Portfolio Risk Management: aligning projects with business objectives to deliver value

Size: px
Start display at page:

Download "Portfolio Risk Management: aligning projects with business objectives to deliver value"

Transcription

1 risk decisions 2011 Portfolio Risk Management: aligning projects with business objectives to deliver value by Val Jonas CEO Risk Decisions Group and Susheel Chumber Professional Services Manager, Risk Decisions Ltd management solutions

2 Val Jonas & Susheel Chumber: Portfolio Risk Management: Portfolio Risk Management: aligning projects with business objectives to deliver value Abstract Organisations are taking up the challenge to improve risk management at all levels from project and operations to Enterprise Risk Management. The focus is to ensure that business objectives are met. However, there tends to be a gap in the hierarchical structure of organisations where a strategic approach to risk management is required the portfolio level. This paper places the portfolio perspective in context, providing some practical insights into how portfolio risk management can deliver significant financial and non-financial benefits. By embedding portfolio risk management into your risk framework, its complementary approach supports risk management maturity across the organisation. In today s climate of increasing pressure, organisations must focus on managing risks to meeting objectives. Portfolio risk management can provide a quick return; so start now there s no time to waste. The challenge At any one time, a large organisation may have a significant number of ongoing projects, of varying types, stages and sizes, with different stakeholders, customers, suppliers and deliverables. One thing is certain these projects will have a significant amount of budget and resources assigned to them; what is uncertain is exactly what benefits they will deliver. Therefore, organisations align their projects with business objectives, in order to ensure they will deliver value. Then, after the business case has been signed off, focus switches to successful project delivery. However, what is often forgotten is the importance of maintaining the alignment of projects with business objectives, which frequently change over time. Projects are approved with defined scope and cost / time / performance targets; but the environment within which they are executed is constantly evolving. For example: External political, environmental and market conditions alter Sponsors come and go with regular management reorganisations Customer expectations change over time There are also internal challenges: Projects compete for resources and management attention Projects are often interdependent, having impact on each other These challenges are both external and internal to a project s context, and are all sources of risk to the project s ability to deliver value. So no matter how good your organisation is at keeping projects on track, they may often be overtaken by events beyond their control. Different risk management perspectives In order to understand how to keep project deliverables aligned with business objectives, it is useful to understand the different risk management perspectives in an organisation. Senior managers are responsible for delivering business objectives, which requires awareness of potential market changes and the political environment, as well as responsibilities for strategic direction and governance. Their role is to deliver shareholder (and/or stakeholder) value. Figure 1. Environmental risks impact on projects ability to deliver against business objectives 2 risk decisions 2011

3 Val Jonas & Susheel Chumber: Portfolio Risk Management: External Context Busines Objectives Governance (Risk, Controls Compliance) Shareholder, Stakeholder Value Exhibit 4. Top down and bottom up communication even if they do this, the follow-on decision-making process is often slow, contributing to continued inefficiencies. Figure 2. Senior manager risk perspective (Top down) Project and programme managers are focused on the balance of time, cost and performance; juggling resources, managing scope and budgets, identifying opportunities, controlling change, as well as handling the interface with the customer and other projects. Their role is to meet the hard targets set as their deliverables. Responsibility for identifying such issues is often left up to programme and other middle managers; however, they rarely have sufficient oversight of the business or independent objectivity to provide a balanced view. So, there needs to be some infrastructure in the organisation with responsibility for monitoring and managing risk to business objectives in a proactive and robust way. Cost (Budgets) Performance (Quality, Scope) Time (Schedule) Deliverables Portfolio risk management the missing link A major role of the portfolio manager is to assess and approve business cases. However the responsibility does not stop there it extends throughout the life of the project. If, at any time, some uncertainty, influence or event threatens the validity of the original business case, then a review should be triggered. If the business case can no longer demonstrate business benefits (independently or relative to other business opportunities) then an appraisal of the options, with recommendations for action, must be reported to senior management for decisions to be made. Figure 3. Project risk perspective (Bottom up) Unfortunately, there tends to be a major disconnect between project/programme and senior management perspectives, which needs to be bridged for the organisation to perform effectively. Addressing the disconnect The first challenge to be tackled is how to improve communication top down and bottom up. Projects will continue on their pre-determinded path unless senior managers communicate significant environmental changes that may affect them. Similarly, managers will assume that strategic objectives will be met unless concerns or assumptions about project delivery are brought to their attention. Focussing on individual business cases would result in a view of projects and programmes that is too narrow. So the portfolio level is responsible for optimisation across a set of projects, with focus placed on balancing risk and reward, in line with business risk appetite. Organisations should see risk taking as a good thing, as long as it is properly understood and managed. This measured approach is the ongoing focus of portfolio risk management. A major role of the portfolio risk manager is to provide two-way communication of key risk information, and hence assurance that delivery of business benefits is secure. Business Case (decision making) Optimisation (maximise ROI) The second challenge is to ensure that there is a mechanism to respond to these environmental risks that arise. This may require just a simple realignment of the project; but in extreme cases a complete review of the business case and major change or cancellation of the project may be necessary. Balance (risk and reward) Benefits Many organisations fail in this area, as their inclination or ability to revisit the original business case under new conditions is limited. And Figure 5. The portfolio risk management perspective risk decisions

