How To Manage Risk

Size: px
Start display at page:

Download "How To Manage Risk"

Transcription

1 Oracle Applications Day Zürich, 1. Juli 2009 Risk und Performance Management in Stürmischen Zeiten mit Oracle GRC Steven Hagner EMEA GRC Sales Organization 1

2 Safe Harbor Statement The following is intended to outline our general product direction. It is intended for information purposes only, and may not be incorporated into any contract. It is not a commitment to deliver any material, code, or functionality, and should not be relied upon in making purchasing decision. The development, release, and timing of any features or functionality described for Oracle s products remains at the sole discretion of Oracle. 2

3 Agenda Business Challenges Solution Overview Customer Success 3

4 Fraud on the Rise Societe Generale lost 6.3B as Jerome Kerviel went rogue B. Ramalinga Raju reveals falsifying $1B Corp. account Siemens agrees to pay $1.3B in bribery settlement Fannie Mae IT contractor indicted for planting malware 4

5 Call for Increased Regulatory Scrutiny Obama Gordon Sarkozy Jintao AMERICAS HIPAA FDA CFR 21 Part 11 OMB Circular A-123 SEC and DoD Records Retention USA PATRIOT Act Gramm-Leach-Bliley Act Federal Sentencing Guidelines Foreign Corrupt Practices Act Market Instruments 52 (Canada) EMEA EU Privacy Directives UK Companies Law Restriction of Hazardous Substances (ROHS/WEE) GLOBAL International Accounting Standards Basel II (Global Banking) OECD Guidelines on Corporate Governance APAC J-SOX, C-SOX, K-S0X, C49 CLERP 9: Audit Reform and Corporate Disclosure Act (Australia) Stock Exchange of Thailand Code on Corporate Governance 5

6 The Big Picture What is Governance, Risk, and Compliance Voluntary Boundary Boundary defined by management including public commitments, organizational values, contractual obligations, and other voluntary policies Business Model Strategy, people, process, technology and infrastructure in place to drive toward objectives Obstacles impede progress toward achieving objectives Obstacles Objectives Strategic, operational, customer, compliance and reporting objectives cascaded throughout the organization Mandated Boundary Boundary established by external forces including laws, government regulation and other mandates. OCEG 6

7 Governance, Risk & Compliance Governance is the process of deciding and documenting how the organization operates. Risk Management is the process of ensuring that the right levels of risk are taken. Compliance is the process of ensuring and proving that policies (internal and external) are being followed. 7

8 While Cost of Compliance Continues to Rise $29Billion $32Billion Governance, risk management, and compliance (GRC) spending will exceed $32B for 2008, up 7.4% from 2007, as companies shift toward identifying, assessing, and managing risk across numerous business and IT areas. The Governance, Risk Management, and Compliance Spending Report, , -- AMR Research 8

9 Burden Stems from Core Challenges Challenge: Multiple Requirements, Fragmented Response Finance SOX, JSOX Groups IT Security / Risk Mgmt Groups C1b C2b C3b Business Assessment / Audit Groups R1 R2 R3 R1 R2 R3 R1 R2 R3 C1a C2a C3a C1c C2c C3c C5a C6a C7a C9a C10a C11a C5b C6b C7b C9b C10b C11b C5c C6c C7c C9c C10c C11c Challenge: No Proactive Risk Management Risk React Challenge: Ad-hoc Approach with Manual Controls GRC Business Processes 9

10 How Oracle GRC Applications Help Solution: Consolidate multiple standards and regulations onto a single platform GRC Intelligence GRC Manager Regulation A Risk B R1 R2 R3 C1 C2 C3 C5 C6 C7 C9 C10 C11 Standard C Solution: Manage risk in a disciplined & consistent fashion GRC Intelligence GRC Manager Solution: Embed automated controls into standard business processes GRC Controls GRC Business Process 10

11 Agenda Business Challenges Solution Overview Customer Success 11

12 A Proactive and Integrated Approach Rationalizes Common Processes and Components Finance SOX, JSOX Groups R1 R2 R3 C1a C2a C3a C5a C9a C6a C7a C10a C11a IT Security / Risk Mgmt Groups R1 R2 R3 C1b C2b C3b C5b C6b C7b Business Assessment / Audit Groups R1 R2 R3 C1c C2c C3c C5c C6c C7c C9c C10c C11c Enterprise GRC Platform Common Processes: Identify Requirements Establish Objectives Assess Risk Evaluate Controls Remediate Issues Report and Respond Common Components: Regulations Mandates Frameworks Process Risks Controls Systems C9b C10b C11b 12

13 Consolidate Compliance Activities Oracle GRC Manager Why? Mandates PCI What? Risk Impact Likelihood How? Process Review & Improve SOX 404 Business Process Report & Respond Identify Requirements FFIEC CASB 1386 EU Privacy Directive Framework ISO COSO COBIT ITIL Remediate Issues Establish Objectives HIPAA FDA System Evaluate Controls Assess Risk 13

14 Magic Quadrant for Enterprise Governance, Risk and Compliance Platforms Committing investment to an aggressive development road map with plans for many vertical-specific versions of GRC Manager A suite of controls products, such as Oracle Application Access Controls Governor and Oracle Transaction Controls Governor, that is integrated into the GRC Manager platform 14

15 Enterprise Risk Management Audit Projects Financial Compliance IT Risk & Compliance Environment, Health & Safety Green Compliance & Sustainability Legal & Regulatory Compliance Product Quality & Safety Supply Chain Risk Service Provider Risk Management Multiple GRC Solutions from a Single Platform Real-Time Insight 15

16 The Oracle Difference Enterprise GRC Platform Leader* 1 One Platform Satisfies Multiple Regulations 2 GRC Controls Integration Enforces Policy 3 Role-Based Dashboards Provide Real Time Insight Financial Reporting Data Privacy Green Compliance Policy R1 R2 R3 C1c C2c C3c Controls C5c C6c C7c C9c C10c C11c *Source: Gartner Magic Quadrant for Enterprise GRC Platforms,

