SlideShare uma empresa Scribd logo
1 de 51
Baixar para ler offline
© Risk Oversight Solutions Inc.
Five Lines of Assurance: A New
Paradigm in Internal Audit & ERM
Tim Leech, Managing Director
Risk Oversight Solutions Inc.
timleech@riskoversightsolutions.com
www.riskoversightsolutions.com
© Risk Oversight Solutions Inc.
2
Speaker Professional Profile
Tim J. Leech, FCPA CIA CRMA CCSA CFE is Managing Director at Risk Oversight Solutions Inc. based in Oakville, Ontario,
Canada and Sarasota, Florida. He has over 30 years of experience in the risk governance, internal audit, IT, and forensic
accounting/litigation support fields. His experience base includes setting up a new business unit, a “first of its kind”, for Coopers &
Lybrand, “Control & Risk Management Services” in 1987; founding in 1991, building, and successfully selling CARD®decisions, a
global risk and assurance consulting and software firm, to Paisley/Thomson Reuters in 2004; serving as Paisley’s Chief
Methodology Officer from 2004 -2007; and 30+ years of global experience helping clients around the world with internal audit
transformation initiatives and the design, implementation, and maintenance of integrated and more powerful ERM/IA methodology
and technology frameworks.
He developed and successfully released CARD®map, the world’s first integrated risk and assurance software, in 1997. The
web-enabled “cloud” version of CARD®map was released in 2000. Tim was the first in 2009 to develop and deliver training on IIA
IPPF Standard 2120 to equip internal auditors to assess and report on the effectiveness of risk management processes. He is the
author of the Conference Board Director Notes December 2012 publication “Board Oversight of Management’s Risk Appetite and
Tolerance”, co-author of the highly acclaimed January 2014 “Risk Oversight: Evolving Expectations for Boards”, and most
recently, “Paradigm Paralysis in ERM and Internal Audit” in the summer 2016 issue of Ethical Boardroom. His ground breaking
article, “Reinventing Internal Audit”, published in the April 2015 issue of Internal Auditor magazine has attracted global recognition
and was awarded a 2016 Outstanding Contribution Award from IIA global.
In 2013 he launched a second generation of disruptive innovation with a breakthrough approach to risk and assurance
management – “Five Lines of Assurance: Board & C-Suite Driven/Objective-centric ERM and Internal Audit”. The goal – respond
to the rapid escalation in board risk oversight expectations and deliver substantially more “bang for the buck” from formal
assurance spending.
Leech was the recipient of IIA Canada’s first Outstanding Contributions to the Profession award at the first IIA Canada national
conference in Quebec City in 2009, and is currently working with IIA Global in Florida to roll-out training on “Five Lines of
Assurance/Board & C-Suite Driven/Objective Centric ERM and internal audit to CAEs, IIA National Institutes, and in-house IIA
training clients around the world.
© Risk Oversight Solutions Inc.
3
Presentation Agenda
Part 1: Escalating Expectations
• Escalating Expectations: Regulators
• Escalating Expectations: Credit Agencies
• Escalating Expectations: Institutional
Investors
• Escalating Expectations: Director Associations
• Escalating Expectations: Internal Audit & ERM
Customers
• IIA Response to date
• The Way Forward: Five Lines of Assurance-A
New Paradigm in ERM & Internal Audit
© Risk Oversight Solutions Inc.
4
Part 2 Five Lines of Assurance- A New
Paradigm in ERM and IA
• 5LoA Design Objectives
• 5LoA Core Elements
• 5LoA Key Benefits
• 5LoA Examples
• 5LoA Tools
• 5LoA Implementation Overview
Presentation Agenda
© Risk Oversight Solutions Inc.
5
Escalating Expectations: Regulators
© Risk Oversight Solutions Inc.
6
Escalating Expectations: Regulators
CSA Expectations: Canadian Public Companies
Material risks are required to be disclosed in regulatory filings such as an AIF or a prospectus. The
way in which an issuer manages those risks may vary between industries and even between issuers
within an industry according to their particular circumstances. It is important for investors to
understand how issuers manage those risks.
Disclosure regarding oversight and management of risks should indicate:
• the board’s responsibility for oversight and management of risks, and
• any board and management-level committee to which responsibility for oversight and
management of risks has been delegated.
The disclosure should provide insight into:
• the development and periodic review of the issuer’s risk profile
• the integration of risk oversight and management into the issuer’s strategic plan
