Key Components of Enterprise Risk Management (ERM) Framework

Size: px
Start display at page:

Download "Key Components of Enterprise Risk Management (ERM) Framework"

Transcription

1 Key Components of Enterprise Risk Management (ERM) Framework Talha Karim May 7, :00 pm 3:00 pm

2 Objectives Introduction ERM Components ERM Implementation ERM Challenges 2

3 Introduction An ERM Framework provides a comprehensive view of Risk by taking an Integrated and Holistic approach. The key aim of an effective ERM Framework is to provide the organization the necessary controls, communication & risk-informed decision making to achieve the right balance between risk & reward. ERM: Provides higher effectiveness of the Risk Framework, resulting in lower/less unexpected losses & incidents. Promotes more forward-looking & strategic Risk related decision making. Is a concept, & not a system or ready-made methodology. Framework s maturity ladder is organic & unique for each organization. RMD-Risk Group 3 IIF MENA CRO - May 7-8, 2014

4 Introduction Ongoing process flowing through the organization Engages employees at every level ERM essentials: Applied in Business Strategy across the organization Provides assurance to the Management & Board of Directors Identifies potential events that may affect the Risk Appetite 4

5 Introduction ERM Framework Map Environment Infrastructure Process Strategy Execution Business Strategy Risk Strategy Risk Appetite Validation/ Reassessment Risk Identification Risk Assessment Risk Response Risk Control Organization & People Limits Methodologies Data Systems Policies Operations Reporting Governance Culture Performance Source: PricewaterhouseCoopers 5

6 Objectives Introduction ERM Components ERM Implementation ERM Challenges 6

7 ERM Components Business & Risk Strategy. Aligned with Strategic Objectives & Risk Appetite. 1 2 Mechanics of how the Risk Strategy & Risk Framework is assessed, executed, validated. Linked to systems, limits, & methodologies in order to provide a comprehensive view of Risk. 3 4 Framework is only successful via training, communication & a mature Risk Culture, complemented with a Riskbased Performance & Reward criteria. 7

8 ERM Components Risk Strategy/Risk Appetite/Risk Tolerance Risk Strategy is the base on which the Board of Directors will assess the Risk Appetite Framework in consideration of the organization's Business plan. The Risk Strategy is the best place for ERM to begin! Risk Appetite Statement Defines the Risk Appetite and Risk Tolerance parameters which are translated into Key Risk Indicators. Risk Appetite is an expression of the maximum level of Risk that the Bank is prepared to accept in order to deliver Business Objectives. Risk Appetite & Risk Tolerance Risk Tolerance are the boundaries of Risk taking outside of which the Bank is not prepared to venture in the pursuit of Business Objectives. Alternatively, Tolerances are defined as the tripwires that alert the organization to an impending breach of Risks. Risk Tolerance per Risk Category Risk Tolerance per Risk Category will be cascaded to specific maximum Risk that the Bank is willing to take related to each of the following: Wholesale Banking Credit Risk Consumer Banking Credit Risk Market Risk Interest Rate Risk Liquidity Risk Operational Risk Risk Limits Risk Limits are cascaded down further from the Risk Appetite, Risk Tolerances, Risk Tolerances per Risk Category to the various Business units. These are the existing Board of Directors approved limits in policies. 8

9 ERM Components Risk Strategy/Risk Appetite/Risk Tolerance (Cont d) 1 Performance 2 Risk Universe (all possible outcomes) Unexpected Performance Performance A Expected Performance Performance A Risk Universe t 0 Time t 1 t 0 Time t 1 Unexpected Negative Performance 3 Risk Tolerance 4 Risk Appetite Performance Y Risk Tolerance Performance A Risk Appetite t 0 Time t 1 t 0 Time t 1 Source: The Institute of Risk Management 9

10 ERM Components Process Identify Risks that may impact strategy. Establish an integrated or crossdiscipline approach. Risk Assessment Impact & prioritization of identified Risks. Categories of avoidance or acceptance of Risks. Risk Control Adherence to procedures, policies, & Regulations. Risk Identification Risk Response 10

11 ERM Components Infrastructure: Capacity Targets IDEAL HIGH Value Capacity HIGH Reporting Two dimension stage of reporting and analyzing. Analyzing There are thousands of dimensions that should be created via a cube in order to analyze effectively. Financial Engineering Stage where there will be capability of modeling and decision making. 11

12 ERM Components Infrastructure: Map Components in Phases Phase II: Advanced Measurements & Analytics Phase III: Good to Have Phase I: Foundation & Data Accessibility Basic quality & timely MIS needs to be available. Risk Managers require access to MIS for regular analytics. Strategic implementation of systems & enhanced technology requirements. Optimize projects with Enterprise Risk Management systems, leading to cost efficiencies, holistic functionality. 12

13 Objectives Introduction ERM Components ERM Implementation ERM Challenges 13

14 ERM Implementation Getting Started Step 5 Formulate a structured & realistic Road Map with timelines & accountability. Step 1 Endorsement from the Board of Directors via the Risk Committee Step 4 Conduct Gap Analysis & Review Risk-Related Initiatives Step 2 Define Stakeholders & Responsibilities Step 3 Establish a Task Force/Committee 14

15 ERM Implementation Stakeholders & Responsibilities Board of Directors Risk Committee Internal Audit Endorse ERM initiative & delegate oversight to the Risk Committee & internal Task Force/Committee. Evaluate the effectiveness of the ERM Framework in its planned meetings. Independently evaluate the effectiveness of the ERM Framework, & ensure the objectives are adhered to. Risk Finance IT Lead & manage the establishment of ERM initiative & implementation plan, supported by Finance& IT. Educate key stakeholders on ERM, & continuously update progress. Support and provide the necessary MIS required for the ERM architecture & road map. Support and provide the necessary technology/system requirement for the ERM architecture& road map. 15

