especially one that is important or difficult or that requires boldness or energy

More information

ERM 101. Casualty Loss Reserve Seminar, Fall /5/ Practical Enterprise Risk Management (ERM) Agenda ERM 101 2

ERM 101. Casualty Loss Reserve Seminar, Fall /5/ Practical Enterprise Risk Management (ERM) Agenda ERM 101 2 Practical Enterprise Risk Management (ERM) Casualty Loss Reserve Seminar, Fall 2013 Agenda ERM 101 2 Building an effective ERM program 8 Case study 28 Lessons learned 34 Q&A 38 1 Practical Enterprise Risk

More information

Enterprise Risk Management. Focus on the Future June 2017

Enterprise Risk Management. Focus on the Future June 2017 Enterprise Risk Management Focus on the Future June 2017 2017 Crowe 2017 Crowe Horwath Horwath LLP LLP Learning Objectives and Agenda Objectives Distinguish Risk Management from ERM Understand the Value

More information

Practices in Enterprise Risk Management

Practices in Enterprise Risk Management Practices in Enterprise Risk Management John Foulley Risk Management Practices Head SAS Institute Asia Pacific What is ERM? Enterprise risk management is a process, effected by an entity s board of directors,

More information

ICAAP. Engaging the business in risk management. A presentation to FIDE Forum by Penny Fosker. 10 January towerswatson.com

ICAAP. Engaging the business in risk management. A presentation to FIDE Forum by Penny Fosker. 10 January towerswatson.com ICAAP Engaging the business in risk management A presentation to FIDE Forum by Penny Fosker 10 January 2013 1 Agenda What is an ICAAP and what s in it for me? Managing capital and risk or managing my business?

More information

Section: Ensure Program Quality & Effectiveness Number: III-3-i

Section: Ensure Program Quality & Effectiveness Number: III-3-i Page: 1 of 6 1.0 POLICY: NE CCAC is committed to maintaining an effective Enterprise Risk Management Framework to identify, assess and mitigate risks. The Board shall ensure risk management oversight through

More information

ISO whitepaper, January Inspiring Business Confidence.

ISO whitepaper, January Inspiring Business Confidence. Inspiring Business Confidence. ISO 31000 whitepaper, January 2015 Author: Graeme Parker enquiries@parkersolutionsgroup.co.uk www.parkersolutionsgroup.co.uk ISO 31000 is an International Standard for Risk

More information

HCCA Audit & Compliance Committee Conference. February 29-March 1, Drivers of ERM. Enterprise Risk Management in Healthcare.

HCCA Audit & Compliance Committee Conference. February 29-March 1, Drivers of ERM. Enterprise Risk Management in Healthcare. Enterprise Risk Management in Healthcare Deloitte & Touche LLP Heather Hagan, Senior Manager Nancy Perilstein, Senior Manager February 29, 2016 Discussion Items Drivers of Enterprise Risk Management (ERM)

More information

Business Continuity. Building a Program Fit for Purpose

Business Continuity. Building a Program Fit for Purpose Business Continuity. Building a Program Fit for Purpose Tim Janes. Director Fulcrum Risk Services Tuesday 2 September. 11.30-12.45 T Janes. BC SLIDES. RIMS Risk Forum Aust 2014 v1.0 Building a BC Program

More information

Treasury and Risk- Vision 2009 March 25 th, 2009 Michele L. Turner- Sr. Manager Operations Enterprise Risk Management (OERM)

Treasury and Risk- Vision 2009 March 25 th, 2009 Michele L. Turner- Sr. Manager Operations Enterprise Risk Management (OERM) Treasury and Risk- Vision 2009 March 25 th, 2009 Michele L. Turner- Sr. Manager Operations Enterprise Risk Management (OERM) Microsoft Mission: At Microsoft, our mission and values are to help people and

More information

Why BSI? Our products and services. To find out more visit: bsigroup.com/en-au. Conclusion

Why BSI? Our products and services. To find out more visit: bsigroup.com/en-au. Conclusion Conclusion Risk-based thinking is not new Risk-based thinking is something you do already Risk-based thinking is continuous Risk-based thinking ensures greater knowledge and preparedness Risk-based thinking

More information

Horst Simon. COO, Dubai Centre for Enterprise Risk Management

Horst Simon. COO, Dubai Centre for Enterprise Risk Management Towards Pervasive GRC Building an effective Risk Culture Horst Simon COO, Dubai Centre for Enterprise Risk Management MetricStream, Towards Inc. Pervasive All Rights Reserved. GRC MetricStreamGRC Summit

More information

Introductions. Enterprise Risk Management. Thinus Nienaber. Why are You here? Where are You coming from? Where are You going?