17 How Oracle GRC Applications Help Solution: Consolidate multiple standards and regulations onto a single platform GRC Intelligence GRC Manager Regulation A Risk B R1 R2 R3 C1 C2 C3 C5 C6 C7 C9 C10 C11 Standard C Solution: Manage risk in a disciplined & consistent fashion GRC Intelligence GRC Manager Solution: Embed automated controls into standard business processes GRC Controls GRC Business Process 17

18 18

19 The Convergence of EPM and GRC 19

20 Management Excellence: Risk Management Competitive Advantage MANAGEMENT EXCELLENCE Risk Risk Management- Enabling Risk-Based Decisions OPERATIONAL EXCELLENCE Time Copyright 2008, Oracle and / or its affiliates. All rights reserved. 20

21 Risk Management is proactive Performance Management One unique EPM and GRC solution for Good Governance= No Surprise Better Risk Management = No Surprise Transactions Reporting CFO Dashboard Enterprise Risk Management CFO Automated Risk Control Enforcement ERP: Oracle, SAP, Legacy, Other Hyperion Financial Management And Data Quality Management Strategic Planning Financial Planning Cost & Profitability Management Financial Reporting and Compliance Infrastructure Services CIO 21

22 Establish Risk Lifecycle Processes Oracle GRC Manager Establish a single unified approach to managing risk across the enterprise Support an iterative top down or bottom up approach to managing risk Define and analyze risks in terms that match your business model 22

23 Apply at Every Level of Enterprise Oracle GRC Manager Levels Executive Departments Regions Projects Stakeholders Board of Directors C-Level Executives Senior Management Legal, HR Finance Production Americas Europe Asia Africa Cross-functional Global 23

24 Gain 360 Visibility into Enterprise Risk Oracle GRC Intelligence and GRC Manager Financial Reporting Integrity Health & Safety Supply Chain RISK EXPOSURE RISK MODELLING RISK TREATMENT Information Security Environmental Sustainability 24

25 Risk Analysis Visualization Guided Risk Management Steps 25

26 Oracle Risk Management Solutions Oracle GRC Manager Web-based, Enterprise Risk Management solution. Establish a systematic process for Risk Management Assess multiple risk classes and monitor overall risk health Oracle Crystal Ball Predictive modeling, forecasting, simulation and optimization. Enable accurate Risk Probabilities and Monte Carlo Simulation Financial Services Deep Industry-specific solutions covering Financial Services Compliance and Risk 26

27 Oracle Analytic Applications for Financial Services Performance Management Profitability Funds Transfer Pricing Consolidation Accounting Hub Activity-Based Costing Balance Sheet Planning Budgeting and Forecasting Credit Risk Analytical CRM Retail Credit Risk Portfolio Analytics Corporate Credit Risk Marketing Analytics Treasury Risk Service Analytics Market Risk Asset Liability Management Regulatory Capital Basel II: Credit Risk Channel Insight Channel Usage Basel II: Market Risk Channel Performance Basel II: Operational Risk Capital Adequacy/ICAAP Economic Capital EC: Credit Risk EC: Market Risk Customer Profitability Customer Profitability Product Profitability EC: Operational Risk Regulatory Compliance (Financial Crime) Anti-Money Laundering Fraud Detection Governance and Compliance Governance Compliance Risk Broker Compliance Trading Compliance Operational Risk 27

28 The Oracle Difference Transform Uncertainty into Opportunity 1 Manage All Categories of Risk Throughout the Enterprise 2 Foresee Unacceptable Levels of Risk 3 Embed Risk Management into Strategic and Operational Planning Strategic Risk Context Financial Risk Adjusted Performance Operational Risk Criteria Compliance Oracle GRC Oracle EPM 28

29 How Oracle GRC Applications Help Solution: Consolidate multiple standards and regulations onto a single platform GRC Intelligence GRC Manager Regulation A Risk B R1 R2 R3 C1 C2 C3 C5 C6 C7 C9 C10 C11 Standard C Solution: Manage risk in a disciplined & consistent fashion GRC Intelligence GRC Manager Solution: Embed automated controls into standard business processes GRC Controls GRC Business Process 29

30 85% of internal controls at an average firm are manual. - Financial Executives Research Foundation 30

31 Automate Internal Controls Oracle GRC Controls Monitor Control Effectiveness What users have done Detective Controls What s changed in the process What are the execution patterns ACCESS Controls CONFIGURATION Controls TRANSACTION Controls What users can do How is the process setup Preventive Controls How users execute processes Enforce Policies in Context 31

32 Focus on High Risk Areas High RISK RATING OF BUSINESS PROCESSES Importance to business strategy Sales Mgmt Order to Cash Procure to Pay Hire to Retire Produce to Deliver Close to Report Capitalize to DDepreciate Revenue Recognition Bad Debt Mgmt Accounting Security Mgmt Quote to Order IT Change Mgmt Expense to Pay Vendor Mgmt Low Likelihood of control issues High 32

33 Policy Library Conflict Paths Conflict Paths Policy Library Lawson-1275 Lawson 33

34 The Oracle Difference Controls for the Business by the Business 1 Embedded Preventative and Detective Controls are Transparent to Users 2 Pre-delivered Policy Library for Controls 3 Integrated Identity Management and GRC Controls GRC Business Process Policy Library Compliant User Provisioning Oracle GRC Oracle IDM 34

35 How Oracle GRC Applications Help Solution: Consolidate multiple standards and regulations onto a single platform GRC Intelligence GRC Manager Regulation A Risk B R1 R2 R3 C1 C2 C3 C5 C6 C7 C9 C10 C11 Standard C Solution: Manage risk in a disciplined & consistent fashion GRC Intelligence GRC Manager Solution: Embed automated controls into standard business processes GRC Controls GRC Business Process 35

36 Agenda Business Challenges Solution Overview Customer Success 36

37 Oracle Helps Reduce Compliance Costs and Control Risk Saves $1 million by avoiding customizations Access Controls pass rate improved by 27% Reduces controls testing by 65% Global deployment of centralized controls across 14 locations Reduces audit preparation time by 25% Reporting time reduced from 4 days to minutes Cuts Segregation of Duties audit from 2 months to 2 days User role violations reduced by 90% 37