16 ERM Implementation Task Force or Committee A Project Task Force/Committee, should be Chaired by the CRO & the Project Office (headed by ERM Champion from the Risk Group). Members in the ERM Project Task Force or Committee should be: Chief Risk Officer (Chairman) Chief Financial Officer Chief Information Officer ERM Champion, Risk Group (Project Office) * There are benefits to include other members & engage more C level Management, even invite the CEO for updates! 16

17 ERM Implementation Sample Gap Analysis & Risk Initiatives Functionality Low Medium High 1 STRATEGY 2 PROCESS 3 INFRASTRUCTURE 4 ENVIRONMENT Comprehensive Business & Risk Strategy aligned with the Risk Appetite. Clear links between Risk-based Capital Modeling and Strategic Planning. Comprehensive & timely processes for Identifying, Monitoring & Measuring Risks. Systematic procedures to anticipate and respond to emerging Risks. Training and Talent Management strategy to ensure sufficient skills and resources. Ensure appropriate data quality and availability. Development of viable Risk Technology architecture. Comprehensive Risk Measurements. Common metrics for Risk and Finance. Set and enforce bank-wide Risk Policies & Limits. Adequate Governance Structure. Risk Culture Framework (Awareness, Respect, etc.). Risk-Adjusted Performance. 17

18 ERM Implementation Sample Flight Plan for the ERM Champion ID Task Name Duration Start Finish % Complete Actual Finish Resource Names 1 1. Phase I- Foundation & Data Accessibility 392 days Jan 2 '13 Jun 30 '14 0% NA Finance,IT & Risk Q1 '13 Q2 '13 Q3 '13 Q4 '13 Q1 '14 Q2 '14 Q3 '14 Q4 '14 Q1 '15 Q2 '15 Q3 '15 Q4 '15 Q1 '16 Q2 '16 1. Phase I- Foundation & Data Accessibility Jun 30 '14 2 A) Basic Strategic Planning & Risk Appetite 389 days Jan 2 '13 Jun 30 '14 0% NA Finance and Risk 3 1. RAROC 346 days Jan 2 '13 Jun 30 '14 25% NA Finance Whole Sale Banking 91 days May 28 '13 Sep 30 '13 100% Nov 3 '13 Finance & Risk Q2 results will be presented to the CEO1 day Jul 31 '13 Jul 31 '13 0% NA Finance & Risk IB and obtain a high level agreement on the model Follow-up with Finance ; As per Finance 1 day Sep 30 '13 Sep 30 '13 0% NA on track to be delivered for Nov. BRC meeting. A) Basic Strategic Planning & Risk Appetite 1. RAROC Finance May 28 ' Whole Sale Sep 30 Banking '13 Finance & Risk Finance & Risk Sep 30 '13 Jun 30 '14 Jun 30 ' Retail Asset Products 263 days Mar 28 '13 Mar 31 '14 50% NA Finance & Mar Risk28 ' Retail Asset Products Mar 31 '14 Finance & Risk LoB and Bank-wide Reporting 285 days May 28 '13 Jun 30 '14 0% NA Finance & RiskMay 28 ' LoB and Bank-wide ReportingJun 30 '14 Finance & Risk Use of RAROC as a parameter for new 285 days May 28 '13 Jun 30 '14 0% NA Finance & Risk May 28 ' Use of RAROC as a parameter Jun for new 30 '14loan agreements (projection). loan agreements (projection). Finance & Risk Risk Strategy 153 days Jun 2 '13 Dec 31 '13 100% Nov 3 '13 Risk Jun 2 '13 2. Risk Strategy Dec 31 '13 Risk Conducted kick off meeting with Business. 1 day Jun 12 '13 Jun 12 '13 0% NA Risk,IB & Consumer Banking Jun 12 '13 Risk,IB & Consumer Banking Conducted meeting with Finance 1 day Jul 31 '13 Jul 31 '13 0% NA Finance & Risk Jul 31 '13 Finance & Risk regarding budget Met with CEO & Senior Management to10 days Sep 1 '13 Sep 13 '13 0% NA Sep 1 '13 discuss content of the Risk Strategy Policy and Risk Appetite Draft Policy to be completed by Oct days Oct 1 '13 Oct 15 '13 0% NA Oct 1 ' Consolidated Earnings at Risk 521 days Jan 2 '13 Dec 31 '14 75% NA Risk 3. Consolidated Earnings at Risk Risk Dec 31 '14 18

19 ERM Implementation Sample Task Force/Committee Dashboard 19

20 ERM Implementation Sample Task Force/Committee Dashboard (Cont d) Cube Analytics Concentration Risk Colleteral Managemenet Nice to Have (Reports) 90% 35% 40% 32% AFU Strategic Analytics Business Banking Collections 10% 15% 25% 30% RCSA KRI Heat Map Fraud Protection Deals Reservation 100% 96% 100% 20% 10% Advanced VaR Internal Migration Production 100% 90% 0% Advanced Basel Training Analytics 63% 35% Kick Off Requirement Gathering UAT Phase Production Roll out Project Closure 100% 100% 40% 0% 0% 20

21 Objectives Introduction ERM Components ERM Implementation ERM Challenges 21

22 Sample ERM Challenges Risk Strategy/Risk Appetite Acceptability. Qualitative Risks (Reputational, Strategic). Appetite, Tolerance, Limits not synchronized. Process Integrated or cross-discipline Risk approach. Unclear Risk Response. Infrastructure Harmonization of Risk Technology/ MIS (legacy & new). Talent. Priorities are not clear or realistic. Reliable Data. Dynamic reporting vs. Static. Project Management. Environment Communication, awareness, & embedded Risk Culture needs higher priority. Organizational support. 22

23 Q&A Talha Karim Head of Risk Management, CIB 23

In accordance with risk management best practices, below describes the standard process for enterprise risk management (ERM), including:

In accordance with risk management best practices, below describes the standard process for enterprise risk management (ERM), including: Enterprise Risk Management Process and Procedures Scope In accordance with risk management best practices, below describes the standard process for enterprise risk management (ERM), including: Risk identification