• the identification of significant elements of risk management, including policies and procedures to
manage risk, and
• the board’s assessment of the effectiveness of risk management policies and procedures, where
applicable.
Source: CSA STAFF NOTICE 58-306 2010 CORPORATE GOVERNANCE DISCLOSURE COMPLIANCE REVIEW
December 2, 2010, page24 http://bit.ly/ezvf3O
© Risk Oversight Solutions Inc.
7
Escalating Expectations: Regulators
Financial Stability Board (“FSB”) November 2013:
© Risk Oversight Solutions Inc.
8
Escalating Expectations: Regulators
Financial Stability Board (“FSB”) November 2013:
© Risk Oversight Solutions Inc.
9
Escalating Expectations: Regulators
Board responsibilities per FRC UK Sept 2014 Code
Boards are responsible for:
• determining the extent to which the company is willing to take
on risk (its “risk appetite”);
• ensuring that an appropriate “risk culture” has been instilled
throughout the organization;
• identifying and evaluating the principal risks to the company’s
business model and the achievement of its strategic
objectives, including risks that could threaten its solvency or
liquidity;
• agreeing how these risks should be controlled, managed, or
mitigated;
© Risk Oversight Solutions Inc.
10
Escalating Expectations: Regulators
© Risk Oversight Solutions Inc.
11
Escalating Expectations: Regulators
Integrated Risk Management
Risk management cannot be practiced effectively in silos. As a
result, integrated risk management promotes a continuous, proactive
and systematic process to understand, manage and communicate risk
from an organization-wide perspective in a cohesive and consistent
manner. It is about supporting strategic decision-making that
contributes to the achievement of an organization's overall objectives. It
requires an ongoing assessment of risks at every level and in every
sector of the organization, aggregating these results at the corporate
level, communicating them and ensuring adequate monitoring and
review. Integrated risk management involves the use of these
aggregated results to inform decision-making and business practices
within the organization.
Source: TBS Guide to Integrated Risk Management May 2016
© Risk Oversight Solutions Inc.
12
Escalating Expectations: Regulators
Deputy Heads
Deputy Heads are responsible for managing their organization's risks by leading the
implementation of effective risk management practices, both formal and informal. This
includes establishing the organization's overall risk management approach and ensuring
that supporting processes are in place. In doing so, Deputy Heads are encouraged to
apply the principles outlined in section 2.3. A key role of the Deputy Head is to ensure
that risk management principles and practices are understood and integrated into the
various activities of his/her organization. Deputy Heads are also responsible for
monitoring risk management practices in their organizations, as well as considering risks
that arise when partnering with organizations within and external to the federal public
service. This includes ensuring that issues affecting the organization's risk management
approach, whether identified through assessments or internal and external monitoring,
are examined, reviewed and addressed effectively. In addition, Deputy Heads play an
important role in creating a learning environment that promotes continuous improvement
in risk management competencies and capacity within their organization. Through their
leadership, Deputy Heads foster a risk-informed organizational culture that supports risk-
informed decision-making, enables dialogue on risk tolerance, focuses on results and
enables the consideration of both opportunity and innovation.
Source: TBS Guide to Integrated Risk Management May 2016
© Risk Oversight Solutions Inc.
13
Escalating Expectations: Regulators
Generally, there are numerous tools and techniques for analyzing
(e.g. workshops, surveys) and prioritizing (e.g. risk maps) risks.
Organizations are encouraged to design a process that is
appropriate for their own operating environment. In defining risk
assessment activities within the risk management process,
organizations may wish to provide direction regarding:
• who should be involved in the assessment of risks;
• how much rigour is required for a particular risk assessment
exercise;
• what type of information needs to the collected and what level of
detail is required; and
• how assessed risks should be documented for response
purposes.
Source: TBS Guide to Integrated Risk Management May 2016
© Risk Oversight Solutions Inc.
14