38 38

39 39

40 GRC Value to Executive Management Integrating risk mgmt into strategic planning increases stakeholder value Managing business risk enhances operational planning & financial performance CEO & BOD Can prove risks are controlled Oversee the business with more certainty Obtain and safeguard confidence of investor and regulatory bodies CFO Has visibility into high risks and greater assurance in financial integrity Achieves better operational decision-making Lowers compliance spend and frees up resources Controlling the risk of fraud reduces disruption to information flow & systems Implementing controls addresses evolving compliance requirements & emerging risks Manages by exception and limits compliance cost Promptly identifies issues and violations for remediation CIO Accelerates response to provisioning requests and supports Audit and LOB Ensures environments stay consistent and data secure CAO Easily validates compliance and reduces audit cost Better utilizes audit resources and coordinates efforts 40

41 GRC Value to the Executive Office & Board Integrating risk mgmt into strategic planning increases stakeholder value Can prove risks are controlled Oversee the business with more certainty CEO & BOD Obtain and safeguard confidence of investor and regulatory bodies 41

42 GRC Value to the Finance Office Managing business risk enhances operational planning and financial performance CFO Has visibility into high risks and greater assurance in financial integrity Achieves better operational decisionmaking Lowers compliance spend and frees up resources 42

Governance, Risk & Compliance for Public Sector

Governance, Risk & Compliance for Public Sector Governance, Risk & Compliance for Public Sector Steve Hagner EMEA GRC Solution Sales From egovernment to Oracle igovernment Increase Efficiency and Transparency Oracle igovernment

More information

How To Ensure Financial Compliance

How To Ensure Financial Compliance Evolving from Financial Compliance to Next Generation GRC Gary Prince Principal Solution Specialist - GRC Agenda Business Challenges Oracle s Leadership in Governance, Risk and Compliance Solution Overview

More information

Harness Enterprise Risks With Oracle Governance, Risk and Compliance

Harness Enterprise Risks With Oracle Governance, Risk and Compliance Hardware and Software Engineered to Work Together Harness Enterprise Risks With Oracle Governance, Risk and Compliance Is the plethora of financial, operational and regulatory policies and mandates overwhelming

More information

CA HalvesThe Cost Of Testing IT Controls For Sarbanes-Oxley Compliance With Unified Processes.

CA HalvesThe Cost Of Testing IT Controls For Sarbanes-Oxley Compliance With Unified Processes. TECHNOLOGY BRIEF: REDUCING COST AND COMPLEXITY WITH GLOBAL GOVERNANCE CONTROLS CA HalvesThe Cost Of Testing IT Controls For Sarbanes-Oxley Compliance With Unified Processes. Table of Contents Executive

More information

Governance, Risk and Compliance Management SAP Solutions for GRC. Holly Roland GRC Solutions Marketing SAP

Governance, Risk and Compliance Management SAP Solutions for GRC. Holly Roland GRC Solutions Marketing SAP Governance, Risk and Compliance SAP Solutions for GRC Holly Roland GRC Solutions Marketing SAP Fragmentation increases risk Managing risks is everyone s job Board, Audit Committee Executive compensation

More information

XBRL & GRC Future opportunities?

XBRL & GRC Future opportunities? XBRL & GRC Future opportunities? Suzanne Janse Deloitte NL Paul Hulst Deloitte / Said Tabet EMC Presenters Suzanne Janse Deloitte Netherlands Director ERP (SAP, Oracle) Risk Management GRC software Paul

More information

Oracle Cloud: Enterprise Resource Planning

Oracle Cloud: Enterprise Resource Planning Oracle Cloud: Enterprise Resource Planning Rondy Ng Senior Vice President Applications Development Safe Harbor Statement "Safe Harbor" Statement: Statements in this presentation relating to Oracle's future

More information

S24 - Governance, Risk, and Compliance (GRC) Automation Siamak Razmazma

S24 - Governance, Risk, and Compliance (GRC) Automation Siamak Razmazma S24 - Governance, Risk, and Compliance (GRC) Automation Siamak Razmazma Governance, Risk, Compliance (GRC) Automation Siamak Razmazma Siamak.razmazma@protiviti.com September 2009 Agenda Introduction to

More information

Application Control Effectiveness for SAP. December 2007

Application Control Effectiveness for SAP. December 2007 Application Control Effectiveness for SAP December 2007 Meeting Objectives Application Control Effectiveness Compliance at a glance Trends and challenges Technology issues Application Control Business

More information

14 October 2015 ISACA Curaçao Conference By: Paul Helmich

14 October 2015 ISACA Curaçao Conference By: Paul Helmich Governance, Risk & Compliance A practical approach 14 October 2015 ISACA Curaçao Conference By: Paul Helmich Topics today What is GRC? How much of all the GRC literature, tools, etc. do I need to study

More information

An Oracle White Paper January 2010. Access Certification: Addressing & Building on a Critical Security Control

An Oracle White Paper January 2010. Access Certification: Addressing & Building on a Critical Security Control An Oracle White Paper January 2010 Access Certification: Addressing & Building on a Critical Security Control Disclaimer The following is intended to outline our general product direction. It is intended

More information

Sarbanes-Oxley: Beyond. Using compliance requirements to boost business performance. An RIS White Paper Sponsored by:

Sarbanes-Oxley: Beyond. Using compliance requirements to boost business performance. An RIS White Paper Sponsored by: Beyond Sarbanes-Oxley: Using compliance requirements to boost business performance The business regulatory environment in the United States has changed. Public companies have new obligations to report

More information

The Convergence of IT Security and Compliance with a Software as a Service (SaaS) approach

The Convergence of IT Security and Compliance with a Software as a Service (SaaS) approach The Convergence of IT Security and Compliance with a Software as a Service (SaaS) approach by Philippe Courtot, Chairman and CEO, Qualys Inc. Information Age Security Conference - London - September 25

More information

IT consulting Advice into action

IT consulting Advice into action www.pwc.lu/it-consulting IT consulting Advice into action Using technology to bring value to your business BEST ICT STRATEGY COMPANY LUXEMBOURG ICT AWARDS 2010 Our services PwC helps private and public