More information

AT&T Global Network Client for Windows Product Support Matrix January 29, 2015

AT&T Global Network Client for Windows Product Support Matrix January 29, 2015 AT&T Global Network Client for Windows Product Support Matrix January 29, 2015 Product Support Matrix Following is the Product Support Matrix for the AT&T Global Network Client. See the AT&T Global Network

More information

Managing Risk at Bank of America Corporation. Overview

Managing Risk at Bank of America Corporation. Overview Managing Risk at Bank of America Corporation Overview Risk is inherent in every material business activity that we undertake. Our business exposes us to strategic, credit, market, liquidity, compliance,

More information

Enterprise Risk Management

Enterprise Risk Management Enterprise Risk Management The Basics or ERM 101 1 Enterprise Risk Management Enterprise risk management deals with risks and opportunities affecting value creation or preservation, defined as: COSO s

More information

Principles for An. Effective Risk Appetite Framework

Principles for An. Effective Risk Appetite Framework Principles for An Effective Risk Appetite Framework 18 November 2013 Table of Contents Page I. Introduction... 1 II. Key definitions... 2 III. Principles... 3 1. Risk appetite framework... 3 1.1 An effective

More information

The College of New Jersey Enterprise Risk Management and Higher Education For Discussion Purposes Only January 2012

The College of New Jersey Enterprise Risk Management and Higher Education For Discussion Purposes Only January 2012 The College of New Jersey Enterprise Risk Management and Higher Education For Discussion Purposes Only Agenda Introduction Basic program components Recent trends in higher education risk management Why

More information

COMPARISON OF FIXED & VARIABLE RATES (25 YEARS) CHARTERED BANK ADMINISTERED INTEREST RATES - PRIME BUSINESS*

COMPARISON OF FIXED & VARIABLE RATES (25 YEARS) CHARTERED BANK ADMINISTERED INTEREST RATES - PRIME BUSINESS* COMPARISON OF FIXED & VARIABLE RATES (25 YEARS) 2 Fixed Rates Variable Rates FIXED RATES OF THE PAST 25 YEARS AVERAGE RESIDENTIAL MORTGAGE LENDING RATE - 5 YEAR* (Per cent) Year Jan Feb Mar Apr May Jun

More information

COMPARISON OF FIXED & VARIABLE RATES (25 YEARS) CHARTERED BANK ADMINISTERED INTEREST RATES - PRIME BUSINESS*

COMPARISON OF FIXED & VARIABLE RATES (25 YEARS) CHARTERED BANK ADMINISTERED INTEREST RATES - PRIME BUSINESS* COMPARISON OF FIXED & VARIABLE RATES (25 YEARS) 2 Fixed Rates Variable Rates FIXED RATES OF THE PAST 25 YEARS AVERAGE RESIDENTIAL MORTGAGE LENDING RATE - 5 YEAR* (Per cent) Year Jan Feb Mar Apr May Jun

More information

Enterprise Risk Management

Enterprise Risk Management Cayman Islands Society of Professional Accountants Enterprise Risk Management March 19, 2015 Dr. Sandra B. Richtermeyer, CPA, CMA What is Risk Management? Risk management is a process, effected by an entity's

More information

An Effective Approach to Transition from Risk Assessment to Enterprise Risk Management

An Effective Approach to Transition from Risk Assessment to Enterprise Risk Management Bridgework: An Effective Approach to Transition from Risk Assessment to Enterprise Risk Management @Copyright Cura Software. All rights reserved. No part of this document may be transmitted or copied without

More information

Enterprise Risk Management: From Theory to Practice

Enterprise Risk Management: From Theory to Practice INSURANCE Enterprise Risk Management: From Theory to Practice KPMG LLP Executive Summary Enterprise Risk Management (ERM) is a structured and disciplined business tool aligning strategy, processes, people,

More information

Consumer ID Theft Total Costs

Consumer ID Theft Total Costs Billions Consumer and Business Identity Theft Statistics Business identity (ID) theft is a growing crime and is a growing concern for state filing offices. Similar to consumer ID theft, after initially

More information

Enterprise Risk Management VCU Process

Enterprise Risk Management VCU Process VCU Process What is Enterprise Risk Management? An organization-wide systematic approach to identify and tactically manage risk. A best practice to prioritize risk and implement processes to monitor risk.

More information

2012 US Insurance ERM & ORSA Survey Key results and findings

2012 US Insurance ERM & ORSA Survey Key results and findings www.pwc.com 2012 US Insurance ERM & ORSA Survey Key results and findings June 2013 Henry Jupe Director, Insurance Risk and Capital Practice henry.m.x.jupe@us.pwc.com Antitrust notice The Casualty Actuarial

More information

Developing an Effective Enterprise Risk Management Program

Developing an Effective Enterprise Risk Management Program Developing an Effective Enterprise Risk Management Program Jay Brietz, CPA and CIA Senior Manager This material was used by Elliott Davis Decosimo during an oral presentation; it is not a complete record

More information

Basel Committee on Banking Supervision. Review of the Principles for the Sound Management of Operational Risk

Basel Committee on Banking Supervision. Review of the Principles for the Sound Management of Operational Risk Basel Committee on Banking Supervision Review of the Principles for the Sound Management of Operational Risk 6 October 2014 This publication is available on the BIS website (www.bis.org). Bank for International

More information

Operational Risk Management Program Version 1.0 October 2013

Operational Risk Management Program Version 1.0 October 2013 Introduction This module applies to Fannie Mae and Freddie Mac (collectively, the Enterprises), the Federal Home Loan Banks (FHLBanks), and the Office of Finance, (which for purposes of this module are

More information

Linking Risk Management to Business Strategy, Processes, Operations and Reporting

Linking Risk Management to Business Strategy, Processes, Operations and Reporting Linking Risk Management to Business Strategy, Processes, Operations and Reporting Financial Management Institute of Canada February 17 th, 2010 KPMG LLP Agenda 1. Leading Practice Risk Management Principles

More information

Professional. Compliance & Ethics. 19 The cost of unethical behavior. 33 Graduate degrees in Compliance: Training the next generation

Professional. Compliance & Ethics. 19 The cost of unethical behavior. 33 Graduate degrees in Compliance: Training the next generation Compliance & Ethics May 2014 Professional a publication of the society of corporate compliance and ethics www.corporatecompliance.org Growing the SCCE: A 10-year perspective from SCCE Co-Chairs See page

More information

The members of the Executive Risk Management Committee ( ERMC ) reviewed the proposed Policy and Charter and recommend their approval.