Introductions. Enterprise Risk Management. Thinus Nienaber. Why are You here? Where are You coming from? Where are You going? Enterprise Risk Management PRESENTED BY Thinus Nienaber Introductions Why are You here? Where are You coming from? Where are You going? What do You expect? From the intervention? From Yourself? Let s share!

More information

Oversight by Board, Risk Management & Audit Committee (RMAC) and other committees. Second line of defense

Oversight by Board, Risk Management & Audit Committee (RMAC) and other committees. Second line of defense 47 In the business environment that we live in, doing nothing might be the biggest risk of all. At Cim, the Board plays a crucial role in risk oversight; it is bringing more diverse viewpoints into the

More information

FUTURE OF QUALITY: RISK

FUTURE OF QUALITY: RISK FUTURE OF QUALITY: RISK Greg Hutchins PE Quality + Engineering www.cermacademy.com www.qualityplusengineering.com GregH@CERMAcademy.com September 18, 2013 Who is Quality + Engineering? Q+E Background:

More information

POLICY ON RISK MANAGEMENT

POLICY ON RISK MANAGEMENT POLICY ON RISK MANAGEMENT This Policy was approved by the Board of Trustees on March 14, 2017. Table of Contents 1. INTRODUCTION... 1 2. OBJECTIVE... 1 3. APPLICATION... 1 4. POLICY... 1 5. ROLES AND RESPONSIBILITIES...

More information

The City of Edmonton. Enterprise Risk Management and Business Continuity Management

The City of Edmonton. Enterprise Risk Management and Business Continuity Management The City of Edmonton Enterprise Risk Management and Business Continuity Management Presenters: Ken Baker, CPA, CMA, ARM-E, Corporate Manager, Enterprise Risk Management Butch Brennan, MBA, CBCP, Business

More information

Supervisors and Managers Training. Risk Management. Self-Study Guide

Supervisors and Managers Training. Risk Management. Self-Study Guide Supervisors and Managers Training Risk Management Self-Study Guide Self-Study Guide Copyright All rights reserved world-wide under International and Pan-American copyright agreements. No part of this document

More information

Enterprise Risk Management A strategic tool for the middle market

Enterprise Risk Management A strategic tool for the middle market Enterprise Risk Management A strategic tool for the middle market Chris Dunlap, MS, ABCP, ARM-E, CFPS, CLCS Assistant Vice President HUB International Risk Services Division Raymond Monteith, MA, CRM Senior

More information

ISACA. The recognized global leader in IT governance, control, security and assurance

ISACA. The recognized global leader in IT governance, control, security and assurance ISACA The recognized global leader in IT governance, control, security and assurance High-level session overview 1. CRISC background information 2. Part I The Big Picture CRISC Background information About

More information

IMPLEMENTING PUBLIC SECTOR ENTERPRISE RISK MANAGEMENT. Oh, Please Tell Me More!

IMPLEMENTING PUBLIC SECTOR ENTERPRISE RISK MANAGEMENT. Oh, Please Tell Me More! IMPLEMENTING PUBLIC SECTOR ENTERPRISE RISK MANAGEMENT Oh, Please Tell Me More! Implementing Public Sector ERM 2 ERM Definition of Risk Internal and external factors that influence outcomes and determine

More information

Enterprise Risk Management Discussion American Gas Association Risk Management Committee Meeting

Enterprise Risk Management Discussion American Gas Association Risk Management Committee Meeting Enterprise Risk Management Discussion American Gas Association Risk Management Committee Meeting July 17, 2017 Objectives Provide perspective on the evolution of Enterprise Risk Management (ERM) New 2017

More information

Thomson Reuters Enterprise Risk Manager

Thomson Reuters Enterprise Risk Manager Thomson Reuters Enterprise Risk Manager MAKE BETTER DECISIONS For enterprise and operational risk Conduct a range of assessment programs Collect and validate incidents Monitor KRIs, KPIs, KCIs or other