More information

How To Improve Your Business

How To Improve Your Business IT Risk Management Life Cycle and enabling it with GRC Technology 21 March 2013 Overview IT Risk management lifecycle What does technology enablement mean? Industry perspective Business drivers Trends

More information

ORACLE ENTERPRISE GOVERNANCE, RISK, AND COMPLIANCE MANAGER FUSION EDITION

ORACLE ENTERPRISE GOVERNANCE, RISK, AND COMPLIANCE MANAGER FUSION EDITION ORACLE ENTERPRISE GOVERNANCE, RISK, AND COMPLIANCE MANAGER FUSION EDITION KEY FEATURES AND BENEFITS Manage multiple GRC initiatives on a single consolidated platform Support unique areas of operation with

More information

1 Copyright 2011, Oracle and/or its affiliates. All rights reserved.

1 Copyright 2011, Oracle and/or its affiliates. All rights reserved. 1 Copyright 2011, Oracle and/or its affiliates. All rights Challenges in Implementing the Financial Action Task Force (FATF) recommendations on Risk Based Approach by R. Suresha CAMS 2 Copyright 2011,

More information

10 Best-Selling Modules For Home Information Technology Professionals

10 Best-Selling Modules For Home Information Technology Professionals Integriertes Risk und Compliance Management als Elemente einer umfassenden IT-Governance Strategie Ing. Martin Pscheidl, MBA, MSc cert. IT Service Manager Manager, Technical Sales CA Software Österreich

More information

Procurement General Session: Empowering Modern Procurement

Procurement General Session: Empowering Modern Procurement Procurement General Session: Empowering Modern Procurement Business Driven. Technology Powered. Marco Rossi SCM Product Development Director - EMEA Safe Harbor Statement The following is intended to outline

More information

White Paper Achieving GLBA Compliance through Security Information Management. White Paper / GLBA

White Paper Achieving GLBA Compliance through Security Information Management. White Paper / GLBA White Paper Achieving GLBA Compliance through Security Information Management White Paper / GLBA Contents Executive Summary... 1 Introduction: Brief Overview of GLBA... 1 The GLBA Challenge: Securing Financial

More information

An Oracle White Paper November 2011. Financial Crime and Compliance Management: Convergence of Compliance Risk and Financial Crime

An Oracle White Paper November 2011. Financial Crime and Compliance Management: Convergence of Compliance Risk and Financial Crime An Oracle White Paper November 2011 Financial Crime and Compliance Management: Convergence of Compliance Risk and Financial Crime Disclaimer The following is intended to outline our general product direction.

More information

SAP Business ByDesign Improving operations and resource utilization for professional services providers

SAP Business ByDesign Improving operations and resource utilization for professional services providers SAP Business ByDesign Improving operations and resource utilization for professional services providers 2013 SAP AG or an SAP affiliate company. All rights reserved. : Marketing Trends and Challenges Professional

More information

Quest InTrust. Change auditing and policy compliance for the secure enterprise. May 2008. Copyright 2006 Quest Software

Quest InTrust. Change auditing and policy compliance for the secure enterprise. May 2008. Copyright 2006 Quest Software Quest InTrust Change auditing and policy compliance for the secure enterprise May 2008 Copyright 2006 Quest Software Quest is the Thought Leader in Active Directory Named Microsoft Global ISV Partner of

More information

IT Audit Perspective on Continuous Auditing/ Continuous Monitoring KPMG LLP

IT Audit Perspective on Continuous Auditing/ Continuous Monitoring KPMG LLP IT Audit Perspective on Continuous Auditing/ Continuous Monitoring KPMG LLP IT Audit Perspective on Continuous Auditing/Continuous Monitoring INTRODUCTION New demands from the board, senior organizational

More information

Complete Financial Crime and Compliance Management

Complete Financial Crime and Compliance Management Complete Financial Crime and Management With Oracle Financial Services Financial Crime and Management applications, financial institutions can manage compliance risk and investigate appropriate information

More information

Top 10 Trends In Business Intelligence for 2007

Top 10 Trends In Business Intelligence for 2007 W H I T E P A P E R Top 10 Trends In Business Intelligence for 2007 HP s New Information Management Practice Table of contents Trend #1: BI Governance: Ensuring the Effectiveness of Programs and Investments

More information

CS 101 November 15, 2010

CS 101 November 15, 2010 CS 101 November 15, 2010 Introductions David Kahan, 04 David.Kahan@ey.com Manager, IT Advisory Seha Islam, 08 & 09 Seha.Islam@ey.com Staff, IT Advisory 1 Facts about Ernst & Young $24.5 billion in revenue

More information

Becoming a Cloud Services Broker. Neelam Chakrabarty Sr. Product Marketing Manager, HP SW Cloud Products, HP April 17, 2013

Becoming a Cloud Services Broker. Neelam Chakrabarty Sr. Product Marketing Manager, HP SW Cloud Products, HP April 17, 2013 Becoming a Cloud Services Broker Neelam Chakrabarty Sr. Product Marketing Manager, HP SW Cloud Products, HP April 17, 2013 Hybrid delivery for the future Traditional IT Evolving current state Future Information

More information

Outperform Financial Objectives and Enable Regulatory Compliance

Outperform Financial Objectives and Enable Regulatory Compliance SAP Brief Analytics s from SAP SAP s for Enterprise Performance Management Objectives Outperform Financial Objectives and Enable Regulatory Compliance Drive better decisions and streamline the close-to-disclose

More information

<Insert Picture Here> Oracle CRM for Consumer Goods Smart Strategies for Profitable Growth

<Insert Picture Here> Oracle CRM for Consumer Goods Smart Strategies for Profitable Growth Oracle CRM for Consumer Goods Smart Strategies for Profitable Growth Angélique Moon Director, Consumer Goods CRM Product Strategy Safe Harbor Statement The following is intended to

More information

Ensure Effective Controls and Ongoing Compliance

Ensure Effective Controls and Ongoing Compliance SAP Solution in Detail SAP Solutions for Governance, Risk, and Compliance SAP Process Control Ensure Effective Controls and Ongoing Compliance Table of Contents 3 Quick Facts 4 Focus Resources on High-Impact