4 Val Jonas & Susheel Chumber: Portfolio Risk Management: A periodic review may show that a project is no longer able to deliver the required benefits and drastic action might be recommended, even though the project is currently performing very well against its original targets. The result will not necessarily be project closure; it may just need to be adjusted to address the risk or match new business needs. Figure 6. Bridging the gap between top-down and bottom-up Risk management A framework to manage risks Risk management is driven from the top. People down through the organisation require guidance to allow them to make judgements on the importance and acceptability of different types of risk. This guidance must include a statement on the organisation s risk appetite (quantitative and qualitative thresholds and triggers), explicit assignment of responsibilities for ensuring risks are managed, support in prioritising key risk response actions, as well as delegated authority and budgets/resources (management reserve) to carry them out. The behaviours demonstrated top down will drive behaviour down through the organisation. The link with Enterprise Risk Management Enterprise risk management (ERM) requires proactive involvement from the extended organisation. Portfolio risk management provides a key component of ERM because it glues together organisational silos. Business case preparation and ongoing progress reviews involve input from appropriate functional, operations and logistics departments, as does ongoing assurance and risk management activities. Portfolio risk managers have responsibility for coordinating involvement of various parties; they should be independent of specific business units, functions, programmes, etc, to provide an objective view. It is the responsibility of the portfolio risk manager to ensure risk management activities from senior management at the top and all the way down through programmes and projects are functioning efficiently. Having set up this framework, a good structure is required to ensure both significant tactical risks and strategic business risks are understood, communicated and managed up and down, to inspire confidence, ensure timely decisions are made and maximise business success. For example, a project may identify a tombstone risk (one that, if it were to occur, would kill the project); if no acceptable mitigation response can be found at the portfolio level, then this risk needs to be brought to the attention of senior management, for appropriate action. Figure 8. The area of ERM covered by portfolio risk management Different parts of the enterprise may use different risk guidance, for example PMBoK (PMI) or PRAM (APM) for projects, M_o_R (OGC) or ISO3100 for wider strategic or business risk. From a portfolio perspective, it doesn t matter that there are different dialects of risk management across the organisation, as they essentially follow the same basic process as can be seen below. Figure 7. A framework to manage risks 4 risk decisions 2011

5 Val Jonas & Susheel Chumber: Portfolio Risk Management: Figure 9. Similarity between risk process guidelines Implementing portfolio risk management Very few organisations have moved beyond a very simple implementation of ERM, but many now have reasonably mature project, programme and other specialised risk management capabilities in place. Portfolio risk management can assist in raising the profile and maturity of risk management, particularly if your organisation operates a gated approval process. A full disclosure of risk should be provided at each stage of business case appraisal and then through ongoing review and reporting periods. This means that risk at each stage of the lifecycle should be stated, not just the stage currently being reviewed or approved. Further improvements can be achieved with risk maturity models. For example, some organisations require a project team to demonstrate a minimum level of risk maturity (process and practice). The example below shows a risk maturity model with 7 criteria and 4 levels: Ad Hoc, Initial, Repeatable and Managed. The lowest score determines the maturity of the team in the example below this is Ad Hoc, shown by the red line. Manage a higher-level budget for show-stopper risks across the organisation It will also be necessary to implement an Enterprise Risk Management tool, such as Predict! to identify, assess, manage and provide consistent reporting on risk across the organisation. To deliver joinedup risk management, it is not practicable to operate separate spreadsheet risk registers for different projects, business units etc. A central database repository for assessing risk and approving response actions, with Risk Management Clusters to represent business case entities is required. While it is unlikely to be the responsibility of the portfolio risk manager to measure and improve risk maturity across the organisation, it is a useful measure in business case appraisal. For example, not only does the business case need to be sound, but the team put in place to carry out the project needs to prove itself capable of delivery. Other areas in which portfolio risk management can provide support are: To act as a centre of excellence to support risk management practices Support HR in ensuring all staff are trained in risk management Promote a consistent approach to risk management Run a risk steering group to support proactive communication of risk Overall Maturity Level Context Identity Analyse Evaluate Treat Monotor Culture review Figure 10. An example risk maturity model Managed Repeatable Initial Ad Hoc risk decisions

6 Val Jonas & Susheel Chumber: Portfolio Risk Management: Portfolio risk management no time to waste The journey to effective risk management can take some time, but whatever stage your organisation is currently at, portfolio risk management can deliver quick and effective results. Its practical risk to objective approach requires only a small number of key top level risks to be identified and assessed against each project, allowing a clear risk profile to be communicated to senior management for timely intervention if required. Any project that does not have clear and current objectives needs to be reviewed immediately. Once all projects have a risk profile, these should be standardised for review by a wider management group responsible for overseeing projects and programmes. Functional managers should be encouraged to identify common risks across projects, so that strategic actions can be identified, saving money by eliminating duplicated lower level actions. References Association for Project Management (2004) Project Risk Analysis & Management Guide, 2nd Edition, Association for Project Management, High Wycombe, Bucks, UK; ISBN Association for Project Management (2002) Earned Value Management: APM Guideline for the UK, Association for Project Management, High Wycombe, Bucks, UK; ISBN Project Management Institute (2004) A Guide to the Project Management Body of Knowledge (PMBoK), 3rd edition, Project Management Institute, Philadelphia, US; ISBN X Association of Project Management (2008) Interfacing Risks and Earned Value Management, Association for Project Management, High Wycombe, Bucks, UK; ISBN 10: ; ISBN 13; Once risk appraisal across all projects is in place, the portfolio risk manager should be well placed to look back at risks that have occurred and provide advice across all projects on lessons learned. Portfolio risk management is currently under utilised and is therefore an area in which organisations can gain significant competitive advantage. However, the challenge in implementing it should not be underestimated. Portfolio risk management may be seen as a threat by projects with a vested interest in maintaining the status quo. In an environment where cash is short and resources are stretched, it is likely that an increasing number of projects have an uncertain future. Ensuring continuous alignment with current objectives, even if that means significant change for a project, could in turn save it from closure. And remember, closing a project isn t necessarily bad. It could be that it just no longer meets business requirements and closing it will mean that more beneficial projects can then proceed. So start managing risk from a porfolio perspective today there s no time to waste. Now Progress Benefits Risk? Lessons learned Response actions Figure 11. A backward and forward looking approach to managing risk 6 risk decisions 2011