The members of the Executive Risk Management Committee ( ERMC ) reviewed the proposed Policy and Charter and recommend their approval. Memorandum Date: March 29, 2016 To: From: Subject: Audit Committee Soubhagya Parija Senior Vice President and Chief Risk Officer Company Policy - Risk Management and SUMMARY The Audit Committee of the

More information

IIA POSITION PAPER: THE ROLE OF INTERNAL AUDITING IN ENTERPRISE-WIDE RISK MANAGEMENT

IIA POSITION PAPER: THE ROLE OF INTERNAL AUDITING IN ENTERPRISE-WIDE RISK MANAGEMENT IIA POSITION PAPER: THE ROLE OF INTERNAL AUDITING IN ENTERPRISE-WIDE RISK MANAGEMENT Revised: Page 1 of 8 Introduction The importance to strong corporate governance of managing risk has been increasingly

More information

Analysis One Code Desc. Transaction Amount. Fiscal Period

Analysis One Code Desc. Transaction Amount. Fiscal Period Analysis One Code Desc Transaction Amount Fiscal Period 57.63 Oct-12 12.13 Oct-12-38.90 Oct-12-773.00 Oct-12-800.00 Oct-12-187.00 Oct-12-82.00 Oct-12-82.00 Oct-12-110.00 Oct-12-1115.25 Oct-12-71.00 Oct-12-41.00

More information

Enterprise Risk Management Program

Enterprise Risk Management Program Enterprise Risk Management Program APPA s Risk Management & Insurance Meeting Austin, Texas March 29, 2007 Presented by: L.D. Hollingsworth Agenda Introduction - Why ERM? Governance & Reporting Structure

More information

CSR / Sustainability Governance and Management Assessment By Coro Strandberg Principal, Strandberg Consulting www.corostrandberg.

CSR / Sustainability Governance and Management Assessment By Coro Strandberg Principal, Strandberg Consulting www.corostrandberg. Introduction CSR / Sustainability Governance and Management Assessment By Coro Strandberg Principal, Strandberg Consulting www.corostrandberg.com June 2015 Companies which adopt CSR or sustainability 1

More information

Employee performance management in a global setting. Brenda Wilson

Employee performance management in a global setting. Brenda Wilson Employee performance management in a global setting Brenda Wilson Performance management overview What is performance management? Performance management is a CORE business process driven by business strategy,

More information

www.pwc.com/us/insurance PwC s 2012 U.S. Insurance ERM & ORSA Readiness Survey

www.pwc.com/us/insurance PwC s 2012 U.S. Insurance ERM & ORSA Readiness Survey www.pwc.com/us/insurance PwC s 2012 U.S. Insurance ERM & ORSA Readiness Survey PwC s 2012 U.S. Insurance ERM & ORSA Readiness Survey In September 2011, the National Association of Insurance Commissioners

More information

Ashley Institute of Training Schedule of VET Tuition Fees 2015

Ashley Institute of Training Schedule of VET Tuition Fees 2015 Ashley Institute of Training Schedule of VET Fees Year of Study Group ID:DECE15G1 Total Course Fees $ 12,000 29-Aug- 17-Oct- 50 14-Sep- 0.167 blended various $2,000 CHC02 Best practice 24-Oct- 12-Dec-

More information

Matthew E. Breecher Breecher & Company PC November 12, 2008

Matthew E. Breecher Breecher & Company PC November 12, 2008 Applying COSO s Enterprise Risk Management Integrated Framework Matthew E. Breecher Breecher & Company PC November 12, 2008 The basic outline for this presentation was provided by: Objectives for the session:

More information

and Risk Tolerance in an Effective ERM Program

and Risk Tolerance in an Effective ERM Program The Roles of Risk Appetite and Risk Tolerance in an Effective ERM Program Eric Gerner, Risk Advisory Services Director Tuesday, July 10, 2012 General Information Share the webinar Ask a question Votes

More information

Roles: Scrum Master & Project Manager

Roles: Scrum Master & Project Manager Roles: Scrum Master & Project Manager Scrum Master: Facilitate collaborative meetings Track team performance Remove impediments (Risk, Issue) Validate team alignment to Agile framework and scope Drive

More information

Case 2:08-cv-02463-ABC-E Document 1-4 Filed 04/15/2008 Page 1 of 138. Exhibit 8

Case 2:08-cv-02463-ABC-E Document 1-4 Filed 04/15/2008 Page 1 of 138. Exhibit 8 Case 2:08-cv-02463-ABC-E Document 1-4 Filed 04/15/2008 Page 1 of 138 Exhibit 8 Case 2:08-cv-02463-ABC-E Document 1-4 Filed 04/15/2008 Page 2 of 138 Domain Name: CELLULARVERISON.COM Updated Date: 12-dec-2007

More information

RISK MANAGEMENT OVERVIEW 2011 RISK CONFERENCE SPONSORED BY THE FEDERAL RESERVE BANK OF CHICAGO AND DEPAUL UNIVERSITY

RISK MANAGEMENT OVERVIEW 2011 RISK CONFERENCE SPONSORED BY THE FEDERAL RESERVE BANK OF CHICAGO AND DEPAUL UNIVERSITY RISK MANAGEMENT OVERVIEW 2011 RISK CONFERENCE SPONSORED BY THE FEDERAL RESERVE BANK OF CHICAGO AND DEPAUL UNIVERSITY PRESENTED BY: LEN WIATR, CHIEF RISK OFFICER Len s Risk Management Philosophy Build a

More information

ENTERPRISE RISK MANAGEMENT FRAMEWORK

ENTERPRISE RISK MANAGEMENT FRAMEWORK ENTERPRISE RISK MANAGEMENT FRAMEWORK COVENANT HEALTH LEGAL & RISK MANAGEMENT CONTENTS 1.0 PURPOSE OF THE DOCUMENT... 3 2.0 INTRODUCTION AND OVERVIEW... 4 3.0 GOVERNANCE STRUCTURE AND ACCOUNTABILITY...