More information

It's time for Active Risk Manager. Successful Organizations have World-Class Risk Management

It's time for Active Risk Manager. Successful Organizations have World-Class Risk Management It's time for Active Risk Manager Successful Organizations have World-Class Risk Management It's time for Active Risk Manager Increased Business Complexity Means Increased Risk Exposure In today s global

More information

Governance, Risk, and Compliance (GRC) White Paper

Governance, Risk, and Compliance (GRC) White Paper Governance, Risk, and Compliance (GRC) White Paper Table of Contents: Purpose page 2 Introduction _ page 3 What is GRC _ page 3 GRC Concepts _ page 4 Integrated Approach and Methodology page 4 Diagram:

More information

Mapping COBIT 5 with IT Governance, Risk and Compliance at Ecopetrol S.A. By Alberto León Lozano, CISA, CGEIT, CIA, CRMA

Mapping COBIT 5 with IT Governance, Risk and Compliance at Ecopetrol S.A. By Alberto León Lozano, CISA, CGEIT, CIA, CRMA Volume 3, July 2014 Come join the discussion! Alberto León Lozano will respond to questions in the discussion area of the COBIT 5 Use It Effectively topic beginning 21 July 2014. Mapping COBIT 5 with IT

More information

Anti-Fraud Management Example In Accounts Payable. Michael Heckner October 12, 2012

Anti-Fraud Management Example In Accounts Payable. Michael Heckner October 12, 2012 Anti-Fraud Management Example In Accounts Payable Michael Heckner October 12, 2012 GRC Top Reasons Customers Invest Today Business Process Improvements Systematic, reliable processes Improve predictability

More information

The Copenhagen Compliance Governance Framework is based on the Nordic Governance Model

The Copenhagen Compliance Governance Framework is based on the Nordic Governance Model GRC Frameworks Series The Copenhagen Compliance Governance Framework is based on the Nordic Governance Model Nordic companies have transformed regulatory authority and mechanisms of the welfare state to

More information

ORACLE SUPPLY CHAIN AND ORDER MANAGEMENT ANALYTICS

ORACLE SUPPLY CHAIN AND ORDER MANAGEMENT ANALYTICS ORACLE SUPPLY CHAIN AND ORDER MANAGEMENT ANALYTICS KEY FEATURES & BENEFITS FOR BUSINESS USERS Provide actionable information to conduct intelligent analysis of orders related to regions, products, periods

More information

Symantec Security Compliance Solution Symantec s automated approach to IT security compliance helps organizations minimize threats, improve security,

Symantec Security Compliance Solution Symantec s automated approach to IT security compliance helps organizations minimize threats, improve security, Symantec Security Compliance Solution Symantec s automated approach to IT security compliance helps organizations minimize threats, improve security, streamline compliance reporting, and reduce the overall

More information

Making Compliance Work for You

Making Compliance Work for You white paper Making Compliance Work for You with application lifecycle management Rocket bluezone.rocketsoftware.com Making Compliance Work for You with Application Lifecycle Management A White Paper by

More information

Integrating GRC with Performance Management Demands Enterprise Solutions

Integrating GRC with Performance Management Demands Enterprise Solutions As published in the April n May n June 2008 issue of Integrating GRC with Performance Demands Enterprise Solutions by Lee Dittmar, Principal, Deloitte Consulting LLP and Peter Vogel, Senior Manager, Deloitte

More information

The RSA Solution for. infrastructure security and compliance. A GRC foundation for VMware. Solution Brief

The RSA Solution for. infrastructure security and compliance. A GRC foundation for VMware. Solution Brief The RSA Solution for Cloud Security and Compliance A GRC foundation for VMware infrastructure security and compliance Solution Brief The RSA Solution for Cloud Security and Compliance enables end-user

More information

Enterprise Risk Management

Enterprise Risk Management Enterprise Risk Management Enterprise Risk Management Understand and manage your enterprise risk to strike the optimal dynamic balance between minimizing exposures and maximizing opportunities. Today s

More information

What Should IS Majors Know About Regulatory Compliance?

What Should IS Majors Know About Regulatory Compliance? What Should IS Majors Know About Regulatory Compliance? Working Paper Series 08-12 August 2008 Craig A. VanLengen Professor of Computer Information Systems/Accounting Northern Arizona University The W.

More information

Oracle Fusion Project Portfolio Management CLOUD SERVICE. The New Standard for Project Portfolio Management

Oracle Fusion Project Portfolio Management CLOUD SERVICE. The New Standard for Project Portfolio Management Oracle Fusion Project Portfolio Management CLOUD SERVICE The New Standard for Project Portfolio Management Key Features. Complete History tracking End-to-end enterprise PPM for a single source of project

More information

Enterprise Performance Management Event for Financial Service Industries

Enterprise Performance Management Event for Financial Service Industries Enterprise Performance Management Event for Financial Service Industries Gain Competitive Advantages through successful Enterprise Performance Management Moscow, 14.3.2012 Jann Tadorian Managing Partner

More information

Informatics For Business Administration

Informatics For Business Administration Informatics For Business Administration Chapter 6 Enterprise Resource Planning (ERP) 6.1 Definition 6.2 Solution Types for Enterprise Resource Planning 6.3 SAP ERP: SAP's Core Product 6.3.1 SAP ERP Financials

More information

A7 / SAP Financial Services Forum 2014 / September 9-10, 2014 / London / UK Cloud Strategy for Banking Run Simple with SAP

A7 / SAP Financial Services Forum 2014 / September 9-10, 2014 / London / UK Cloud Strategy for Banking Run Simple with SAP A7 / SAP Financial Services Forum 2014 / September 9-10, 2014 / London / UK Cloud Strategy for Banking Run Simple with SAP Jens-Peter Jensen (SAP SE) Public Use this title slide only with an image Disclaimer

More information

RSA ARCHER OPERATIONAL RISK MANAGEMENT

RSA ARCHER OPERATIONAL RISK MANAGEMENT RSA ARCHER OPERATIONAL RISK MANAGEMENT 87% of organizations surveyed have seen the volume and complexity of risks increase over the past five years. Another 20% of these organizations have seen the volume

More information

Simplify And Innovate The Way You Consume Cloud

Simplify And Innovate The Way You Consume Cloud A Forrester Consulting October 2014 Thought Leadership Paper Commissioned By Infosys Simplify And Innovate The Way You Consume Cloud Table Of Contents Executive Summary... 1 Cloud Adoption Is Gaining Maturity

More information

<Insert Picture Here> PeopleSoft Financial Management Solutions 9.1 and Roadmap into Release 9.2

<Insert Picture Here> PeopleSoft Financial Management Solutions 9.1 and Roadmap into Release 9.2 PeopleSoft Financial Management Solutions 9.1 and Roadmap into Release 9.2 Tom Vassallo Oracle Application Consulting The following is intended to outline our general product direction.

