Duty of Care: from must to accelerator?

Similar documents
Risk Based Approach and Enterprise Wide Risk Assessment Edwin Somers / Inneke Geyskens-Borgions 26 September 2017

Introduction. Key points of the recent ODPC guidance, and the Article 29 working group guidance

Insurance Analytics: Organizing Analytics capabilities to get value from Data Analytics solutions A Deloitte point of view on Data Analytics within

Co/outsourcing and/or supporting of your customs and global trade management

Implementing Analytics in Internal Audit. Jordan Lloyd Senior Manager Ravindra Singh Manager

Anti Money Laundering (AML) Advisory Services Effective solutions for complex issues Deloitte Malta, 2017

The 2016 Deloitte Millennial Survey. Switzerland - Country Report 17 January 2016

Sustainability Reporting using the GRI Taxonomy Paul Hulst, Deloitte

Global Manufacturing Industry Landscape

Understanding the challenge of implementing your virtual workforce Robotic Process Automation as part of a new social-technological paradigm

Compliance digitalization The impact on the Compliance function. Deloitte Risk Services April 2016

Funds in a Box Solutions Factsheets and on-line Fund Profiles. Funds in a Box Solutions Factsheets 2.0

Sustainability reporting using the GRI Taxonomy

Fraud, bribery and corruption Protecting reputation and value

Risk Advisory Services Developing your organisation s governance for competitive advantage

SREP Transformation The Deloitte approach. Deloitte Malta Risk Advisory - Banking

Internal Business Review The Deloitte methodology. Deloitte Malta Risk Advisory - Banking

Evolution of the smart factory leading to new business models

The people dimension of amalgamations. Machinery of government The people dimension of amalgamations. Three part series

Are you ready for Industry 4.0? FY2017 Stakeholder engagement summary

Simplification of work: Knowledge management as a solution within the European Institutions

Generating value within the Risk Ecosystem Risk powers performance

Enterprise. Service. Transformation. Deloitte driving your digital service excellence with ServiceNow

Securing tomorrow today Improving the process of VAT compliance and return preparation

Infrastructure and Capital Projects

Distributed ledger technologies services. Distributed ledger technologies services Using the power of blockchain

High-Impact Talent Management in the Mid-Market November 30, 2016

Western Australian Public Sector Reform The technology dimension of amalgamations

Document Management for Global Trade Deloitte Academy DMS for GTS Working Slides

Federal Reserve Guidance on Supervisory Assessment of Capital Planning and Positions for Large Financial Institutions.

Beyond Compliance. Leveraging Internal Control to Build a Better Business: A Response to Sarbanes-Oxley Sections 302 and 404

The Report of the Audit Committee Analysing the trends in South Africa

Managing tax Balancing current challenge with future promise The EYE, Amsterdam, 30 November 1 December 2016

CFOs: The catalyst for integrating strategy, risk and finance

The Robots Are Here! RPA Services in Greece

Open banking. Potential pricing implications

International Finance Corporation

Eighty five years in the Middle East. Business Process Outsourcing Innovative and cost effective solutions in outsourcing

The Future of the Automotive Value Chain Supplier industry outlook 2025

IT packages for Solvency II Deloitte 2014 market survey

Global In-House Centers Mitigating Risks. Enhancing Reputation. Optimizing Returns.

Belgian report. Global Human Capital Trends 2015 Leading in the new world of work

H 2 N H. Supply chain management in the chemicals industry Key challenges and how Deloitte can support

Sarbanes-Oxley Act of 2002 Can private businesses benefit from it?

Governance Indexing & Screening Tool (GIST)

Scenario analysis: what is it and how can it help business deal with climate risk?

2017 Millennial Survey South Africa. January 2017

Consulting. The importance of optimizing maintenance management for efficient operations

Stand out for the right reasons Getting your approach to CASS right

Audit Committee Performance Evaluation

Modernizing regulatory reporting in banking & securities Where to get started. CENTER for REGULATORY STRATEGY AMERICAS

EMEA TMC client conference Enterprise data management. The Crystal, London 9-10 June 2015

2017 Millennial Survey Russia. January 2017

Defence Health Governance Structure

Understanding employee engagement after a corporate acquisition A global communications company. EngagePath client spotlight

SAP Service Parts Management Distribution Center in the Middle East region

CFO Perspectives CFO Speaks

Where big and small business meet Enabling Enterprise Development through Collective Development

RegTech, the future of banking beyond IT. In collaboration with

Beyond EDI Unlocking new value with transactions enabled by SAP Ariba and the Ariba Network

Predictive Project Analytics 2.0 Today s Project Landscape. Predictive Project Analytics 2.0

Building an AppSec Program from Scratch. Chris Pfoutz, CISSP, GWAPT Manager Application Security

Deloitte School of Analytics. Demystifying Data Science: Leveraging this phenomenon to drive your organisation forward

Model Risk Management A Southeast Asia Perspective

2016 Global Manufacturing Competitiveness Index Report highlights

Governance Committee Terms of Reference

Deloitte Shared Services, GBS & BPO Conference Indirect Tax: Delivering Best-in- Class Compliance in a GBS Environment

Real estate predictions 2017 What changes lie ahead?