Escalating Expectations: Credit Agencies
© Risk Oversight Solutions Inc.
15
Escalating Expectations: Credit Agencies
S&P: “We believe that successful risk culture
begins with fostering open dialogue where every
employee in the organization has some level of
ownership of the organization's risks, can readily
identify the broader impacts of local decisions, and
is rewarded for identifying outsize risks to senior
levels. In such cultures, strategic decision-making
routinely includes a review of relevant risks and
alternative strategies rather than a simple return-
on-investment analysis.” (page 4)
© Risk Oversight Solutions Inc.
16
Escalating Expectations: Institutional Investors
© Risk Oversight Solutions Inc.
17
Escalating Expectations: Institutional Investors
© Risk Oversight Solutions Inc.
18
Escalating Expectations: Director Associations
© Risk Oversight Solutions Inc.
19
Escalating Expectations: IA Customers
© Risk Oversight Solutions Inc.
20
Escalating Expectations: IA Customers
© Risk Oversight Solutions Inc.
21
IIA Response to Date
2120 – Risk Management
“The internal audit activity must evaluate the
effectiveness and contribute to the
improvement of the risk management process”
© Risk Oversight Solutions Inc.
22
IIA Response to Date
© Risk Oversight Solutions Inc.
23
IIA Response to Date
© Risk Oversight Solutions Inc.
24
The Way Forward: Reinvent Internal Audit
© Risk Oversight Solutions Inc.
25
The Way Forward: Five Lines of Assurance
© Risk Oversight Solutions Inc.
26
The Way Forward: Paradigm Shift Required
© Risk Oversight Solutions Inc.
27
5LoA Design Objectives
• Redefine risk management from being seen
primarily as hazard avoidance/management to a tool
to increase certainty key objectives are achieved
while still operating with a tolerable level of retained
risk
• Provide management and boards with a practical
solution to meet escalating board risk oversight and
risk governance expectations
• Generate higher levels of management and board
participation in ERM and internal audit
• Put the focus and resources on top value creation
and potential value erosion end result objectives
© Risk Oversight Solutions Inc.
28
5LoA Design Objectives
• Transition organizations from “supply driven” to
“board/demand driven” assurance
• Provide a platform to “optimize” risk treatment
design (i.e. lowest possible cost combination of
risk treatments capable of producing an
acceptable residual risk status)
• Integrate the work of all assurance functions
including IA, risk, safety, compliance, insurance,
legal, and others
© Risk Oversight Solutions Inc.
29
5LoA Design Objectives
• Elevate the stature of and value added by Internal
Audit and ERM support staff
• Integrate strategic planning and ERM
• Engage boards and senior management defining
the amount of risk assessment rigor and
independent assurance. This is a key risk decision
in its own right that hasn’t been sufficiently
recognized
• Clarify accountabilities and role of all key assurance
players including the board, senior management,
work units, ERM staff and internal audit
• Meet emerging risk oversight expectations
© Risk Oversight Solutions Inc.
30
5LoA Core Elements
Use an “OBJECTIVES REGISTER” with top value creation/strategic
objectives and top potential value erosion objectives as the
foundation for all ERM and internal audit work, not a “risk register” or
“audit universe”
© Risk Oversight Solutions Inc.
31
5LoA Core Elements
“Top potential value erosion objectives” are also called
“foundation objectives” and include compliance with laws,
reliable external disclosures, safety and other social responsibility
objectives.
© Risk Oversight Solutions Inc.
32
5LoA Core Elements
Engage senior management and the board in the
process used to decide which objectives to include
in the “OBJECTIVES REGISTER
© Risk Oversight Solutions Inc.
33
5LoA Core Elements
Engage senior management and the board in the
process used to decide “Risk Assessment Rigor”
and “Independent Assurance Level”
© Risk Oversight Solutions Inc.
34
5LoA Core Elements
Conscious and transparent decisions on “Risk Assessment
Rigor/Rigour”
© Risk Oversight Solutions Inc.
35
5LoA Core Elements
Conscious and transparent decisions on “Independent
Assurance Level”
NIA – No independent assurance
LOW – A high level assurance review has been
completed and a feedback report provided to
the OWNER/SPONSOR and RISK OVERSIGHT
COMMITTEE
MEDIUM – An independent review has been
completed to assess the completeness of risks
identified, risk treatments and residual risk
status information provided and a report
provided to the OWNER/SPONSOR and RISK
OVERSIGHT COMMITTEE