More information

Welcome to Modulo Risk Manager Next Generation. Solutions for GRC

Welcome to Modulo Risk Manager Next Generation. Solutions for GRC Welcome to Modulo Risk Manager Next Generation Solutions for GRC THE COMPLETE SOLUTION FOR GRC MANAGEMENT GRC MANAGEMENT AUTOMATION EASILY IDENTIFY AND ADDRESS RISK AND COMPLIANCE GAPS INTEGRATED GRC SOLUTIONS

More information

Global Headquarters: 5 Speen Street Framingham, MA 01701 USA P.508.872.8200 F.508.935.4015 www.idc.com

Global Headquarters: 5 Speen Street Framingham, MA 01701 USA P.508.872.8200 F.508.935.4015 www.idc.com WHITE PAPER Governance, Risk, and Compliance Sponsored by: Cisco Systems Scott Tiazkun September 2007 Lucinda Borovick EXECUTIVE SUMMARY Global Headquarters: 5 Speen Street Framingham, MA 01701 USA P.508.872.8200

More information

Reaching New Heights: Providing Consistent and Sustainable High Performance at the State Level

Reaching New Heights: Providing Consistent and Sustainable High Performance at the State Level August 2013 Reaching New Heights: Providing Consistent and Sustainable High Performance at the State Level A Study Conducted by Oracle and the National Association of State Auditors, Comptrollers and Treasurers

More information

Minimize Access Risk and Prevent Fraud With SAP Access Control

Minimize Access Risk and Prevent Fraud With SAP Access Control SAP Solution in Detail SAP Solutions for Governance, Risk, and Compliance SAP Access Control Minimize Access Risk and Prevent Fraud With SAP Access Control Table of Contents 3 Quick Facts 4 The Access

More information

Turn Your Business Vision into Reality with Microsoft Dynamics NAV

Turn Your Business Vision into Reality with Microsoft Dynamics NAV Turn Your Business Vision into Reality with Microsoft Dynamics NAV You have worked hard to build a vision for your business. With Microsoft Dynamics NAV, you can turn that vision into reality with a solution

More information

<Insert Picture Here> The role of BI in your ERP and Performance Management Initiatives

<Insert Picture Here> The role of BI in your ERP and Performance Management Initiatives The role of BI in your ERP and Performance Management Initiatives Isabel Schuler-Calise, Principal Sales Consultant isabel.schuler-calise@oracle.com Zürich, 17. November 2011 The

More information

Moving Forward with IT Governance and COBIT

Moving Forward with IT Governance and COBIT Moving Forward with IT Governance and COBIT Los Angeles ISACA COBIT User Group Tuesday 27, March 2007 IT GRC Questions from the CIO Today s discussion focuses on the typical challenges facing the CIO around

More information

Leveraging Sarbanes-Oxley (SOX) to Build Better Practices

Leveraging Sarbanes-Oxley (SOX) to Build Better Practices Leveraging Sarbanes-Oxley (SOX) to Build Better Practices Powering Strategies and Managing Risks Using SOX compliance to build disciplined, repeatable, and auditable practices. Running a successful business

More information

Enterprise Performance Management for Midsize Companies and Workgroups. An Oracle White Paper Updated July 2008

Enterprise Performance Management for Midsize Companies and Workgroups. An Oracle White Paper Updated July 2008 Enterprise Performance Management for Midsize Companies and Workgroups An Oracle White Paper Updated July 2008 Enterprise Performance Management for Midsize Companies and Workgroups This white paper will

More information

Driving business performance with enterprise risk management

Driving business performance with enterprise risk management Driving business performance with enterprise risk management Empowering business managers to make smarter decisions that maximize value, reduce costs and balance risk with returns Contents: 1 Executive

More information

IT audit updates. Current hot topics and key considerations. IT risk assessment leading practices

IT audit updates. Current hot topics and key considerations. IT risk assessment leading practices IT audit updates Current hot topics and key considerations Contents IT risk assessment leading practices IT risks to consider in your audit plan IT SOX considerations and risks COSO 2013 and IT considerations

More information

Italy. EY s Global Information Security Survey 2013

Italy. EY s Global Information Security Survey 2013 Italy EY s Global Information Security Survey 2013 EY s Global Information Security Survey 2013 This year s survey our 16th edition captures the responses of 1,909 C-suite and senior level IT and information

More information

Safe Harbor Statement

Safe Harbor Statement Safe Harbor Statement Statements in this presentation relating to Oracle's future plans, expectations, beliefs, intentions and prospects, are "forwardlooking statements" and are subject to material risks

More information

Oracle Business Intelligence Mobile

Oracle Business Intelligence Mobile Oracle Business Intelligence Mobile Jon Ainsworth Director of Business Development Oracle EMEA Business Analytics 1 Copyright 2011, Oracle and/or its affiliates. All rights reserved. Fact: Today Mobile

More information

A BearingPoint Accelerator

A BearingPoint Accelerator > GRC A BearingPoint Accelerator Working closely with the client, we deliver a rigorous and effective integrated GRC (Governance, Risk and Compliance) solution one that is not only right for the client,

More information

The following is intended to outline our general product direction. It is intended for information purposes only, and may not be incorporated into

The following is intended to outline our general product direction. It is intended for information purposes only, and may not be incorporated into 1 The following is intended to outline our general product direction. It is intended for information purposes only, and may not be incorporated into any contract. It is not a commitment to deliver any

More information

Management Accountants and IT Professionals providing Better Information = BI = Business Intelligence. Peter Simons peter.simons@cimaglobal.