7 Val Jonas & Susheel Chumber: Portfolio Risk Management: Appendix 2: Glossary Where source is in brackets, minor amendments have been incorporated to the original definition. Term Definition Source Budget The resource estimate (in /$s or hours) assigned for the accomplishment of a specific task or Risk Decisions group of tasks. Change Control (Management) Identifying, documenting, approving or rejecting and controlling change. (PMBoK) Control Account (CA) A management control point at which actual costs can be accumulated and compared to earned value APM EVM and budgets (resource plans) for management control purposes. A control account is a natural management guideline point for budget/schedule planning and control since it represents the work assigned to one responsible organisational element on one Work Breakdown Structure (WBS) element. Cost Benefit Analysis The comparison of costs before and after taking an action, in order to establish the saving achieved Risk Decisions by carrying out that action. Cost Risk Analysis (CRA) Assessment and synthesis of the cost risks and/or estimating uncertainties affecting the project to (PRAM) gain an understanding of their individual significance and their combined impact on the project s objectives, to determine a range of likely outcomes for project cost. Enterprise Risk Map The structure used to consolidate risk information across the organisation, to identify central Risk Decisions responsibility and common response actions, with the aim of improving top down visibility and managing risks more efficiently. Enterprise Risk Management (ERM) The application of risk management across all areas of a business, from contracts, projects, programmes, Risk Decisions facilities, assets and plant, to functions, financial, business and corporate risk. Left Shift The practice by which an organisation takes proactive action to mitigate risks when they are identified Risk Decisions rather than when they occur with the aim of reducing cost and increase efficiency. Management Reserve (MR) Management Reserve may be subdivided into: APM EV/Risk Specific Risk provision to manage identifiable and specific risks Non-Specific Risk Provision to manage emergent risks Issues provision Non-specific Risk Provision The amount of budget / schedule / resources set aside to cover the impact of emergent risks, APM EV/Risk should they occur. Operational Risk The different types of risks managed across an organisation, typically excluding financial and corporate risks. Risk Decisions Opportunity An upside, beneficial Risk Event. PRAM Baseline An approved scope/schedule/budget plan for work, against which execution is compared, to measure (PMBoK) and manage performance. Performance Measurement The objective measurement of progress against the Baseline APM EV/Risk Proactive Risk Response An action or set of actions to reduce the probability or impact of a threat or increase the probability (PRAM) or impact of an opportunity. If approved they are carried out in advance of the occurrence of the risk. They are funded from the project budget. Reactive Risk Response An action or set of actions to be taken after a risk has occurred in order to reduce or recover from (PRAM) the effect of the threat or to exploit the opportunity. They are funded from Management Reserve. Risk Appetite The amount of risk exposure an organisation is willing to accept in connection with delivering a APM EV/Risk set of objectives. Risk Event An uncertain event or set of circumstances, that should it or they occur, would have an effect on the PRAM achievement of one or more objectives. Risk Exposure The difference between the total impact of risks should they all occur and the Risk Provision. APM EV/Risk Risk Management Clusters Functionality in Risk Decisions Predict! risk management software that enables users to organise Risk Decisions different groups of risks to form a single, enterprise-wide risk map. Risk Provision The amount of budget / schedule / resources set aside to manage the impact of risks Risk provision APM EV/Risk is a component part of Management Reserve Risk Response Activities Activities carried out to implement a Proactive Risk Response. APM EV/Risk Schedule Risk Analysis Assessment and synthesis of schedule risks and/or estimating uncertainties affecting the project (PRAM) ability to meet key milestones. Schedule Reserve The schedule component of Management Reserve. APM EV/Risk Specific Risk Provision The amount of budget / schedule / resources set aside to cover the impact of known risks, should they APM EV/Risk occur. It is not advisable to net opportunities against threats and so a separate value is calculated for each. Threat A downside, adverse Risk Event PRAM Uncertainty The spread in estimates for schedule, cost, performance arising from the expected range of outcomes. APM EV/Risk Often termed estimating error. Working Group risk decisions

8 Val Jonas & Susheel Chumber: Portfolio Risk Management: About Risk Decisions Risk Decisions Limited is part of Risk Decisions Group, a pioneering global risk management solutions company, with offices in the UK, USA and Australia. The company specialises in the development and delivery of enterprise solutions and services that enable risk to be managed more effectively on large capital projects as well as helping users to meet strategic business objectives and achieve compliance with corporate governance obligations. Risk Decisions has introduced many innovative features that have since become standard features in the industry including the risk hierarchy tree, combined threat and opportunity risk impact grids and automated schedule risk analysis. The company plays a significant role in influencing risk management policy, making important contributions to APM, OGC and PMI risk management guides and standards, including guidance on interfacing risk with other disciplines, such as Earned Value and Systems Engineering. Clients include Lend Lease, Mott MacDonald, National Grid, Eversholt Rail, BAE Systems, Selex Galileo, Raytheon, Navantia, UK MoD, Australian Defence Materiel Organisation and New Zealand Air Force. For further information visit: or contact Alex Leggatt at: Risk Decisions Ltd, Whichford House, Parkway Court, Oxford Business Park South, Oxford, OX4 2JY Tel: alex@riskdecisions.com European HQ For enquiries from the UK and mainland Europe. Risk Decisions Ltd Whichford House Parkway Court Oxford Business Park South Oxford OX4 2JY United Kingdom For general enquiries: Tel: +44 (0) Fax: +44 (0) enquiries@riskdecisions.com For help desk support: Tel: +44 (0) Fax: +44 (0) support@riskdecisions.com management solutions

Five steps to Enterprise Risk Management

Five steps to Enterprise Risk Management risk decisions 2011 Five steps to Enterprise Risk Management by Val Jonas CEO Risk Decisions Group www.riskdecisions.com management solutions Val Jonas: Five steps to Enterprise Risk Management Five steps

More information

Integrated Risk Management As A Framework For Organisational Success. Abstract

Integrated Risk Management As A Framework For Organisational Success. Abstract Integrated Risk Management As A Framework For Organisational Success Dr David Hillson PMP FAPM FIRM MCMI Director, Risk Doctor & Partners david@risk-doctor.com, www.risk-doctor.com Abstract Risk management

More information

P3M3 Portfolio Management Self-Assessment

P3M3 Portfolio Management Self-Assessment Procurement Programmes & Projects P3M3 v2.1 Self-Assessment Instructions and Questionnaire P3M3 Portfolio Management Self-Assessment P3M3 is a registered trade mark of AXELOS Limited Contents Introduction

More information

Procurement Programmes & Projects P3M3 v2.1 Self-Assessment Instructions and Questionnaire. P3M3 Project Management Self-Assessment

Procurement Programmes & Projects P3M3 v2.1 Self-Assessment Instructions and Questionnaire. P3M3 Project Management Self-Assessment Procurement Programmes & Projects P3M3 v2.1 Self-Assessment Instructions and Questionnaire P3M3 Project Management Self-Assessment Contents Introduction 3 User Guidance 4 P3M3 Self-Assessment Questionnaire