More information

The Role of the Chief Risk Office and the Board s Role in Risk Oversight

The Role of the Chief Risk Office and the Board s Role in Risk Oversight The Canadian Society of Corporate Secretaries 16th Annual Corporate Governance Conference Banff Springs Hotel Banff, AB August 24 27, 2014 The Role of the Chief Risk Office and the Board s Role in Risk

More information

AUDITING. Auditing PAGE 1

AUDITING. Auditing PAGE 1 AUDITING Auditing 1. Professionalism The International Professional Practices Framework (IPPF) is the conceptual framework that organizes authoritative guidance promulgated by The Institute of Internal

More information

Risk Management in Istat: from the project to the process

Risk Management in Istat: from the project to the process WORKSHOP ON RISK MANAGEMENT SYSTEMS AND PRACTICES Risk Management in Istat: from the project to the process Genève, 25-26 April 2016 Page 1 Management System Network Values and ethics Organizational culture

More information

The ERM Revolution: Advancing the Cause April 26, 2017

The ERM Revolution: Advancing the Cause April 26, 2017 The ERM Revolution: Advancing the Cause April 26, 2017 Presented by: Jim Yard and Don Owens Contact Information Donald R. Owens, Shareholder Risk Advisory Services CPA, CITP, CFF, CIA, CFSA, CRMA, CBA

More information

Fraud Risk Management

Fraud Risk Management Fraud Risk Management Introduction Bethmara Kessler, CFE, CISA Campbell Soup Company 2017 Association of Certified Fraud Examiners, Inc. CPE Information 2017 Association of Certified Fraud Examiners, Inc.

More information

Internal Controls and Risk Management Report

Internal Controls and Risk Management Report 42 Internal Controls and Risk Management Report Responsibility Our Board of Directors has the overall responsibility to ensure that sound and effective internal controls are maintained, while management

More information

A Discussion About Internal Controls February 2016

A Discussion About Internal Controls February 2016 A Discussion About Internal Controls February 2016 What we will cover today 001 Introductions 002 Defining Internal Controls 003 COSO Internal Controls Integrated Framework 004 Approach to Designing Internal

More information

CITIBANK N.A JORDAN. Governance and Management of Information and Related Technologies Guide

CITIBANK N.A JORDAN. Governance and Management of Information and Related Technologies Guide CITIBANK N.A JORDAN Governance and Management of Information and Related Technologies Guide 2018 Table of Contents 1. OVERVIEW... 2 2. Governance of Enterprise IT... 3 3. Principles of Governance of Enterprise

More information

What is Enterprise Risk Management (ERM)? What the Heck is ERM? Is There an 8 th Element of a Good Compliance Program?

What is Enterprise Risk Management (ERM)? What the Heck is ERM? Is There an 8 th Element of a Good Compliance Program? What the Heck is ERM? Is There an 8 th Element of a Good Compliance Program? Kim Otte, Chief Compliance Officer Chris Davies, Regional Compliance Officer, NW Wisconsin Brenda Mickow, Revenue Compliance

More information

ENTERPRISE RISK MANAGEMENT THE KEY TO BUSINESS SUCCESS By Phil Griffiths FCA

ENTERPRISE RISK MANAGEMENT THE KEY TO BUSINESS SUCCESS By Phil Griffiths FCA ENTERPRISE RISK MANAGEMENT THE KEY TO BUSINESS SUCCESS By Phil Griffiths FCA Chapter 1 Fundamentals of Enterprise Risk Management Risk management has become a vital ingredient in the entrepreneurial culture

More information

Project Planning & Management. Lecture 11 Project Risk Management

Project Planning & Management. Lecture 11 Project Risk Management Lecture 11 Project Risk Management The Importance of Project Risk Management PMBOK definition of Project Risk An uncertain event or condition that, if it occurs, has a positive or negative effect on the

More information

To: Identify your chief goals and objectives Identify risks Prioritize the risks to achieving objectives Determine which controls/processes to review

To: Identify your chief goals and objectives Identify risks Prioritize the risks to achieving objectives Determine which controls/processes to review 1 Objective To: Identify your chief goals and objectives Identify risks Prioritize the risks to achieving objectives Determine which controls/processes to review In order to: Develop an effective Internal