HIGH – In addition to the steps defined for
MEDIUM, steps have been taken to confirm
the existence and effectiveness of the risk
treatments identified.
© Risk Oversight Solutions Inc.
36
5LoA Core Elements
Assign primary responsibility to report upwards on
the residual risk status linked to each objective to a
“OWNER/SPONSOR”
© Risk Oversight Solutions Inc.
37
5LoA Core Elements
Consider the full range of “Risk Treatments” when
completing Risk Treatment Strategy section
© Risk Oversight Solutions Inc.
38
5LoA Core Elements
Focus on the acceptability of “Residual Risk Status”,
specifically whether it is, or is not, within the entity’s risk
appetite and tolerance
© Risk Oversight Solutions Inc.
39
5LoA Core Elements
Conscious and transparent decisions on “Composite
Residual Risk Rating”
© Risk Oversight Solutions Inc.
40
5LoA Core Elements
After the decision on acceptability of residual risk status has been
made, assess whether the Risk Treatment strategy is Optimized
© Risk Oversight Solutions Inc.
41
5LoA Core Elements
Provide consolidated reports on residual risk status to the
board
© Risk Oversight Solutions Inc.
42
5LoA Key Benefits
• Boards are provided with a concise enterprise
level report on the state of residual risk for the
company’s top value creation and potential value
erosion objectives
• The work of the “assurance silos” including IA,
risk, safety, environment, compliance, legal,
insurance and others is integrated
• Key information is provided to senior management
and the board to assess if the current residual risk
status linked to top objectives is, or is not, within
the company’s risk appetite/tolerance
© Risk Oversight Solutions Inc.
43
5LoA Key Benefits
• Boards are provided with a tangible vehicle to demonstrate
they are actively overseeing the company’s “risk appetite
framework” (“RAF”)
• The process is designed to fully integrate with strategic
planning, new product/service initiatives, and M&A activities.
• The process provides a clear response to emerging
expectations like the UK Governance Code, Canadian
Securities Administrators, SEC, FSB, credit agencies,
institutional investors and TSB.
• The main role of internal audit is to report on the effectiveness
of the risk management processes and the consolidated
report on residual risk status the board receives from the CEO
or his/her designate and to help the company build and
maintain robust risk management processes
© Risk Oversight Solutions Inc.
44
5LoA Key Benefits
• Boards are provided with a tangible vehicle to demonstrate
they are actively overseeing the company’s “risk appetite
framework” (“RAF”)
• The process is designed to fully integrate with strategic
planning, new product/service initiatives, and M&A activities.
• The process provides a clear response to emerging
expectations like the UK Governance Code, Canadian
Securities Administrators, SEC, FSB, credit agencies,
institutional investors and TSB.
• The main role of internal audit is to report on the effectiveness
of the risk management processes and the consolidated
report on residual risk status the board receives from the CEO
or his/her designate and to help the company build and
maintain robust risk management processes
© Risk Oversight Solutions Inc.
45
5LoA Key Benefit to Federal Departments:
Meets TSB Expectations
Generally, there are numerous tools and techniques for analyzing
(e.g. workshops, surveys) and prioritizing (e.g. risk maps) risks.
Organizations are encouraged to design a process that is
appropriate for their own operating environment. In defining risk
assessment activities within the risk management process,
organizations may wish to provide direction regarding:
• who should be involved in the assessment of risks;
• how much rigour is required for a particular risk assessment
exercise;
• what type of information needs to the collected and what level of
detail is required; and
• how assessed risks should be documented for response
purposes.
Source: TBS Guide to Integrated Risk Management May 2016
© Risk Oversight Solutions Inc.
46
5LoA Examples
SVG Capital plc
London Stock Exchange
Jan 2015 Annual Report
Page 29
© Risk Oversight Solutions Inc.
47
5LoA Examples
Ottawa Humane
Society:
The first charity
in the world to
implement BDO/OC
© Risk Oversight Solutions Inc.
48
5LoA Examples
Western University is
a licensed user of
Risk Oversight Solutions
training tools and materials
© Risk Oversight Solutions Inc.
49
5LoA Tools
© Risk Oversight Solutions Inc.
50
5LoA Implementation Overview
© Risk Oversight Solutions Inc.
51
QUESTIONS???
Thank you
timleech@riskoversightsolutions.com