Capital Allocation Management. February 2016

Risk consulting. Conduct risk: Aligning product, customer and value. kpmg.ie

Solutions to Student Self Assessment Questions

IIA Presentation Major Capital Projects

EMEA TMC client conference Developing a tax technology architecture. The Crystal, London 9-10 June 2015

Internal Audit and Technology Sustainable Analytics

Quality Assessments what you need to know

The road to an expert sustainability report Certified GRI training

Transparency Report Deloitte Albania sh.p.k

The direct approach Finding new value with direct procurement

SENIOR INTERNAL AUDITOR

Guidance Note: Corporate Governance - Audit Committee. March Ce document est aussi disponible en français.

Proposed Attestation Requirements for FR Y-14A/Q/M reports. Overview and Implications for Banking Institutions

Guidance Note: Corporate Governance - Audit Committee. January Ce document est aussi disponible en français.

CGEIT Certification Job Practice

The Fourth Industrial Revolution Is Here Are You Ready? Key findings

Revenue synergies in acquisitions In search of the Holy Grail

A hive mentality Collaboration lessons for Australian oil and gas

Deciphering third-party business risk in a period of weak commodity prices

EU General Data Protection Regulation (GDPR) A Point of View. For private circulation only. Risk Advisory

Insurance Accounting & Systems Association (IASA): NY/NJ Chapter Spring 2014

Social Analytics in Media & Entertainment The three-minute guide

Operational Risk Management (#DOpsRisk) Solutions suite

MDM offers healthcare organizations an agile, affordable solution To deliver high quality patient care and better outcomes

Global Luxury Market The evolving consumer. Vladimir Biryukov, Partner 22 September 2015

Governance Committee Terms of Reference

Minimizing fraud exposure with effective ERP segregation of duties controls

Driving the Future of Finance Finance as a Strategic Advisor and Insight Provider, enabled by Technology

Cultivating a Risk Intelligent Culture A fresh perspective

Collaboration between humans and technology is creating a new labor class

PSD2 DATA FINTECH MARKETPLACE AISP CUSTOMER AWARENESS ALLIANCES MOBILE ECONOMY PISP API DIGITAL COMPLY REVENUE RTS SCORING BANKING STRATEGIC

CFO meets M&A: Value creation in the digital age The Dbriefs Driving Enterprise Value series

Transcription:

Duty of Care: from must to accelerator? April 2018

03

Duty of Care: from must to accelerator? Financial institutions are expected to act in the best interest of their clients, in the market known as Duty of Care. Financial institutions often struggle with their ambitions in corporate responsibility. Regulators and society keep on reshaping the Duty of Care landscape and standards. The public society and regulators expect a client-central focus of their business relations and enforcement will follow if prevention is lacking. Cases such as Interest Rate Derivatives, Investment based insurance products and Interest-only mortgages show that institutions struggle with handling and solving Duty of Care related issues. How do institutions balance their client-product portfolio against current and future insights and market expectations, especially for long-term products or products with strong dependency on market conditions? And how do institutions inform their clients sufficiently and fulfil their Duty of Care obligations in a digitalizing environment where real time transactions and online client communication will become the standard in the client life cycle? To stay ahead of regulatory discussions, financial institutions should be in the driver s seat of their Duty of Care obligations and gain insight into their vulnerabilities and develop a well-considered approach. Get in the driver s seat regarding your Duty of Care obligations, with a pro-active risk assessment and analytics approach with Deloitte s Duty of Care Solution Which challenges do we see in the market? Regulators concentrate more and more on harmful conduct, not solely on illegal conduct Increased critical view of the public society with regard to the way financial institutions design their Duty of Care obligations Having a clear view of Duty of Care risks within the product and client portfolio starts with defining a risk appetite Maintaining an optimum service provision and meet all your stakeholders expectations Increased regulatory focus and supervisory pressure and enforcement Effective data-analysis requires quality of data More effective and efficient ethical operational management is key and should be part of the mind-set within the organisation 04