More information

Chapter 4. The IM/IT Portfolio Management Office

Chapter 4. The IM/IT Portfolio Management Office Chapter 4 The IM/IT Portfolio Management Office Learning Objectives Identify some of the primary causes of IM/IT project failures. Describe the main differences between IM/IT project management, IM/IT

More information

HSBC FINANCE CORPORATION CHARTER OF THE RISK COMMITTEE

HSBC FINANCE CORPORATION CHARTER OF THE RISK COMMITTEE HSBC FINANCE CORPORATION CHARTER OF THE RISK COMMITTEE I. Committee Purpose The Risk Committee is appointed by the Board of Directors of HSBC Finance Corporation (the Corporation ) and is responsible,

More information

Sound Transit Internal Audit Report - No. 2014-3

Sound Transit Internal Audit Report - No. 2014-3 Sound Transit Internal Audit Report - No. 2014-3 IT Project Management Report Date: Dec. 26, 2014 Table of Contents Page Background 2 Audit Approach and Methodology 2 Summary of Results 4 Findings & Management

More information

Lessons from McKesson s Approach to Maintaining a Mature, Cost-Effective Sarbanes-Oxley Program

Lessons from McKesson s Approach to Maintaining a Mature, Cost-Effective Sarbanes-Oxley Program Orange County Convention Center Orlando, Florida May 15-18, 2011 Lessons from McKesson s Approach to Maintaining a Mature, Cost-Effective Sarbanes-Oxley Program Vickie Pilotti Kelly Worley Ben Wienand

More information

Streamlining the Annual Risk Assessment Process

Streamlining the Annual Risk Assessment Process Streamlining the Annual Risk Assessment Process Presenter: Gregory Jordan, CPA, CIA, CRMA, FLMI Senior Vice President, Chief Audit Executive Nationwide Insurance Gregory Jordan, CPA, CIA, CRMA, FLMI Chief

More information

How To Improve Your Business

How To Improve Your Business IT Risk Management Life Cycle and enabling it with GRC Technology 21 March 2013 Overview IT Risk management lifecycle What does technology enablement mean? Industry perspective Business drivers Trends

More information

THE ROLE OF FINANCE AND ACCOUNTING IN ENTERPRISE RISK MANAGEMENT

THE ROLE OF FINANCE AND ACCOUNTING IN ENTERPRISE RISK MANAGEMENT THE ROLE OF FINANCE AND ACCOUNTING IN ENTERPRISE RISK MANAGEMENT Let me begin by thanking Baruch College for giving me the opportunity to present this year s prestigious Emanuel Saxe Lecture in Accounting.

More information

Risk committee performance evaluation

Risk committee performance evaluation Risk committee performance evaluation While there is currently not a legal or regulatory requirement for board risk committees to complete a performance evaluation, King III recommends regular performance

More information

Enhanced Vessel Traffic Management System Booking Slots Available and Vessels Booked per Day From 12-JAN-2016 To 30-JUN-2017

Enhanced Vessel Traffic Management System Booking Slots Available and Vessels Booked per Day From 12-JAN-2016 To 30-JUN-2017 From -JAN- To -JUN- -JAN- VIRP Page Period Period Period -JAN- 8 -JAN- 8 9 -JAN- 8 8 -JAN- -JAN- -JAN- 8-JAN- 9-JAN- -JAN- -JAN- -JAN- -JAN- -JAN- -JAN- -JAN- -JAN- 8-JAN- 9-JAN- -JAN- -JAN- -FEB- : days

More information

DESIGN BUILD TEST TRAIN/DEPLOY MAINTENANCE

DESIGN BUILD TEST TRAIN/DEPLOY MAINTENANCE SOLUTION PLAN REQUIREMENTS ANALYSIS DESIGN BUILD TEST TRAIN/DEPLOY MAINTENANCE Executive Summary The project will document campus requirements for IAM functionality and select and procure one or more technology

More information

Anatomy of an Enterprise Software Delivery Project

Anatomy of an Enterprise Software Delivery Project Chapter 2 Anatomy of an Enterprise Software Delivery Project Chapter Summary I present an example of a typical enterprise software delivery project. I examine its key characteristics and analyze specific

More information

The Path Forward: Integrated Transition Plan October 2015

The Path Forward: Integrated Transition Plan October 2015 The Path Forward: Integrated Transition Plan October 2015 Table of Contents The Plan 5 Transitioning to a Modern System 5 PwC: 19 Recommendations 6 Validation Process 6 Value for Money 9 Looking to the

More information

Risk Management Framework

Risk Management Framework Risk Management Framework Mandate and commitment Design of framework for managing risks Continual improvement of the framework Implementing risk management Monitoring and review of the framework Source:

More information

Enterprise Risk Management in a Highly Uncertain World. A Presentation to the Government-University- Industry Research Roundtable June 20, 2012

Enterprise Risk Management in a Highly Uncertain World. A Presentation to the Government-University- Industry Research Roundtable June 20, 2012 Enterprise Risk Management in a Highly Uncertain World A Presentation to the Government-University- Industry Research Roundtable June 20, 2012 CRO Council Introduction Mission The North American CRO Council

More information

RSA ARCHER OPERATIONAL RISK MANAGEMENT

RSA ARCHER OPERATIONAL RISK MANAGEMENT RSA ARCHER OPERATIONAL RISK MANAGEMENT 87% of organizations surveyed have seen the volume and complexity of risks increase over the past five years. Another 20% of these organizations have seen the volume

More information

Chief Risk Officers in the Mutual Fund Industry: Who Are They and What Is Their Role Within the Organization?