Mais conteúdo relacionado

Mais procurados

Risk Appetite: A new Menu under Basel 3? Pieter Klaassen (UBS) voor het Zande...
Risk Appetite: A new Menu under Basel 3? Pieter Klaassen (UBS) voor het Zande...Risk Appetite: A new Menu under Basel 3? Pieter Klaassen (UBS) voor het Zande...
Risk Appetite: A new Menu under Basel 3? Pieter Klaassen (UBS) voor het Zande...Zanders Treasury, Risk and Finance
 
Sharing Practice on Enterprise Risk Management (ERM)
Sharing Practice on Enterprise Risk Management (ERM)Sharing Practice on Enterprise Risk Management (ERM)
Sharing Practice on Enterprise Risk Management (ERM)Diane Christina
 
Strategic Risk Management as a CFO: Getting Risk Management Right
Strategic Risk Management as a CFO: Getting Risk Management RightStrategic Risk Management as a CFO: Getting Risk Management Right
Strategic Risk Management as a CFO: Getting Risk Management RightProformative, Inc.
 
Enterprise Risk Management - Aligning Risk with Strategy and Performance
Enterprise Risk Management - Aligning Risk with Strategy and PerformanceEnterprise Risk Management - Aligning Risk with Strategy and Performance
Enterprise Risk Management - Aligning Risk with Strategy and PerformanceResolver Inc.
 
Introduction to Risk Management ISO31000:2009
Introduction to Risk Management ISO31000:2009Introduction to Risk Management ISO31000:2009
Introduction to Risk Management ISO31000:2009Ahmad Azwang Aisram Omar
 
Enterprise Risk Management as a Core Management Process
Enterprise Risk Management as a Core Management ProcessEnterprise Risk Management as a Core Management Process
Enterprise Risk Management as a Core Management Processregio12
 
Governance Culture & Incentives- Fundamentals of Operational Risk
Governance Culture & Incentives- Fundamentals of Operational RiskGovernance Culture & Incentives- Fundamentals of Operational Risk
Governance Culture & Incentives- Fundamentals of Operational RiskAndrew Smart
 
Coso Erm(2)
Coso Erm(2)Coso Erm(2)
Coso Erm(2)deeptica
 
The secret of a successful Crisis Management & Continuity Plan
The secret of a successful Crisis Management & Continuity PlanThe secret of a successful Crisis Management & Continuity Plan
The secret of a successful Crisis Management & Continuity PlanPECB
 
Enterprise Risk Management (ERM) Framework 2020
Enterprise Risk Management (ERM) Framework 2020 Enterprise Risk Management (ERM) Framework 2020
Enterprise Risk Management (ERM) Framework 2020 Richard Swartzbaugh
 
Strategic Risk Management in the Face of Uncertainty and Unexpected Risks
Strategic Risk Management in the Face of Uncertainty and Unexpected RisksStrategic Risk Management in the Face of Uncertainty and Unexpected Risks
Strategic Risk Management in the Face of Uncertainty and Unexpected RisksInternational Federation of Accountants
 
PECB Webinar: ISO 31000 - The Benchmark for Risk Management in uncertain times
PECB Webinar: ISO 31000 - The Benchmark for Risk Management in uncertain timesPECB Webinar: ISO 31000 - The Benchmark for Risk Management in uncertain times
PECB Webinar: ISO 31000 - The Benchmark for Risk Management in uncertain timesPECB
 
Enterprise Risk Management
Enterprise Risk ManagementEnterprise Risk Management
Enterprise Risk ManagementPYA, P.C.
 
Implementation of Enterprise Risk Management with ISO 31000 Risk Management S...
Implementation of Enterprise Risk Management with ISO 31000 Risk Management S...Implementation of Enterprise Risk Management with ISO 31000 Risk Management S...
Implementation of Enterprise Risk Management with ISO 31000 Risk Management S...PECB
 
Internal Control & Risk Management Framework
Internal Control & Risk Management FrameworkInternal Control & Risk Management Framework
Internal Control & Risk Management FrameworkTreasury Consulting LLP
 
Enterprise Risk Management Overview Powerpoint Presentation Slides
Enterprise Risk Management Overview Powerpoint Presentation SlidesEnterprise Risk Management Overview Powerpoint Presentation Slides
Enterprise Risk Management Overview Powerpoint Presentation SlidesSlideTeam
 
Risk Management 101
Risk Management 101Risk Management 101
Risk Management 101Wil Rickards
 
Risk Appetite & Risk Tolerance: Improving their application from Abstract to ...
Risk Appetite & Risk Tolerance: Improving their application from Abstract to ...Risk Appetite & Risk Tolerance: Improving their application from Abstract to ...
Risk Appetite & Risk Tolerance: Improving their application from Abstract to ...Eric Campbell
 

Mais procurados (20)

ERM-Enterprise Risk Management
ERM-Enterprise Risk ManagementERM-Enterprise Risk Management
ERM-Enterprise Risk Management
 
Risk Appetite: A new Menu under Basel 3? Pieter Klaassen (UBS) voor het Zande...
Risk Appetite: A new Menu under Basel 3? Pieter Klaassen (UBS) voor het Zande...Risk Appetite: A new Menu under Basel 3? Pieter Klaassen (UBS) voor het Zande...
Risk Appetite: A new Menu under Basel 3? Pieter Klaassen (UBS) voor het Zande...
 