More information

Confident in our Future, Risk Management Policy Statement and Strategy

Confident in our Future, Risk Management Policy Statement and Strategy Confident in our Future, Risk Management Policy Statement and Strategy Risk Management Policy Statement Introduction Risk management aims to maximise opportunities and minimise exposure to ensure the residents

More information

Demonstrate and apply knowledge of project management in

Demonstrate and apply knowledge of project management in Demonstrate and apply knowledge of project management in mechanical engineering 22918 version 2 Page 1 of 5 Level 6 Credits 15 Purpose This unit standard is intended primarily for use in diploma courses

More information

RSA ARCHER OPERATIONAL RISK MANAGEMENT

RSA ARCHER OPERATIONAL RISK MANAGEMENT RSA ARCHER OPERATIONAL RISK MANAGEMENT 87% of organizations surveyed have seen the volume and complexity of risks increase over the past five years. Another 20% of these organizations have seen the volume

More information

Project Risk Management

Project Risk Management PROJECT ADVISORY Project Risk Management Leadership Series 9 kpmg.com/nz About the Leadership Series KPMG s Leadership Series is targeted towards owners of major capital programmes, but its content is

More information

Risk Management Policy

Risk Management Policy Risk Management Policy Responsible Officer Author Ben Bennett, Business Planning & Resources Director Julian Lewis, Governance Manager Date effective from December 2008 Date last amended December 2012

More information

Managing Overall Project Risk. Abstract

Managing Overall Project Risk. Abstract Managing Overall Project Risk Dr David Hillson, PMI Fellow, PMP, HonFAPM, FRSA, FIRM, FCMI, CMgr, MIOD The Risk Doctor Partnership, david@risk-doctor.com Abstract Leading project risk management guidelines

More information

Understanding risk exposure using multiple hierarchies. Introduction

Understanding risk exposure using multiple hierarchies. Introduction Understanding risk exposure using multiple hierarchies David Hillson PhD PMP FAPM FIRM MCMI FRSA Director, Risk Doctor & Partners Introduction Risk management is recognised as an essential contributor

More information

A P3M3 Maturity Assessment for Attorney Generals Department Prepared by James Bawtree & Rod Sowden Dated 18 th November 2010

A P3M3 Maturity Assessment for Attorney Generals Department Prepared by James Bawtree & Rod Sowden Dated 18 th November 2010 A P3M3 Maturity Assessment for Attorney Generals Department Prepared by James Bawtree & Rod Sowden Dated 18 th November 2010 Attorney Generals Department P3M3 report Page 1 1 Contents 1 Contents... 2 2

More information

Linking Risk Management to Business Strategy, Processes, Operations and Reporting

Linking Risk Management to Business Strategy, Processes, Operations and Reporting Linking Risk Management to Business Strategy, Processes, Operations and Reporting Financial Management Institute of Canada February 17 th, 2010 KPMG LLP Agenda 1. Leading Practice Risk Management Principles

More information

Enhanced Portfolio Management in uncertain times

Enhanced Portfolio Management in uncertain times Enhanced Portfolio Management in uncertain times How businesses can generate and protect value through enhanced, risk return techniques improving portfolio and capital allocation decisions Contents Executive

More information

Benefits of conducting a Project Management Maturity Assessment with PM Academy:

Benefits of conducting a Project Management Maturity Assessment with PM Academy: PROJECT MANAGEMENT MATURITY ASSESSMENT At PM Academy we believe that assessing the maturity of your project is the first step in improving the infrastructure surrounding project management in your organisation.

More information

The Asset Management Landscape

The Asset Management Landscape The Asset Management Landscape ISBN 978-0-9871799-1-3 Issued November 2011 www.gfmam.org The Asset Management Landscape www.gfmam.org ISBN 978-0-9871799-1-3 Published November 2011 This version replaces

More information

The PMO as a Project Management Integrator, Innovator and Interventionist

The PMO as a Project Management Integrator, Innovator and Interventionist Article by Peter Mihailidis, Rad Miletich and Adel Khreich: Peter Mihailidis is an Associate Director with bluevisions, a project and program management consultancy based in Milsons Point in Sydney. Peter

More information

General Notes Time allowed 1 hour. Answer all 60 multiple choice questions Use the proforma answer sheet provided.

General Notes Time allowed 1 hour. Answer all 60 multiple choice questions Use the proforma answer sheet provided. Introductory Certificate The APM Project Fundamentals Qualification. Examination paper Candidate Number Date Location Examination Paper Sample Paper v1.4 General Notes Time allowed 1 hour. Answer all 60

More information

White Paper. PPP Governance

White Paper. PPP Governance PPP Governance The Governance of Projects, Programs and Portfolios (PPP) (sometimes called project governance for convenience) is the sub-set of corporate and organisational governance 1 focused on assisting

More information

Do not open this paper until instructed by the invigilator. Please note: This question paper must not be removed from the examination room.

Do not open this paper until instructed by the invigilator. Please note: This question paper must not be removed from the examination room. APM Introductory Certificate in Project Management Exam paper Candidate Reference Number Date of Exam Location of the Exam General Notes Time allowed 1 hour Answer all 60 multiple choice questions Use

More information

Skatteudvalget 2014-15 (2. samling) SAU Alm.del Bilag 48 Offentligt. Programme, Project & Service Management Analysis

Skatteudvalget 2014-15 (2. samling) SAU Alm.del Bilag 48 Offentligt. Programme, Project & Service Management Analysis Skatteudvalget 2014-15 (2. samling) SAU Alm.del Bilag 48 Offentligt Programme, Project & Service Management Analysis Table of Content 1 Executive Summary... 3 1.1 Scope of Work... 3 1.2 Methodology for

More information

RISK MANAGEMENT OVERVIEW - APM Project Pathway (Draft) RISK MANAGEMENT JUST A PART OF PROJECT MANAGEMENT

RISK MANAGEMENT OVERVIEW - APM Project Pathway (Draft) RISK MANAGEMENT JUST A PART OF PROJECT MANAGEMENT RISK MANAGEMENT OVERVIEW - APM Project Pathway (Draft) Risk should be defined as An uncertain event that, should it occur, would have an effect (positive or negative) on the project or business objectives.