Management Accountants and IT Professionals providing Better Information = BI = Business Intelligence. Peter Simons peter.simons@cimaglobal. Management Accountants and IT Professionals providing Better Information = BI = Business Intelligence Peter Simons peter.simons@cimaglobal.com Agenda Management Accountants? The need for Better Information

More information

Masterminding Data Governance

Masterminding Data Governance Why Data Governance Matters The Five Critical Steps for Data Governance Data Governance and BackOffice Associates Masterminding Data Governance 1 of 11 A 5-step strategic roadmap to sustainable data quality

More information

Oracle s Primavera P6 Enterprise Project Portfolio Management

Oracle s Primavera P6 Enterprise Project Portfolio Management Oracle s Primavera P6 Enterprise Project Portfolio Management Oracle s Primavera P6 Enterprise Project Portfolio Management is the most powerful, robust and easy-to-use solution for prioritizing, planning,

More information

CYBER SECURITY DASHBOARD: MONITOR, ANALYSE AND TAKE CONTROL OF CYBER SECURITY

CYBER SECURITY DASHBOARD: MONITOR, ANALYSE AND TAKE CONTROL OF CYBER SECURITY CYBER SECURITY DASHBOARD: MONITOR, ANALYSE AND TAKE CONTROL OF CYBER SECURITY INTRODUCTION Information security has evolved. As the landscape of threats increases and cyber security 1 management becomes

More information

Security & IT Governance: Strategies to Building a Sustainable Model for Your Organization

Security & IT Governance: Strategies to Building a Sustainable Model for Your Organization Security & IT Governance: Strategies to Building a Sustainable Model for Your Organization Outside View of Increased Regulatory Requirements Regulatory compliance is often seen as sand in the gears requirements

More information

Business Process Management for Insurance

Business Process Management for Insurance Insurance the way we see it Business Process Management for Insurance Maintain Market Share and Profitability With a Staged Approach to BPM Contents 1 Introduction 3 2 Business Process Management: Trends

More information

BPM IN F&A THE DIGITAL CFO PARTNERING THE BUSINESS IN GROWTH. xchanging.com BUSINESS PROCESS MANAGEMENT 1

BPM IN F&A THE DIGITAL CFO PARTNERING THE BUSINESS IN GROWTH. xchanging.com BUSINESS PROCESS MANAGEMENT 1 THE DIGITAL CFO PARTNERING THE BUSINESS IN GROWTH xchanging.com BUSINESS MANAGEMENT 1 The changing economic landscape has transformed the role of a Chief Financial Officer (CFO). No longer a financial

More information

Why is Master Data Management getting both Business and IT Attention in Today s Challenging Economic Environment?

Why is Master Data Management getting both Business and IT Attention in Today s Challenging Economic Environment? Why is Master Data Management getting both Business and IT Attention in Today s Challenging Economic Environment? How Can You Gear-up For Your MDM initiative? Tamer Chavusholu, Enterprise Solutions Practice

More information

Module 6 Essentials of Enterprise Architecture Tools

Module 6 Essentials of Enterprise Architecture Tools Process-Centric Service-Oriented Module 6 Essentials of Enterprise Architecture Tools Capability-Driven Understand the need and necessity for a EA Tool IASA Global - India Chapter Webinar by Vinu Jade

More information

SAP Predictive Analysis: Strategy, Value Proposition

SAP Predictive Analysis: Strategy, Value Proposition September 10-13, 2012 Orlando, Florida SAP Predictive Analysis: Strategy, Value Proposition Thomas B Kuruvilla, Solution Management, SAP Business Intelligence Scott Leaver, Solution Management, SAP Business

More information

Principled Performance & GRC

Principled Performance & GRC part of GRC Fundamentals Principled Performance & GRC How principled performance is the new normal and the imperative for integrating governance, performance, risk, internal control and compliance management

More information

RSA Solution Brief. The RSA Solution for Cloud Security and Compliance

RSA Solution Brief. The RSA Solution for Cloud Security and Compliance The RSA Solution for Cloud Security and Compliance The RSA Solution for Cloud Security and Compliance enables enduser organizations and service providers to orchestrate and visualize the security of their

More information

An Introduction to RSA envision The Information Log Management Platform for Security and Compliance Success. September, 2009

An Introduction to RSA envision The Information Log Management Platform for Security and Compliance Success. September, 2009 An Introduction to RSA envision The Information Log Management Platform for Security and Compliance Success September, 2009 Changing Threats and More Demanding Regulations External attacks Malicious insiders

More information

Continuous Controls Monitoring. Virginia ISACA January Meeting 19 January 2010

Continuous Controls Monitoring. Virginia ISACA January Meeting 19 January 2010 Continuous Controls Monitoring Virginia ISACA January Meeting 19 January 2010 Today s Agenda What We Are Hearing About Risk Internal Controls Continuous Control Monitoring What is CCM? Framework EY Point

More information

IT Governance: framework and case study. 22 September 2010

IT Governance: framework and case study. 22 September 2010 IT Governance: framework and case study Presenter Yaowaluk Chadbunchachai Advisory Services Ernst & Young Corporate Services Limited Presentation topics ERM and IT governance IT governance framework IT

More information

Security management solutions White paper. IBM Tivoli and Consul: Facilitating security audit and compliance for heterogeneous environments.