Chief Risk Officers in the Mutual Fund Industry: Who Are They and What Is Their Role Within the Organization? Chief Risk Officers in the Mutual Fund Industry: Who Are They and What Is Their Role Within the Organization? Background Everyone within an organization has some responsibility for managing risk. In the

More information

OAC Presentation to UNESCO Member States

OAC Presentation to UNESCO Member States OAC Presentation to UNESCO Member States Scope and Purpose of Audit and Risk Committees 29 June 2016 1 Content: 1. Context 2. Audit and Risk Management in UNESCO today 3. Relationship between Entreprise

More information

Gilead Clinical Operations Risk Management Program

Gilead Clinical Operations Risk Management Program Gilead Clinical Operations Risk Management Program Brian J Nugent, Associate Director 1 Agenda Risk Management Risk Management Background, Benefits, Framework Risk Management Training and Culture Change

More information

SUMMARY PROFESSIONAL EXPERIENCE. IBM Canada, Senior Business Transformation Consultant

SUMMARY PROFESSIONAL EXPERIENCE. IBM Canada, Senior Business Transformation Consultant Doreen Funk, MA 191 Discovery Ridge Blvd SW, Calgary Cell: 587-434- 0811 E- mail: dorfunk@hotmail.com SUMMARY Senior management consultant with 20 years of experience in applying strategies and implementing

More information

Direct Line Insurance Group plc (the Company ) Board Risk Committee (the Committee ) Terms of Reference

Direct Line Insurance Group plc (the Company ) Board Risk Committee (the Committee ) Terms of Reference Direct Line Insurance Group plc (the Company ) Board Risk Committee (the Committee ) Terms of Reference Chair An Independent Non-Executive Director In the absence of the Committee Chairman and an appointed

More information

ENTERPRISE RISK MANAGEMENT POLICY

ENTERPRISE RISK MANAGEMENT POLICY ENTERPRISE RISK MANAGEMENT Approved by the Audit Committee on 14 February 2003 and adopted by resolution of the Board on 28 March 2003 Revisions approved by the Audit and Risk Committee on 14 February

More information

University of St. Gallen Law School Law and Economics Research Paper Series. Working Paper No. 2008-19 June 2007

University of St. Gallen Law School Law and Economics Research Paper Series. Working Paper No. 2008-19 June 2007 University of St. Gallen Law School Law and Economics Research Paper Series Working Paper No. 2008-19 June 2007 Enterprise Risk Management A View from the Insurance Industry Wolfgang Errath and Andreas

More information

ENTERPRISE RISK MANAGEMENT POLICY

ENTERPRISE RISK MANAGEMENT POLICY ENTERPRISE RISK MANAGEMENT POLICY TITLE OF POLICY POLICY OWNER POLICY CHAMPION DOCUMENT HISTORY: Policy Title Status Enterprise Risk Management Policy (current, revised, no change, redundant) Approving

More information

Policy 10.105: Enterprise Risk Management Policy

Policy 10.105: Enterprise Risk Management Policy Name: Responsibility: Complements: Enterprise Risk Management Framework Coordinator, Enterprise Risk Management Policy 10.105: Enterprise Risk Management Policy Date: November 2006 Revision Date(s): January

More information

Resource Management Spreadsheet Capabilities. Stuart Dixon Resource Manager

Resource Management Spreadsheet Capabilities. Stuart Dixon Resource Manager Resource Management Spreadsheet Capabilities Stuart Dixon Resource Manager Purpose Single view of resource data Shows rolling demand vs supply for 14 months, 2 months back, current month, and 11 forward

More information

Feature. Developing an Information Security and Risk Management Strategy

Feature. Developing an Information Security and Risk Management Strategy Feature Developing an Information Security and Risk Management Strategy John P. Pironti, CISA, CISM, CGEIT, CISSP, ISSAP, ISSMP, is the president of IP Architects LLC. He has designed and implemented enterprisewide

More information

ENTERPRISE RISK MANAGEMENT FOR BANKS

ENTERPRISE RISK MANAGEMENT FOR BANKS ENTERPRISE RISK MANAGEMENT FOR BANKS Seshagiri Rao Vaidyula, Senior Manager, Governance, Risk and Compliance Jayaprakash Kavala, Consultant, Banking and Financial Services 1 www.wipro.com/industryresearch

More information

IFAD Policy on Enterprise Risk Management

IFAD Policy on Enterprise Risk Management Document: EB 2008/94/R.4 Agenda: 5 Date: 6 August 2008 Distribution: Public Original: English E IFAD Policy on Enterprise Risk Management Executive Board Ninety-fourth Session Rome, 10-11 September 2008

More information

COBIT 5 For Cyber Security Governance and Management. Nasser El-Hout Managing Director Service Management Centre of Excellence (SMCE)

COBIT 5 For Cyber Security Governance and Management. Nasser El-Hout Managing Director Service Management Centre of Excellence (SMCE) COBIT 5 For Cyber Security Governance and Management Nasser El-Hout Managing Director Service Management Centre of Excellence (SMCE) Cybersecurity Governance using COBIT5 Cyber Defence Summit Riyadh, KSA

More information

PowerSteering Product Roadmap Your Success Is Our Bottom Line

PowerSteering Product Roadmap Your Success Is Our Bottom Line Drive strategy. Accelerate results. cloud-based program & portfolio management software PowerSteering Product Roadmap Your Success Is Our Bottom Line Jay Hoskins Director of Product Management PowerSteering

More information

Compliance by Design (CbD)

Compliance by Design (CbD) Compliance by Design (CbD) Building an Effective & Sustainable Compliance Program Dale Skivington Executive Director, Global Compliance and Privacy Dell today Technology has always been about enabling

More information

APPLICATION OF KING III CORPORATE GOVERNANCE PRINCIPLES 2014

APPLICATION OF KING III CORPORATE GOVERNANCE PRINCIPLES 2014 WOOLWORTHS HOLDINGS LIMITED CORPORATE GOVERNANCE PRINCIPLES 2014 CORPORATE GOVERNANCE PRINCIPLES 2014 CORPORATE GOVERNANCE PRINCIPLES 2014 This table is a useful reference to each of the King III principles