More information

Project Risk Analysis toolkit

Project Risk Analysis toolkit Risk Analysis toolkit MMU has a corporate Risk Management framework that describes the standard for risk management within the university. However projects are different from business as usual activities,

More information

PORTFOLIO, PROGRAMME & PROJECT MANAGEMENT MATURITY MODEL (P3M3)

PORTFOLIO, PROGRAMME & PROJECT MANAGEMENT MATURITY MODEL (P3M3) PORTFOLIO, PROGRAMME & PROJECT MANAGEMENT MATURITY MODEL (P3M3) 1st February 2006 Version 1.0 1 P3M3 Version 1.0 The OGC logo is a Registered Trade Mark of the Office of Government Commerce This is a Value

More information

Asset Management Policy March 2014

Asset Management Policy March 2014 Asset Management Policy March 2014 In February 2011, we published our current Asset Management Policy. This is the first update incorporating further developments in our thinking on capacity planning and

More information

Understanding and articulating risk appetite

Understanding and articulating risk appetite Understanding and articulating risk appetite advisory Understanding and articulating risk appetite Understanding and articulating risk appetite When risk appetite is properly understood and clearly defined,

More information

THE SOUTH AFRICAN HERITAGE RESOURCES AGENCY ENTERPRISE RISK MANAGEMENT FRAMEWORK

THE SOUTH AFRICAN HERITAGE RESOURCES AGENCY ENTERPRISE RISK MANAGEMENT FRAMEWORK THE SOUTH AFRICAN HERITAGE RESOURCES AGENCY ENTERPRISE RISK MANAGEMENT FRAMEWORK ACCOUNTABLE SIGNATURE AUTHORISED for implementation SIGNATURE On behalf of Chief Executive Officer SAHRA Council Date Date

More information

WelcomRisk. For organizations looking to improve project performance through proactive risk management.

WelcomRisk. For organizations looking to improve project performance through proactive risk management. Welcom For organizations looking to improve project performance through proactive risk management. Improved Project Performance Through Better Management. All projects are exposed to varying degrees of

More information

Addressing Cyber Risk Building robust cyber governance

Addressing Cyber Risk Building robust cyber governance Addressing Cyber Risk Building robust cyber governance Mike Maddison Partner Head of Cyber Risk Services The future of security The business environment is changing The IT environment is changing The cyber

More information

It's time for Active Risk Manager. Successful Organizations have World-Class Risk Management

It's time for Active Risk Manager. Successful Organizations have World-Class Risk Management It's time for Active Risk Manager Successful Organizations have World-Class Risk Management It's time for Active Risk Manager Increased Business Complexity Means Increased Risk Exposure In today s global

More information

APPENDIX 50. Enterprise risk management - Risk management overview

APPENDIX 50. Enterprise risk management - Risk management overview APPENDIX 50 Enterprise risk management - Risk management overview Energex regulatory proposal October 2014 ENTERPRISE RISK MANAGEMENT Risk Management Overview (RMO) 06 11 2013 Table of Contents 1. INTRODUCTION...

More information

treasury risk management

treasury risk management Governance, Concise guide Risk to and Compliance treasury risk management KPMG is a leading provider of professional services including audit, tax and advisory. KPMG in Australia has over 5000 partners

More information

Risk Management & Business Continuity Manual 2011-2014

Risk Management & Business Continuity Manual 2011-2014 ANNEX C Risk Management & Business Continuity Manual 2011-2014 Produced by the Risk Produced and by the Business Risk and Business Continuity Continuity Team Team February 2011 April 2011 Draft V.10 Page

More information

A Risk Management Standard

A Risk Management Standard A Risk Management Standard Introduction This Risk Management Standard is the result of work by a team drawn from the major risk management organisations in the UK, including the Institute of Risk management

More information

Network Rail Infrastructure Projects Joint Relationship Management Plan

Network Rail Infrastructure Projects Joint Relationship Management Plan Network Rail Infrastructure Projects Joint Relationship Management Plan Project Title Project Number [ ] [ ] Revision: Date: Description: Author [ ] Approved on behalf of Network Rail Approved on behalf

More information

2.1 STAGE 1 PROJECT PROCUREMENT STRATEGY

2.1 STAGE 1 PROJECT PROCUREMENT STRATEGY APM Procurement Guide : Draft7_RevA_Chapter 2.1_Project Procurement Strategy_Jan12 1 2.1 STAGE 1 PROJECT PROCUREMENT STRATEGY In this stage, the project definition is developed so that decisions can be

More information

Middlesbrough Manager Competency Framework. Behaviours Business Skills Middlesbrough Manager

Middlesbrough Manager Competency Framework. Behaviours Business Skills Middlesbrough Manager Middlesbrough Manager Competency Framework + = Behaviours Business Skills Middlesbrough Manager Middlesbrough Manager Competency Framework Background Middlesbrough Council is going through significant

More information

Operational Risk Management - The Next Frontier The Risk Management Association (RMA)

Operational Risk Management - The Next Frontier The Risk Management Association (RMA) Operational Risk Management - The Next Frontier The Risk Management Association (RMA) Operational risk is not new. In fact, it is the first risk that banks must manage, even before they make their first

More information

ENTERPRISE RISK MANAGEMENT FRAMEWORK

ENTERPRISE RISK MANAGEMENT FRAMEWORK ENTERPRISE RISK MANAGEMENT FRAMEWORK COVENANT HEALTH LEGAL & RISK MANAGEMENT CONTENTS 1.0 PURPOSE OF THE DOCUMENT... 3 2.0 INTRODUCTION AND OVERVIEW... 4 3.0 GOVERNANCE STRUCTURE AND ACCOUNTABILITY...

More information

TEC Capital Asset Management Standard January 2011

TEC Capital Asset Management Standard January 2011 TEC Capital Asset Management Standard January 2011 TEC Capital Asset Management Standard Tertiary Education Commission January 2011 0 Table of contents Introduction 2 Capital Asset Management 3 Defining

More information

Guidance on Risk Management, Internal Control and Related Financial and Business Reporting

Guidance on Risk Management, Internal Control and Related Financial and Business Reporting Guidance Corporate Governance Financial Reporting Council September 2014 Guidance on Risk Management, Internal Control and Related Financial and Business Reporting The FRC is responsible for promoting

More information

1. Background and business case

1. Background and business case 1. Background and business case This section explains the context and why the project is being undertaken. It provides the justification for investing the time and resources in the project. 1.1 Reasons

More information

Stakeholder management and. communication PROJECT ADVISORY. Leadership Series 3

Stakeholder management and. communication PROJECT ADVISORY. Leadership Series 3 /01 PROJECT ADVISORY Stakeholder management and communication Leadership Series 3 kpmg.com/nz About the Leadership Series KPMG s Leadership Series is targeted towards owners of major capital programmes,

More information

Contents. 2. Why use a Project Management methodology?