The importance of a targeted Duty of Care Risk analysis Financial institutions do not have full insight in the Duty of Care risks related to their product and client portfolio, disabling them to act upon these risks in a timely and adequate manner. Because Duty of Care obligations could vary per product-client combination, institutions may overlook specific compliance gaps in their organization if they do not accurately assess their portfolios. Deloitte proposes to apply the Duty of Care Solution with the targeted SIRA methodology in order to gain insight in the Duty of Care risks, enabling the financial institution to act upon these risks. The methodology is specifically designed for: Risk and control identification Explicit management of the Duty of Care risks A systematic Duty of Care Risk Assessment will ultimately reduce the likelihood of a major remediation process and reputational damage To enable a targeted SIRA and apply the methodology to those areas where you are most vulnerable, data analytics can be applied. By combining your knowledge from the organization and a predictive model based on data analytics, you can apply the SIRA methodology there where most needed. The assessment can be performed according to your wishes: from all portfolios within the organization, to one product only. Via the Duty of Care Risk Assessment you gain a clear understanding of your specific Duty of Care vulnerabilities. We apply the SIRA methodology which is specifically designed for risk and control identification, supplemented with data analysis methods. The assessment ultimately leads to evaluation of Duty of Care risks and possibly improved risk mitigation. Where appropriate, the Duty of Care Risk Assessment could be aligned and/or integrated with the existing SIRA within the organization. Risk appetite Evaluation of the results A plan of action and follow-ups are subject to the Duty of Care assessment results Eventually, the results could lead to a change in strategy/risk appetite 5 Risk assessment 1 Determine Duty of Care characteristics Determine inherent risk profile based on: Product portfolio Client portfolio Distribution channels 2 Select & define inherent risks Select and define applicable inherent Duty of Care risks Categorize products and clients according to their characteristics and distribution channel for relevant selected risks Obtain exact numbers for relevant product-client combinations Perform risk assessment 4 Follow-up 3 Determine and assess key controls Identify existing key controls High level assessment of (effectiveness of) implemented key controls of selected inherent risks 05

Applying data analysis methods Your Duty of Care vulnerabilities are found by assessing inherent risks for relevant product-client combinations. Data-analysis methods can be applied to obtain quantitative information on Duty of Care characteristics, assessing key controls and in (the preparation of) the risk assessment. The risk assessment of one scenario can be performed for one or multiple specific clientproduct combinations to obtain more detailed insight in the Duty of Care risks. Example Product- Client group 1 Product- Client group 2 Example Risk Assessment multiple product-client groups Client received written information and warnings Incomplete warnings sent in letter X and Y Unknown what and when clients received written information or warnings #clients #clients # Likelihood 1a 1b 2a Impact 1c Advanced analytics is a key part of the Duty of Care assessment Advanced analytics is about applying state-of-the-art techniques such as machine learning, predictive modelling, statistics, and advanced visualization to large volumes of data in order to gain actionable insights and achieve competitive advantages. Some examples: Real-time insight in client and product data and Duty of Care risks Real-time insight in actual product risks by monitoring elements of financial products (i.e.: the way they are actually used, client information) Efficiency in performing your Duty of Care SIRA Monitoring, predicting and improving workforce performance 06

Some advantages that can be reached Insight in your specific Duty of Care vulnerabilities Perform targeted activities; there where most needed Generating management reports on Duty of Care risks Anticipate in time to Duty of Care related challenges Contact Please contact us to discuss the possibilities of this method for your organization. How we can help you? Deloitte has extensive expertise and a track record in the field of Regulatory Compliance in the financial services industry and has wide knowledge and experience in performing risk assessments. Our specialists can help facilitate the Duty of Care Risk Assessment for your organization, making it both in line with the regulatory requirements and your specific whishes in a flexible and efficient way. Furthermore, we can establish a thorough monitoring system to constantly reevaluate your product-client combinations so that you continue to meet your obligations towards clients and regulators. As a result, you will act in your clients interest and provide financial products in a sustainable way. Martin Eleveld Partner Email: MEleveld@deloitte.nl Phone: +31 (0) 6 232 451 59 Christiaan Visser Director Email: ChVisser@deloitte.nl Phone: +31 (0)88 288 73 94 Hassan Bettani Director Email: Hbettani@deloitte.nl Phone: +31 (0) 6 820 123 60 Wendy Brink den Nieuwenboer Senior Manager Email: WBrink-denNieuwenboe@deloitte.nl Phone: +31 (0) 6 300 687 42 07

Deloitte refers to one or more of Deloitte Touche Tohmatsu Limited ( DTTL ), its global network of member firms, and their related entities. DTTL (also referred to as Deloitte Global ) and each of its member firms are legally separate and independent entities. DTTL does not provide services to clients. Please see www.deloitte.nl/about to learn more. Deloitte is a leading global provider of audit and assurance, consulting, financial advisory, risk advisory, tax and related services. Our network of member firms in more than 150 countries serves four out of five Fortune Global 500 companies. Learn how Deloitte s approximately 264,000 people make an impact that matters at www.deloitte.nl. This communication contains general information only, and none of Deloitte Touche Tohmatsu Limited, its member firms, or their related entities (collectively, the Deloitte network ) is, by means of this communication, rendering professional advice or services. Before making any decision or taking any action that may affect your finances or your business, you should consult a qualified professional adviser. No entity in the Deloitte network shall be responsible for any loss whatsoever sustained by any person who relies on this communication. 2018 Deloitte The Netherlands