More information

A Risk Practitioners Guide to ISO 31000: 2018

A Risk Practitioners Guide to ISO 31000: 2018 A Risk Practitioners Guide to ISO 31000: 2018 Review of the 2018 version of the ISO 31000 risk management guidelines and commentary on the use of this standard by risk professionals 1 A Risk Practitioners

More information

RISK MANAGEMENT REPORT

RISK MANAGEMENT REPORT RISK MANAGEMENT REPORT RISK POLICY STATEMENT Robust and effective management of risks is an essential and integral part of corporate governance. It helps to ensure that the risks encountered in the course

More information

So You Have Your Baseline Risk Assessment For ERM, What Next? San Antonio IIA I Heart Audit Conference February 2018

So You Have Your Baseline Risk Assessment For ERM, What Next? San Antonio IIA I Heart Audit Conference February 2018 So You Have Your Baseline Risk Assessment For ERM, What Next? San Antonio IIA I Heart Audit Conference February 2018 Speaker Profiles Jody Allred, CPA, CITP, CISA, CGMA Partner, Risk Advisory Services

More information

RISK MANAGEMENT: THE FUTURE OF QUALITY

RISK MANAGEMENT: THE FUTURE OF QUALITY RISK MANAGEMENT: THE FUTURE OF QUALITY Greg Hutchins GregH@QualityPlusEngineering.com Quality + Engineering 800.COMPETE or 503.233.1012 March 15, 2011 Who is Quality Plus Engineering? Q+E Background: Critical

More information

Road map for. March 19, Enterprise Risk Management USI Insurance Services National, Inc. All rights reserved.

Road map for. March 19, Enterprise Risk Management USI Insurance Services National, Inc. All rights reserved. Road map for Enterprise Risk Management March 19, 2018 2018 USI Insurance Services National, Inc. All rights reserved. Enterprise Risk Management (ERM) Roadmap ERM has come full circle in some ways. When

More information

Fraud Risk Management

Fraud Risk Management Fraud Risk Management Fraud Risk Management Overview 2017 Association of Certified Fraud Examiners, Inc. Discussion Questions 1. Does your organization follow a specific risk management model? If so, which

More information

Key Risks and Risk Based Management Update

Key Risks and Risk Based Management Update Key Risks and Risk Based Management Update Recommendation That the Standing Policy Committee on Finance recommend to City Council: 1. That the information be received; and 2. That the proposed Key Corporate

More information

In Control: Getting Familiar with the New COSO Guidelines. CSMFO Monterey, California February 18, 2015

In Control: Getting Familiar with the New COSO Guidelines. CSMFO Monterey, California February 18, 2015 In Control: Getting Familiar with the New COSO Guidelines CSMFO Monterey, California February 18, 2015 1 Background on COSO Part 1 2 Development of a comprehensive framework of internal control Internal

More information

NOGDAWINDAMIN FAMILY AND COMMUNITY SERVICES

NOGDAWINDAMIN FAMILY AND COMMUNITY SERVICES This dictionary describes the following six functional competencies and four enabling competencies that support the differentiated territory for professional accountants in strategic management accounting:

More information

Performance Risk Management Jonathan Blackmore, May 2013

Performance Risk Management Jonathan Blackmore, May 2013 Performance Risk Management Jonathan Blackmore, May 2013!@# Topics The world is changing How leading companies turn risk into results Back to basics 2 Company focus Market Risk Management an evolving journey

More information

ISO Risk Management Principles and Guidance

ISO Risk Management Principles and Guidance ISO 31000 Risk Management Principles and Guidance In this article, we are going to explain what is covered by the ISO 31000 international standard, which addresses the principles of risk management. A

More information

Gleim CIA Review Updates to Part Edition, 1st Printing June 2018

Gleim CIA Review Updates to Part Edition, 1st Printing June 2018 Page 1 of 15 Gleim CIA Review Updates to Part 1 2018 Edition, 1st Printing June 2018 Study Unit 3 Control Frameworks and Fraud Pages 66 through 69 and 76 through 77, Subunit 3.2: In accordance with the

More information

CARNEGIE MELLON UNIVERSITY

CARNEGIE MELLON UNIVERSITY CARNEGIE MELLON UNIVERSITY 1 Integrated Risk Management for the Enterprise Brett Tucker December 2018 Carnegie Mellon University Software Engineering Institute Carnegie Mellon University Pittsburgh, PA