Contents. 2. Why use a Project Management methodology? Case Study Ericsson Services Ireland The APM Group Limited 7-8 Queen Square High Wycombe Buckinghamshire HP11 2BP Tel: + 44 (0) 1494 452450 Fax + 44 (0) 1494 459559 http://www.apmgroup.co.uk/ Q:\Users\Marie

More information

Enterprise Risk Management: Managing Uncertainty and Minimising Surprise

Enterprise Risk Management: Managing Uncertainty and Minimising Surprise Enterprise Risk Management: Managing Uncertainty and Minimising Surprise David Hillson Introduction 2 Many of the most important decisions made within an organisation relate to risk, because anything that

More information

Enterprise Risk Management

Enterprise Risk Management Enterprise Risk Management Topic Gateway Series No. 49 1 Prepared by Jasmin Harvey and Technical Information Service July 2008 About Topic Gateways Topic Gateways are intended as a refresher or introduction

More information

PRINCE2:2009 Glossary of Terms (English)

PRINCE2:2009 Glossary of Terms (English) accept (risk response) acceptance acceptance criteria activity agile methods approval approver assumption assurance A risk response to a threat where a conscious and deliberate decision is taken to retain

More information

ENTERPRISE RISK MANAGEMENT FRAMEWORK

ENTERPRISE RISK MANAGEMENT FRAMEWORK ROCKHAMPTON REGIONAL COUNCIL ENTERPRISE RISK MANAGEMENT FRAMEWORK 2013 Adopted 25 June 2013 Reviewed: October 2015 TABLE OF CONTENTS 1. Introduction... 3 1.1 Council s Mission... 3 1.2 Council s Values...

More information

OPERATIONAL PROJECT MANAGEMENT (USING MS PROJECT)

OPERATIONAL PROJECT MANAGEMENT (USING MS PROJECT) OPERATIONAL PROJECT MANAGEMENT (USING MS PROJECT) 3 DAY COURSE INTRODUCTION The principles of project management are generic and therefore can be applied to all projects regardless of business sector.

More information

Organisational Change Management Maturity

Organisational Change Management Maturity Organisational Change Management Maturity Change Management Maturity is a key element to true organisational agility; however maturity is being developed in an ad-hoc manner, with few companies reporting

More information

Program Management Professional (PgMP) Examination Content Outline

Program Management Professional (PgMP) Examination Content Outline Program Management Professional (PgMP) Examination Content Outline Project Management Institute Program Management Professional (PgMP ) Examination Content Outline April 2011 Published by: Project Management

More information

Enterprise Portfolio Management

Enterprise Portfolio Management Enterprise Portfolio Management Managing large volumes of structured data Through its powerful capabilities as a structural modeling tool, ABACUS Summary provides of whitepaper a ready-to-go Summary solution

More information

An Introduction to Continuous Controls Monitoring

An Introduction to Continuous Controls Monitoring An Introduction to Continuous Controls Monitoring Reduce compliance costs, strengthen the control environment and lessen the risk of unintentional errors and fraud Richard Hunt, Managing Director Marc

More information

Implementing a Metrics Program MOUSE will help you

Implementing a Metrics Program MOUSE will help you Implementing a Metrics Program MOUSE will help you Ton Dekkers, Galorath tdekkers@galorath.com Just like an information system, a method, a technique, a tool or an approach is supporting the achievement

More information

Avondale College Limited Enterprise Risk Management Framework 2014 2017

Avondale College Limited Enterprise Risk Management Framework 2014 2017 Avondale College Limited Enterprise Risk Management Framework 2014 2017 President s message Risk management is part of our daily life, something we do regularly; often without realising we are doing it.

More information

Clarius Group Risk Management Policy and Framework

Clarius Group Risk Management Policy and Framework 1. Introduction Clarius Group Risk Management Policy and Framework 1.1 Definition Risk is the chance of something happening that will have an impact on objectives. Risk provides the opportunity (upside)

More information

ORGANISING COMMITTEE POLICY AND GOVERNANCE FOR RISKS TO REPUTATION

ORGANISING COMMITTEE POLICY AND GOVERNANCE FOR RISKS TO REPUTATION ORGANISING COMMITTEE POLICY AND GOVERNANCE FOR RISKS TO REPUTATION Report from a High Level Workshop INTRODUCTION It is increasingly recognised that reputation is an important valuable asset, though it

More information

ITS Project Management Methodology

ITS Project Management Methodology ITS Project Management Methodology Information Technology Services Project Management Group 11/17/2014 Version 2.1 Author: ITS Project Management Group Document Control Change Record Date Author Version

More information

DTZ Corporate Finance Limited Pillar 3 Disclosures as at 30 April 2009

DTZ Corporate Finance Limited Pillar 3 Disclosures as at 30 April 2009 DTZ Corporate Finance Limited Pillar 3 Disclosures as at 30 April 2009 16 March 2010 Contents OVERVIEW 1 Introduction 1 Structure and principal activities 1 Basis of disclosures 1 Frequency of disclosures

More information

MANAGING THE SOFTWARE PUBLISHER AUDIT PROCESS

MANAGING THE SOFTWARE PUBLISHER AUDIT PROCESS MANAGING THE SOFTWARE PUBLISHER AUDIT PROCESS 3 THE USE OF BUSINESS SOFTWARE AND SPORTS ARE DEFINITELY QUITE SIMILAR; IF YOU WANT TO PLAY (USE THE SOFTWARE), YOU HAVE TO ACCEPT THE RULES. THIS INCLUDES

More information

In control: how project portfolio management can improve strategy deployment. Case study

In control: how project portfolio management can improve strategy deployment. Case study Case study In control: how project portfolio can improve strategy deployment Launching projects and initiatives to drive revenue and achieve business goals is common practice, but less so is implementing

More information

Cyber Defence Capability Assessment Tool (CDCAT ) Improving cyber security preparedness through risk and vulnerability analysis

Cyber Defence Capability Assessment Tool (CDCAT ) Improving cyber security preparedness through risk and vulnerability analysis Cyber Defence Capability Assessment Tool (CDCAT ) Improving cyber security preparedness through risk and vulnerability analysis An analogue approach to a digital world What foundations is CDCAT built on?

