KPMG s integrated Risk Management solution



Similar documents
Controls over CIS. Ryan O Halloran, Senior Manager KPMG Hobart. TAO Client Information Session. May 2015

KPMG Business DialogueS

The Effective People Manager. Open Course: May 2013

Introductions. KPMG Presenters: Jay Schulman - Managing Director, Advisory - KPMG National Leader Identity and Access Management

Automatic Exchange of Information

Cloud Computing An Auditor s Perspective

Orchestrating the New Paradigm Cloud Assurance

U.S. Inbound Tax Services

A NEW APPROACH TO CYBER SECURITY

Data Centre Managed Services Market

Solvency II model assurance. 12 April 2012

IT Audit Perspective on Continuous Auditing/ Continuous Monitoring KPMG LLP

The three lines of defence

Stakeholder management and. communication PROJECT ADVISORY. Leadership Series 3

TOP 10 WAYS TO ADDRESS PCI DSS COMPLIANCE. ebook Series

Tax Dispute Resolution Services kpmg.com

Public reporting in a Solvency II environment

Vendor Risk Management in the New Regulatory Environment. kpmg.com

Consolidation requirements in Luxembourg

Leveraging Data Analytics and Continuous Auditing. Internal Audit. January 9, 2014

Enterprise Risk Management Panel Discussion

Patent Public Advisory Committee Quarterly Meeting Patent Quality

Dedicated to Private Equity

Audit Committee Institute Assessment of audit committees

Roche Finance Europe B.V. - Financial Statements 2013

PCI DSS Top 10 Reports March 2011

Enterprise Risk Management in Compliance 360

IIA South West Event. A look at key supply chain risks and why contracting is a key step 14 January 2015

Submitted to: Service Definition Document for Service Desk for IT Infrastructure Management Services

Are Your Tax-Free Inter-Corporate Dividends in Jeopardy?

Cyber Security For not-for-profit organizations. Kevvie Fowler, GCFA, CISSP February, 2015

The UK as a holding company location

Third Party Security: Are your vendors compromising the security of your Agency?

Sustainability reporting What you should know kpmg.com

Insurance Accounting AUDIT COMMITTEE NEWS. Financial Reporting. Edition 43 / Q4 2013

Top 5 reasons incident response is failing. kpmg.com


TAX MANAGEMENT CONSULTING. How can you be more efficient at managing tax?

ADVISORY SERVICES. Risk management in an evolving world. Making the case for social media governance. kpmg.com

KPMG s Guide to Non- Executive Directors Fees February 2011

Balancing supplier risk versus reward. kpmg.com

Moving Forward with IT Governance and COBIT

Audit Committee self-assessment

SAP PartnerEdge Program Guide for Language Services Partners

Private Equity funds. Venture Capital funds. Hedge funds. Other structures. 2.2 Laws. Retail funds UCITS; non-ucits;

Developing a Free Credit Score Program. kpmg.com

#KPMG Ignite. Join the conversation

BCM Data Research within a Business Intelligence Dashboard

TECHNOLOGY SOLUTIONS FOR THE INTERNAL AUDITOR

Maintaining PCI-DSS compliance. Daniele Bertolotti Antonio Ricci

KPMG KUWAIT TAX. Other Services

Opening doors in China Incorporation of foreign banks


Keeping up with the KPIs 10 steps to help identify and monitor key performance indicators for your business

Ensuring Optimal Governance and Relationship Management Between Parties

Leveraging data analytics and continuous auditing processes for improved audit planning, effectiveness, and efficiency. kpmg.com

How does the new investment company accounting literature apply to real estate entities? kpmg.com

ERP Controls Integration

Atos Secure File Sharing SaaS

THE NEXT GENERATION OF HR SHARED SERVICES SUBHEADLINE RUNS HERE AND HERE AND HERE AND HERE

With Windows, Web and Mobile clients Richmond SupportDesk is accessible to Service Desk operators wherever they are.

Validation Best Practice for a SaaS

Your incentive compensation plans have no borders. Why should your compliance processes? Powered by KPMG LINK Global Equity Tracker

Accounting Issues with Investments in Foreign Subsidiaries

London Business Interruption Association Technology new risks and opportunities for the Insurance industry

An Introduction to the Information Security Program Model (ISPM)

Driving business performance Using data analytics

Addressing common challenges in the record-to-report process. kpmg.com

End User Computing & Business Analysis

Namibia Internal Audit Survey

Meet challenges head on

NEC Managed Security Services

Service Organization Control (SOC) Reports

Best Practice Strategies for Managing and Mitigating Key Cyber Risks. Brendan Saunders, Principal Security Consultant - November 2015

Solvency II benchmarking survey

Cyber intelligence exchange in business environment : a battle for trust and data