More information

Solvency II and Risk Management: Generali Group approach. Stefano Ferri Group Chief Risk Officer Generali Group

Solvency II and Risk Management: Generali Group approach. Stefano Ferri Group Chief Risk Officer Generali Group Solvency II and Risk Management: approach Stefano Ferri Group Chief Risk Officer CETIF Milan, May 23 rd 2012 Strengthening of the Risk Management System in light of Solvency II 2 SOLVENCY II Solvency (Technical

More information

IT and Enterprise Governance By Michael J. A. Parkinson, CISA, CIA, and Nicholas J. Baker, CPA

IT and Enterprise Governance By Michael J. A. Parkinson, CISA, CIA, and Nicholas J. Baker, CPA Copyright 2005 Information Systems Audit and Control Association. All rights reserved. www.isaca.org. IT and Enterprise Governance By Michael J. A. Parkinson, CISA, CIA, and Nicholas J. Baker, CPA Enterprise

More information

Using Risk Management to achieve good IT Governance. Carl Sackey CISA, CISM, CRISC, ISO LA/LI

Using Risk Management to achieve good IT Governance. Carl Sackey CISA, CISM, CRISC, ISO LA/LI Using Risk Management to achieve good IT Governance Carl Sackey CISA, CISM, CRISC, ISO 27001 LA/LI In recent years, the emergence of the term IT Governance (ITG) has pointed to the increasing importance

More information

Critical Success Factor in ERM Implementation

Critical Success Factor in ERM Implementation Critical Success Factor in ERM Implementation Mohd Shahari Idris 4 th & 5 th June 2014, Mandarin Oriental Hotel, KL Integrating Risk and Objectives VISION MISSION STRATEGY MAP ENTERPRISE RISK MANAGEMENT

More information

SELF ASSESSMENT OF BUSINESS OBJECTIVES. Kelly Dorin CPA, CA, CIA, CFE, CCSA, CRMA

SELF ASSESSMENT OF BUSINESS OBJECTIVES. Kelly Dorin CPA, CA, CIA, CFE, CCSA, CRMA SELF ASSESSMENT OF BUSINESS OBJECTIVES Kelly Dorin CPA, CA, CIA, CFE, CCSA, CRMA Overview What is Control Self-Assessment (CSA) Benefits obtained from using CSA How would you use CSA Enterprise-wide CSA

More information

Session 7: Corporate Governance

Session 7: Corporate Governance Session 7: Corporate Governance New York Bankers Association-Community Bank Auditors Group 2016 Internal Audit Training-June 6-8, 2016 MEMBER OF ALLINIAL GLOBAL, AN ASSOCIATION OF LEGALLY INDEPENDENT FIRMS

More information

ORSA engaging the business in Solvency II. Colm Guiry, Naren Persad 20 February 2012

ORSA engaging the business in Solvency II. Colm Guiry, Naren Persad 20 February 2012 ORSA engaging the business in Solvency II Colm Guiry, Naren Persad 20 February 2012 What is the ORSA? slide 2 Existing and expected future guidance from EIOPA slide 3 Article 45 Framework Directive (July

More information

Citizens Property Insurance Corporation Business Continuity Framework

Citizens Property Insurance Corporation Business Continuity Framework Citizens Property Insurance Corporation Framework Dated September 2015 Approvals: Risk Committee: September 17, 2015 (via email) Adopted by the Audit Committee: Page 1 of 12 Table of Contents 1 INTRODUCTION...

More information

A Vision of an ISO Compliant Company by Bruce Hawkins, MRG, Inc.

A Vision of an ISO Compliant Company by Bruce Hawkins, MRG, Inc. A Vision of an ISO 55000 Compliant Company by Bruce Hawkins, MRG, Inc. ISO 55000 refers to a series of three standards outlining the purpose, requirements, and implementation guidance for an Asset Management

More information

Risk Management Policy & Procedure Document

Risk Management Policy & Procedure Document Risk Management Policy & Procedure Document Contents Policy statement 1 Introduction 1.1 Objective 1.2 Benefits 1.3 Restriction 1.4 Definition of risk 1.5 Definition of Enterprise Risk Management 1.6 Factors

More information