Security management solutions White paper. IBM Tivoli and Consul: Facilitating security audit and compliance for heterogeneous environments. Security management solutions White paper IBM Tivoli and Consul: Facilitating security audit and March 2007 2 Contents 2 Overview 3 Identify today s challenges in security audit and compliance 3 Discover

More information

How To Use The Sap Process Control Application

How To Use The Sap Process Control Application SAP Solution in Detail SAP Solutions for Governance, Risk, and Compliance SAP Process Control Ensure Effective Controls and Ongoing Compliance Table of Contents 3 Quick Facts 4 Focus Your Resources on

More information

IBM Analytical Decision Management

IBM Analytical Decision Management IBM Analytical Decision Management Deliver better outcomes in real time, every time Highlights Organizations of all types can maximize outcomes with IBM Analytical Decision Management, which enables you

More information

Primavera Project Portfolio Management and Oracle P6

Primavera Project Portfolio Management and Oracle P6 INFORMATION CONNECTED Business Solutions for the Chemical Industry Primavera Project Portfolio Management Solutions Succeeding and Profiting in the Complex Chemical World As chemical companies scale back

More information

Introducing SAP Fraud Management. Jérôme Pugnet

Introducing SAP Fraud Management. Jérôme Pugnet Introducing SAP Fraud Management Jérôme Pugnet LEARNING POINTS Impacts and Challenges of Fraud How Big is the Problem? Fraud is Typically Found Without Technology: an Undetected Potential! What are the

More information

Dynamic Enterprise Performance Management

Dynamic Enterprise Performance Management TM Dynamic Enterprise Performance Management Data. Insights. Action. 1 Pull insight out of the chaos Chaos. It s a word that few CFOs would like associated with their businesses; but when it comes to decision

More information

PRIMAVERA TRANSFORMING THE OIL AND GAS INDUSTRIES

PRIMAVERA TRANSFORMING THE OIL AND GAS INDUSTRIES PRIMAVERA TRANSFORMING THE OIL AND GAS INDUSTRIES Providing End-to-End Insights for Portfolio- Wide Success: Primavera Solutions for Oil and Gas BENEFITS Identify and select the best exploration, production,

More information

THOMSON REUTERS ACCELUS. Know Your Customer (KYC), Kontrol Your Costs (KYC) and Keep Your Customers (KYC) happy

THOMSON REUTERS ACCELUS. Know Your Customer (KYC), Kontrol Your Costs (KYC) and Keep Your Customers (KYC) happy THOMSON REUTERS ACCELUS Know Your Customer (KYC), Kontrol Your Costs (KYC) and Keep Your Customers (KYC) happy Know Your Customer (KYC), Kontrol Your Costs (KYC) and Keep Your Customers (KYC) happy Background

More information

Oracle Role Manager. An Oracle White Paper Updated June 2009

Oracle Role Manager. An Oracle White Paper Updated June 2009 Oracle Role Manager An Oracle White Paper Updated June 2009 Oracle Role Manager Introduction... 3 Key Benefits... 3 Features... 5 Enterprise Role Lifecycle Management... 5 Organization and Relationship

More information

igrc: Intelligent Governance, Risk, and Compliance White Paper

igrc: Intelligent Governance, Risk, and Compliance White Paper igrc: Intelligent Governance, Risk, and Compliance White Paper 2013 2013 Edgile, Inc. All Rights Reserved Executive Overview This whitepaper discusses the business needs addressed by Edgile s igrc solution,

More information

Comply, Improve, Transform: Regulatory Compliance Management for Software Development. Jim Duggan

Comply, Improve, Transform: Regulatory Compliance Management for Software Development. Jim Duggan Comply, Improve, Transform: Regulatory Compliance Management for Software Development Jim Duggan You Can Offset the Costs of Compliance! Complexity Drives Cost UP Sarbanes-Oxley HIPAA EPA Basel II M&A

More information

How to Ensure IT Compliance Without Compromising Innovation. Nik Teshima, IBM Phil Odence, Black Duck

How to Ensure IT Compliance Without Compromising Innovation. Nik Teshima, IBM Phil Odence, Black Duck How to Ensure IT Compliance Without Compromising Innovation Nik Teshima, IBM Phil Odence, Black Duck Black Duck 2013 Speakers Phil Odence VP of Business Development Black Duck Software Nik Teshima Senior

More information

COMPLIANCE MANAGEMENT SOLUTIONS THOMSON REUTERS ACCELUS COMPLIANCE MANAGEMENT SOLUTIONS

COMPLIANCE MANAGEMENT SOLUTIONS THOMSON REUTERS ACCELUS COMPLIANCE MANAGEMENT SOLUTIONS THOMSON REUTERS ACCELUS COMPLIANCE MANAGEMENT SOLUTIONS THOMSON REUTERS ACCELUS Our solutions dynamically connect business transactions, strategy, and operations to the ever-changing regulatory environment,

More information

Leveraging a Maturity Model to Achieve Proactive Compliance

Leveraging a Maturity Model to Achieve Proactive Compliance Leveraging a Maturity Model to Achieve Proactive Compliance White Paper: Proactive Compliance Leveraging a Maturity Model to Achieve Proactive Compliance Contents Introduction............................................................................................

More information

9044 - Enhance Performance Management Reporting

9044 - Enhance Performance Management Reporting September 9 11, 2013 9044 - Enhance Performance Management Reporting Anaheim, California and Analysis Leveraging SAP BI Tools Sean Johnson SAP Agenda Overview of Enterprise Performance Management Value

More information

3rd Party Assurance & Information Governance 2014-2016 outlook IIA Ireland Annual Conference 2014. Straightforward Security and Compliance

3rd Party Assurance & Information Governance 2014-2016 outlook IIA Ireland Annual Conference 2014. Straightforward Security and Compliance 3rd Party Assurance & Information Governance 2014-2016 outlook IIA Ireland Annual Conference 2014 Continuous Education Services (elearning/workshops) Compliance Management Portals Information Security

More information

End User Computing Solving the problem

End User Computing Solving the problem End User Computing Solving the problem Introduction End User Computing (EUC) applications (such as Microsoft Excel, Microsoft Access, and others) continue to present challenges for organizations. On the

More information

Performance Management Applications. Gain Insight Throughout the Enterprise

Performance Management Applications. Gain Insight Throughout the Enterprise Performance Management Applications Gain Insight Throughout the Enterprise Applications that Span the Enterprise Managers need a consolidated view of their key enterprise metrics and performance indicators

More information

INFORMATION CONNECTED

INFORMATION CONNECTED INFORMATION CONNECTED Business Solutions for the Industrial Manufacturing World Primavera Project Portfolio Management Solutions from Oracle Streamline, Automate, and Accelerate the Manufacturing Process

More information