More information

Enterprise Projects Fiscal Year 2009/2010 Third Quarter Report

Enterprise Projects Fiscal Year 2009/2010 Third Quarter Report Enterprise Projects Fiscal Year 2009/2010 Third Quarter Report Enterprise Projects Fiscal Year 2009/2010 - Third Quarter Report The Enterprise Program Investment Council (EPIC) is responsible for governance

More information

APPLICATION OF THE KING III REPORT ON CORPORATE GOVERNANCE PRINCIPLES

APPLICATION OF THE KING III REPORT ON CORPORATE GOVERNANCE PRINCIPLES APPLICATION OF THE KING III REPORT ON CORPORATE GOVERNANCE PRINCIPLES Ethical Leadership and Corporate Citizenship The board should provide effective leadership based on ethical foundation. that the company

More information

Terms of Reference - Board Risk Committee

Terms of Reference - Board Risk Committee Terms of Reference - Board Risk Committee The Board Risk Committee is authorised by the Board to oversee the Group s risk management arrangements. It ensures that the overarching risk appetite is appropriate

More information

Version: 2.0 Date: December 9, 2011

Version: 2.0 Date: December 9, 2011 SunTrust Mortgage Consent Order Response Risk Management Consent Order Response Risk Management Consent Order Response Risk Management (Consent Order Sections 15 & 16) Version: 2.0 Date: 9, SunTrust Mortgage

More information

Moving Forward with IT Governance and COBIT

Moving Forward with IT Governance and COBIT Moving Forward with IT Governance and COBIT Los Angeles ISACA COBIT User Group Tuesday 27, March 2007 IT GRC Questions from the CIO Today s discussion focuses on the typical challenges facing the CIO around

More information

CIOs: How to Become the CEO s Business Partner

CIOs: How to Become the CEO s Business Partner CIOs: How to Become the CEO s Business Partner A Best Practices ebook Nicolas Betbeder-Matibet, Managing Director, MEGA Asia - The Agenda for CIOs in 2012 According to Gartner*: CIO strategies concentrate

More information

Enterprise Projects Fiscal Year 2011/2012 Third Quarter Report

Enterprise Projects Fiscal Year 2011/2012 Third Quarter Report Enterprise Projects Fiscal Year 2011/2012 Third Quarter Report Enterprise Projects Fiscal Year 2011/2012 Third Quarter Report The Enterprise Program Investment Council (EPIC) is responsible for governance

More information

Health and Safety in Action

Health and Safety in Action Health and Safety in Action Safe and Healthy Workplaces for BC s Health Care Workers Provincial Reporting and Data Management Initiative #1 Final Report Initiative Sponsor: Catherine Fast HSIA #1: Final

More information

GTA Board of Directors September 4, 2014

GTA Board of Directors September 4, 2014 GTA Board of Directors September 4, 2014 Our Strategic Vision Our Mission A transparent, integrated enterprise where technology decisions are made with the citizen in mind To provide technology leadership

More information

Operational Risk Management - The Next Frontier The Risk Management Association (RMA)

Operational Risk Management - The Next Frontier The Risk Management Association (RMA) Operational Risk Management - The Next Frontier The Risk Management Association (RMA) Operational risk is not new. In fact, it is the first risk that banks must manage, even before they make their first

More information

Federal Segment Architecture Methodology (FSAM): An Overview

Federal Segment Architecture Methodology (FSAM): An Overview Information Resources Management College Federal Segment Architecture Methodology (FSAM): An Overview Dr. Stan Boddie & Prof. Matt Newman 1 a global learning community for government s most promising information

More information

GAINING CONTROL: Building Your Existing Framework into an ERM Model

GAINING CONTROL: Building Your Existing Framework into an ERM Model GAINING CONTROL: Building Your Existing Framework into an ERM Model RIMS Northeast Ohio Chapter Education Day Carol Fox, ARM RIMS Director of Strategic and Enterprise Risk Practice November 19, 2013 Copyright

More information

IT Governance Regulatory. P.K.Patel AGM, MoF

IT Governance Regulatory. P.K.Patel AGM, MoF IT Governance Regulatory Perspective P.K.Patel AGM, MoF Agenda What is IT Governance? Aspects of IT Governance What banks should consider before implementing these aspects? What banks should do for implementation

More information

Risk appetite How hungry are you?

Risk appetite How hungry are you? Risk appetite How hungry are you? 8 by Richard Barfield Richard Barfield Director, Valuation & Strategy, UK Tel: 44 20 7804 6658 Email: richard.barfield@uk.pwc.com 9 Regulatory pressures, such as Basel

More information

RIMS Risk Management Models. Traditional Risk Management Progressive Risk Management Strategic Risk Management

RIMS Risk Management Models. Traditional Risk Management Progressive Risk Management Strategic Risk Management Risk Management vs. Enterprise Risk Management Kate Lark Dartmouth College Paul L. Walker - University of Virginia Feb 4 th, 2008 Definition of Risk Management the process of planning, organizing, leading,

More information

Reacting to the Challenges: Business Strategies for Future Success. Todd S. Adams, Chief Executive Officer Adams Bank & Trust Ogallala, Nebraska

Reacting to the Challenges: Business Strategies for Future Success. Todd S. Adams, Chief Executive Officer Adams Bank & Trust Ogallala, Nebraska Reacting to the Challenges: Business Strategies for Future Success Todd S. Adams, Chief Executive Officer Adams Bank & Trust Ogallala, Nebraska Adams Bank & Trust Family Owned for 95 Years $525 Million

More information

The Role of the Board in Enterprise Risk Management

The Role of the Board in Enterprise Risk Management Enterprise Risk The Role of the Board in Enterprise Risk Management The board of directors plays an essential role in ensuring that an effective ERM program is in place. Governance, policy, and assurance