Risk management and the transition of projects to business as usual

Transcription:

KPMG s integrated Risk Management solution Business DialogueS breakfast conference 20/09/2011

Agenda Integrated Risk Management Spirit and Solutions The SaaS mechanism Conclusion 1

Solvency II extract Solvency II directive European Union 25/11/2009 2

Integrated Risk Management system Meaning Governance Rules Defines Applied through Contain Risks Implemented in Business Processes Mitigation items Controlled by Applied on Controls Defines Manages Require Risks management Compliance 3

Integrated Risk Management system Typical situation Regulator Governance Rules Defines Company Management Internal Audit Applied through Organization Contain Risks Implemented in Business Processes Mitigation items Operational Staff Controlled by Applied on Controls Defines Manages Require Risk Management Risks management Internal Control Compliance 4

Integrated Risk Management system Typical situation Regulator Regulations Processes database Organization Contain Risks Require Risks tracking Risk Management Loss reports Governance Governance Implemented in Rules Defines Applied through Business Procedures Processes Operational documentation Staff Mitigation items Guidelines Defines Risks management Company Management Controlled by Internal Control Applied on Controls database Manages Audit logs Independent report Internal Audit Assessment Compliance Controls history and reporting 5

Integrated Risk Management system Solvency II spirit Regulator Regulations Governance Governance Rules Defines Company Management Independent report Internal Audit Applied through Organization Contain Risks Implemented in Processes, Business procedures, Processes risks and controls Mitigation items Defines Controlled by Operational Staff Applied on Controls Manages Require Risk Management Risks management Internal Control Compliance 6

State of the Luxembourg insurance market Tools used for the management of risks 2010 5% 42% 53% 2011 41% 13% 47% 0% 20% 40% 60% 80% 100% Solvency II readiness survey KPMG September 2011 Market In-house None 7

Complex equation So we are seeking for the Luxembourg insurance market: A Risk Management solution compliant with the Solvency II directive... + able to interface with already documented business processes + able to cope with undocumented business processes + able to propose a complete and flexible GRC framework (risk management system) + able to support interactions with operational teams (loss reports, control campaigns) + able to generate on demand risk steering and management reports (heat maps...) + without any technological burden + at a reasonable price 8

Introducing one of the market s leaders in GRC solutions Cura Software Solutions offers broad GRC capabilities and risk expertise. The company highlights its product flexibility and risk expertise as differentiators, and customer feedback supports these claims. 2010, Forrester Research, Inc. 9

The following screenshots are samples Please contact us for a dedicated on-site demonstration of full system functionalities 10

Identifying and assessing risks Risk Identification Risk Evaluation Risk Mitigations Actions 11

Defining tasks (composing action plans) and assigning tasks to staff 12

Reporting on target heat maps and action plan status 13

Reporting by staff of losses and incidents 14

Reporting on losses and incidents to management 15

Assessing risks mitigation effectiveness through control campaigns 16

Reporting on residual risks 17

The SaaS mechanism proposed by KPMG Integrated GRC solution Company A s compartment Generic setup ABCD System admin Online support Related ad-hoc services Risks & controls management Loss reports Control campaigns Reporting Company A Secured Chinese walls 18

Conclusion So we have found for the Luxembourg insurance market: A Risk Management solution compliant with the Solvency II directive... + able to interface with already documented business processes + able to cope with undocumented business processes + able to propose a complete and flexible GRC framework (risk management system) + able to support interactions with operational teams (loss reports, control campaigns) + able to generate on demand risk steering and management reports (heat maps...) + without any technological burden Contact us for a on-site demo + at a reasonable price Fee quote is available upon request 19

Conclusion The risk management tool will not resolve in itself all the aspects of the Second Pillar of the Solvency II directive. It is the ground on which you can base your risk management approach. Few elements are missing once the tool is in place: Identification, understanding and ownership of the risks; Organization of ongoing management of risks. You can therefore concentrate on the value adding part of your work! 20

Thank you Presentation by Geoffroy Gailly ABCD Geoffroy Gailly Director KPMG Advisory Tel. +352 22 51 51-7250 9, allée Scheffer Mob +352 621 87 7250 L-2520 Luxembourg Fax +352 22 51 71 geoffroy.gailly@kpmg.lu KPMG Advisory S.à r.l., is a Luxembourg Société à responsabilité Limitée and a subsidiary of KPMG Europe LLP

2011 KPMG Advisory S.à r.l., a Luxembourg private limited company and a member firm of the KPMG network of independent member firms affiliated with KPMG International Cooperative (KPMG International), a Swiss entity. All rights reserved. The KPMG name, logo and cutting through complexity are registered trademarks or trademarks of KPMG International Cooperative (KPMG International).