More information

Frameworks for IT Management

Frameworks for IT Management Frameworks for IT Management Copyright protected. Use is for Single Users only via a VHP Approved License. For information and printed versions please see www.vanharen.net 18 ITIL - the IT Infrastructure

More information

Project Risk Management. Presented by Stephen Smith

Project Risk Management. Presented by Stephen Smith Project Risk Management Presented by Stephen Smith Introduction Risk Management Insurance Business Financial Project Risk Management Project A temporary endeavour undertaken to create a unique product

More information

RISK MANAGEMENT FRAMEWORK. 2 RESPONSIBLE PERSON: Sarah Price, Chief Officer

RISK MANAGEMENT FRAMEWORK. 2 RESPONSIBLE PERSON: Sarah Price, Chief Officer RISK MANAGEMENT FRAMEWORK 1 SUMMARY The Risk Management Framework consists of the following: Risk Management policy Risk Management strategy Risk Management accountability Risk Management framework structure.

More information

Insight Report. Digital marketing governance From fragmentation to alignment to impact. In this report

Insight Report. Digital marketing governance From fragmentation to alignment to impact. In this report Insight Report In this report Using standards to create a globally consistent digital experience Creating a digital governance framework Monitoring and measurement Digital marketing governance From fragmentation

More information

The Fast Track Project Glossary is organized into four sections for ease of use:

The Fast Track Project Glossary is organized into four sections for ease of use: The Fast Track Management Glossary provides a handy reference guide to the fast track management model, encompassing the concepts, steps and strategies used to manage successful projects even in the face

More information

Responsible Investment Policy

Responsible Investment Policy (ABN 30 006 169 286) (AFSL 246664) October 2011 Version 4.0 (September 2011) Contents 1. Fund Objectives... 1 2. Implications of the Fund s Objectives on its Investments... 2 3. Policy on Responsible Investment...

More information

The optimization maturity model

The optimization maturity model The optimization maturity model Know where you are so you can move forward Table of contents 1 Digital optimization 2 Optimization maturity model 2 Five levels of optimization maturity 5 Benefits of becoming

More information

A structured approach to Enterprise Risk Management (ERM) and the requirements of ISO 31000

A structured approach to Enterprise Risk Management (ERM) and the requirements of ISO 31000 A structured approach to Enterprise Risk Management (ERM) and the requirements of ISO 31000 Contents Executive summary Introduction Acknowledgements Part 1: Risk, risk management and ISO 31000 1 Nature

More information

2009 Solvay Brussels School and IT Governance institute

2009 Solvay Brussels School and IT Governance institute IT Governance Masterclass Georges Ataya CISA, CGEIT, CISA, CISSP, MSCS, PBA International VP, IT Governance Institute Professor, Solvay Business School Managing Partner, ICT Control NV 1 Georges Ataya

More information

Change and project management

Change and project management Change and project management www.first.com What gets measured, gets d! -Change leader Change and Project Management Change and project management Prince 2, PMI and PCI When projects fail in an organisation,

More information

Risk Management Framework

Risk Management Framework Risk Management Framework Mandate and commitment Design of framework for managing risks Continual improvement of the framework Implementing risk management Monitoring and review of the framework Source:

More information

IRM CERTIFICATE AND DIPLOMA OUTLINE SYLLABUS

IRM CERTIFICATE AND DIPLOMA OUTLINE SYLLABUS IRM CERTIFICATE AND DIPLOMA OUTLINE SYLLABUS 1 Module 1: Principles of Risk and Risk Management Module aims The aim of this module is to provide an introduction to the principles and concepts of risk and

More information

Selecting a project management methodology

Selecting a project management methodology VICTORIAN GOVERNMENT CIO COUNCIL Project Management Selecting a project management methodology Guideline This guideline provides advice for selecting and tailoring a project management methodology. Keywords:

More information

PORTFOLIO, PROGRAMME & PROJECT MANAGEMENT OFFICES A PRACTICAL GUIDE TO SETTING UP A PMO (WITH EXAMPLES)

PORTFOLIO, PROGRAMME & PROJECT MANAGEMENT OFFICES A PRACTICAL GUIDE TO SETTING UP A PMO (WITH EXAMPLES) PORTFOLIO, PROGRAMME & PROJECT MANAGEMENT OFFICES A PRACTICAL GUIDE TO SETTING UP A PMO (WITH EXAMPLES) Developed by the Department of Health Informatics Directorate Informatics Capability Development

More information

Comparing the Differences and Complementary features of PRINCE2 and the PMI PMBOK Guide

Comparing the Differences and Complementary features of PRINCE2 and the PMI PMBOK Guide Comparing the Differences and Complementary features of PRINCE2 and the Guide PRINCE2 is the UK Government s structured project management method. PMI stands for the Project Management Institute producing

More information

Portfolio, Programme and Project Management Maturity Model - a Guide to Improving Performance

Portfolio, Programme and Project Management Maturity Model - a Guide to Improving Performance Portfolio, Programme and Project Management Maturity Model - a Guide to Improving Performance By Andy Murray Improving Performance Using Maturity Models The 1990's saw a dramatic increase in the number

More information

Project Management Office Best Practices

Project Management Office Best Practices An Oracle White Paper April 2009 Project Management Office Best Practices A step-by-step plan to build and improve your PMO Step by Step The first step to establishing a PMO is to determine your organisation

More information

PMI Lexicon of Project Management Terms

PMI Lexicon of Project Management Terms Project Management Institute PMI Lexicon of Project Management Terms Version 3.0 Published by: Project Management Institute, Inc. 14 Campus Boulevard Newtown Square, Pennsylvania 19073-3299 USA Phone:

More information

Enterprise IT Portfolio Governance and Management Model

Enterprise IT Portfolio Governance and Management Model STATE OF MICHIGAN Department of Information Technology Enterprise IT Portfolio Governance and Management Model NASCIO 2007 RECOGNITION AWARDS CATEGORY: IT PROJECT AND PORTFOLIO MANAGEMENT Enterprise IT

More information

Procurement & Supply Chain Management

Procurement & Supply Chain Management New Skills. New Thinking Procurement & Supply Chain Management Supply Chain Effectiveness Audit - Implementing lean processes in your supply chain 20 September 2012 Auckland 24 September 2012 Wellington

More information

GUIDANCE NOTE FOR DEPOSIT-TAKERS. Operational Risk Management. March 2012

GUIDANCE NOTE FOR DEPOSIT-TAKERS. Operational Risk Management. March 2012 GUIDANCE NOTE FOR DEPOSIT-TAKERS Operational Risk Management March 2012 Version 1.0 Contents Page No 1 Introduction 2 2 Overview 3 Operational risk - fundamental principles and governance 3 Fundamental

More information

Technology management in warship acquisition

Technology management in warship acquisition management in warship acquisition A J Shanks B.Eng(Hons) MIET BMT Defence Services Limited SYNOPSIS Today s warship designers and engineers look to technology to provide warships and systems better, cheaper

More information

1. What is PRINCE2? Projects In a Controlled Environment. Structured project management method. Generic based on proven principles

1. What is PRINCE2? Projects In a Controlled Environment. Structured project management method. Generic based on proven principles 1. What is PRINCE2? Projects In a Controlled Environment Structured project management method Generic based on proven principles Isolates the management from the specialist 2 1.1. What is a Project? Change

More information

Much attention has been focused recently on enterprise risk management (ERM),

Much attention has been focused recently on enterprise risk management (ERM), By S. Michael McLaughlin and Karen DeToro Much attention has been focused recently on enterprise risk management (ERM), not just in the insurance industry but in other industries as well. Across all industries,

More information

Purpose: Content: Definition: Benefits: outputs outcomes benefits Business Case dis-benefit Key Responsibilities: Approach: Executive Developed

Purpose: Content: Definition: Benefits: outputs outcomes benefits Business Case dis-benefit Key Responsibilities: Approach: Executive Developed Key Learning Points The Swirl Logo is a trade mark of the AXELOS Limited. Is used by the Project Board throughout the project to verify its continued viability:- Is the investment in this project still

More information

Expense Reduction in the Insurance Industry

Expense Reduction in the Insurance Industry Expense Reduction in the Insurance Industry David Holland 27/3/2013 2013 Towers Watson. All rights reserved. Agenda The Need for Expense Reduction in Insurance Pressures on insurers results Market activity

More information

International Diploma in Risk Management Syllabus

International Diploma in Risk Management Syllabus International Diploma in Risk Management Syllabus Module 1: Principles of Risk and Risk Management The aim of this module is to provide an introduction to the principles and concepts of risk and risk management.

More information

The New International Standard on the Practice of Risk Management A Comparison of ISO 31000:2009 and the COSO ERM Framework

The New International Standard on the Practice of Risk Management A Comparison of ISO 31000:2009 and the COSO ERM Framework The New International Standard on the Practice of Risk Management A Comparison of ISO 31000:2009 and the COSO ERM Framework Dorothy Gjerdrum, ARM-P, Chair of the ISO 31000 US TAG and Executive Director,

More information

Integrated Risk Management:

Integrated Risk Management: Integrated Risk Management: A Framework for Fraser Health For further information contact: Integrated Risk Management Fraser Health Corporate Office 300, 10334 152A Street Surrey, BC V3R 8T4 Phone: (604)

More information

Risk Management Policy Adopted by:

Risk Management Policy Adopted by: Risk Management Policy Adopted by: Infigen Energy Limited Infigen Energy (Bermuda) Limited Infigen Energy RE Limited in its capacity as Responsible Entity of Infigen Energy Trust Adopted: 17 December 2009

More information

Victorian Government Risk Management Framework. March 2015

Victorian Government Risk Management Framework. March 2015 Victorian Government Risk Management Framework March 2015 This document reproduces parts of the AS/NZS ISO 31000:2099 Risk Management Principles and Guidelines. Permission has been granted by SAI Global

More information

Integration of Income Management and Cost Management: A Complementary for Financial Analysis of Projects. Abstract. Introduction

Integration of Income Management and Cost Management: A Complementary for Financial Analysis of Projects. Abstract. Introduction Integration of Income Management and Cost Management: A Complementary for Financial Analysis of Projects Puian Masudifar, Deputy CEO, VIRA Consulting Engineers Fereydoun Fardad, Aryana Project Management

More information

ASSET MANAGEMENT TRAINING

ASSET MANAGEMENT TRAINING ASSET MANAGEMENT TRAINING 3rd and 4th August 2010, Duxton Hotel, Auckland Asset Economics, Lifecycle & Costing 18th & 19th August 2010, Mercure Hotel, Auckland 25th and 26th August 2010, Mercure Hotel,

More information

Begin Your BI Journey

Begin Your BI Journey Begin Your BI Journey As part of long-term strategy, healthcare entities seek opportunities for continuous improvement in order to meet the changing needs of their patients while also maintaining compliance

More information

Project Risk Management Single Subject Certificate Syllabus Levels 1&2 4 th Edition

Project Risk Management Single Subject Certificate Syllabus Levels 1&2 4 th Edition Project Risk Management Single Subject Certificate Syllabus Levels 1&2 4 th Edition The Single Subject Certificates in Project Risk Management (Risk SSC) are designed to build on the knowledge gained in

More information

S11 - Implementing IT Governance An Introduction Debra Mallette

S11 - Implementing IT Governance An Introduction Debra Mallette S11 - Implementing IT Governance An Introduction Debra Mallette S11 - Introduction to IT Governance Implementation using COBIT and Val IT Speaker: Debra Mallette, CGEIT, CISA, CSSBB Session Objectives

More information

An Effective Approach to Transition from Risk Assessment to Enterprise Risk Management

An Effective Approach to Transition from Risk Assessment to Enterprise Risk Management Bridgework: An Effective Approach to Transition from Risk Assessment to Enterprise Risk Management @Copyright Cura Software. All rights reserved. No part of this document may be transmitted or copied without

More information