More information

THE SOUTH AFRICAN HERITAGE RESOURCES AGENCY ENTERPRISE RISK MANAGEMENT FRAMEWORK

THE SOUTH AFRICAN HERITAGE RESOURCES AGENCY ENTERPRISE RISK MANAGEMENT FRAMEWORK THE SOUTH AFRICAN HERITAGE RESOURCES AGENCY ENTERPRISE RISK MANAGEMENT FRAMEWORK ACCOUNTABLE SIGNATURE AUTHORISED for implementation SIGNATURE On behalf of Chief Executive Officer SAHRA Council Date Date

More information

Governance structures and leading. central banks

Governance structures and leading. central banks Governance structures and leading practices for risk management in central banks Helena Tejero, Division Head, Risks & Processes, Bank of Spain Central Bank Governance Forum 2014 IMF / Hawkamah, Dubai,

More information

Understanding Today s Enterprise Risk Management Programs

Understanding Today s Enterprise Risk Management Programs Understanding Today s Enterprise Risk Management rograms Joel Tietz, TIAA-CREF Managing Director, Enterprise Risk Management March 23, 2015 TIAA-CREF - UBLIC USE Agenda 1) Enterprise Risk Management rograms

More information

Analyzing Risks in Healthcare. February 12, 2014

Analyzing Risks in Healthcare. February 12, 2014 Analyzing s in Healthcare February 12, 2014 1 Content What is Enterprise Management (ERM) ERM Benefits ERM Standards / ISO 31000:2009 ERM Process Register ERM Governance Model s Q&A 2 What is Enterprise

More information

Federal Reserve System Secure Payments Task Force

Federal Reserve System Secure Payments Task Force 2015 Federal Reserve System. Materials are not to be used without Federal Reserve consent. Federal Reserve System Secure Payments Task Force Teleconference June 4, 2015 Secure Payments Task Force Anti-Trust

More information

Enterprise Risk Management & Information Technology

Enterprise Risk Management & Information Technology Enterprise Risk Management & Information Technology Presented by Scott Perry and Gary Ross Slalom Consulting, San Francisco Agenda Introductions Session Objectives Overview of Enterprise Risk Management

More information

Enterprise Risk Management

Enterprise Risk Management Enterprise Management ERM provides a framework for risk management, which typically involves identifying particular events or circumstances relevant to the organization's objectives (risks and opportunities),

More information

Guidelines for Virtual Transportation Management Center Development. National Rural ITS Meeting August 27, 2014

Guidelines for Virtual Transportation Management Center Development. National Rural ITS Meeting August 27, 2014 Guidelines for Virtual Transportation Management Center Development National Rural ITS Meeting August 27, 2014 1 Project Purpose Overview To develop a guidebook that provides technical guidance on planning

More information

Operational Risk Management in a Debt Management Office

Operational Risk Management in a Debt Management Office Operational Risk Management in a Debt Management Office Based on Client Presentation January 2008 Outline The importance of operational risk management (ORM) International best practice A high-level perspective,

More information

Analytic-Driven Quality Keys Success in Risk-Based Contracts. Ross Gustafson, Vice President Allina Performance Resources, Health Catalyst

Analytic-Driven Quality Keys Success in Risk-Based Contracts. Ross Gustafson, Vice President Allina Performance Resources, Health Catalyst Analytic-Driven Quality Keys Success in Risk-Based Contracts March 2 nd, 2016 Ross Gustafson, Vice President Allina Performance Resources, Health Catalyst Brian Rice, Vice President Network/ACO Integration,

More information

Risk Management Policy

Risk Management Policy Risk Management Policy Risk Management Policy Record Number D14/79827 Responsible Manager Manager Strategy and Governance Last reviewed 10 March 2015 Adoption reference Council Resolution number 90.5 Previous

More information

July/August 2013. 2014 and Beyond. Old Form. New Form. Employee. Manager

July/August 2013. 2014 and Beyond. Old Form. New Form. Employee. Manager Employee Training / June 2013 July/August 2013 2014 and Beyond Manager Employee Old Form New Form 2 As Employees, Each of Us Are Expected to Focus Communicate Strive Engage Refresh Develop 3 Performance

More information

NHS BLOOD AND TRANSPLANT MARCH 2009 RESPONDING EFFECTIVELY TO BLOOD DONOR FEEDBACK

NHS BLOOD AND TRANSPLANT MARCH 2009 RESPONDING EFFECTIVELY TO BLOOD DONOR FEEDBACK 09/26 NHS BLOOD AND TRANSPLANT MARCH 2009 RESPONDING EFFECTIVELY TO BLOOD DONOR FEEDBACK EXECUTIVE SUMMARY From April 2009 an NHS wide common approach to complaint handling comes in to effect. This provides

More information

Stephen Doune HRIS Project Manager Plan International

Stephen Doune HRIS Project Manager Plan International Stephen Doune HRIS Project Manager Plan International Content 1. About Plan International 2. The Challenge 3. The Vision 4. About Assima 5. The Projects 6. The Timeline 7. Partner Selection 8. Key 1st

More information

Integrated Performance & Risk Management -

Integrated Performance & Risk Management - www.pwc.nl Integrated Performance & Risk Management - How Leading Enterprises Manage Performance and Risk D&B Seminar Agenda 1. Introduction and objectives of today s session 2. Insights from the Annual

More information

Long Term Data Center Facilities Program

Long Term Data Center Facilities Program Long Term Data Center Facilities Program ISAC Briefing December 2012 Overview: The Long Term Data Center Facilities Program is an initiative of the approved data center strategic plan to consolidate Citizens

More information

Insurance Enterprise Risk Management Practices

Insurance Enterprise Risk Management Practices A PUBLIC POLICY PRACTICE NOTE EXPOSURE DRAFT Insurance Enterprise Risk Management Practices March 2013 Developed by the ERM Committee of the American Academy of Actuaries The American Academy of Actuaries

More information

Infrastructure Ontario Enterprise Risk Management Program. National Executive Forum Yellowknife, NWT May 2013

Infrastructure Ontario Enterprise Risk Management Program. National Executive Forum Yellowknife, NWT May 2013 Infrastructure Ontario Enterprise Risk Management Program National Executive Forum Yellowknife, NWT May 2013 Background Government Risk Management Agency Oversight The Memorandum of Understanding with

More information