Sharing Practice on Enterprise Risk Management (ERM)
Sharing Practice on Enterprise Risk Management (ERM)Sharing Practice on Enterprise Risk Management (ERM)
Sharing Practice on Enterprise Risk Management (ERM)
 
Strategic Risk Management as a CFO: Getting Risk Management Right
Strategic Risk Management as a CFO: Getting Risk Management RightStrategic Risk Management as a CFO: Getting Risk Management Right
Strategic Risk Management as a CFO: Getting Risk Management Right
 
Enterprise Risk Management - Aligning Risk with Strategy and Performance
Enterprise Risk Management - Aligning Risk with Strategy and PerformanceEnterprise Risk Management - Aligning Risk with Strategy and Performance
Enterprise Risk Management - Aligning Risk with Strategy and Performance
 
Introduction to Risk Management ISO31000:2009
Introduction to Risk Management ISO31000:2009Introduction to Risk Management ISO31000:2009
Introduction to Risk Management ISO31000:2009
 
Enterprise Risk Management as a Core Management Process
Enterprise Risk Management as a Core Management ProcessEnterprise Risk Management as a Core Management Process
Enterprise Risk Management as a Core Management Process
 
Governance Culture & Incentives- Fundamentals of Operational Risk
Governance Culture & Incentives- Fundamentals of Operational RiskGovernance Culture & Incentives- Fundamentals of Operational Risk
Governance Culture & Incentives- Fundamentals of Operational Risk
 
Coso Erm(2)
Coso Erm(2)Coso Erm(2)
Coso Erm(2)
 
The secret of a successful Crisis Management & Continuity Plan
The secret of a successful Crisis Management & Continuity PlanThe secret of a successful Crisis Management & Continuity Plan
The secret of a successful Crisis Management & Continuity Plan
 
Enterprise Risk Management (ERM) Framework 2020
Enterprise Risk Management (ERM) Framework 2020 Enterprise Risk Management (ERM) Framework 2020
Enterprise Risk Management (ERM) Framework 2020
 
Strategic Risk Management in the Face of Uncertainty and Unexpected Risks
Strategic Risk Management in the Face of Uncertainty and Unexpected RisksStrategic Risk Management in the Face of Uncertainty and Unexpected Risks
Strategic Risk Management in the Face of Uncertainty and Unexpected Risks
 
PECB Webinar: ISO 31000 - The Benchmark for Risk Management in uncertain times
PECB Webinar: ISO 31000 - The Benchmark for Risk Management in uncertain timesPECB Webinar: ISO 31000 - The Benchmark for Risk Management in uncertain times
PECB Webinar: ISO 31000 - The Benchmark for Risk Management in uncertain times
 
Enterprise Risk Management
Enterprise Risk ManagementEnterprise Risk Management
Enterprise Risk Management
 
Implementation of Enterprise Risk Management with ISO 31000 Risk Management S...
Implementation of Enterprise Risk Management with ISO 31000 Risk Management S...Implementation of Enterprise Risk Management with ISO 31000 Risk Management S...
Implementation of Enterprise Risk Management with ISO 31000 Risk Management S...
 
Risk Appetite
Risk AppetiteRisk Appetite
Risk Appetite
 
Internal Control & Risk Management Framework
Internal Control & Risk Management FrameworkInternal Control & Risk Management Framework
Internal Control & Risk Management Framework
 
Enterprise Risk Management Overview Powerpoint Presentation Slides
Enterprise Risk Management Overview Powerpoint Presentation SlidesEnterprise Risk Management Overview Powerpoint Presentation Slides
Enterprise Risk Management Overview Powerpoint Presentation Slides
 
Risk Management 101
Risk Management 101Risk Management 101
Risk Management 101
 
Risk Appetite & Risk Tolerance: Improving their application from Abstract to ...
Risk Appetite & Risk Tolerance: Improving their application from Abstract to ...Risk Appetite & Risk Tolerance: Improving their application from Abstract to ...
Risk Appetite & Risk Tolerance: Improving their application from Abstract to ...
 

Semelhante a Five lines of assurance a new paradigm in internal audit & erm

Enterprise Risk Management Integrating with Strategy and Per
Enterprise Risk Management Integrating with Strategy and PerEnterprise Risk Management Integrating with Strategy and Per
Enterprise Risk Management Integrating with Strategy and PerTanaMaeskm
 
2017 coso-erm-integrating-with-strategy-and-performance-executive-summary
2017 coso-erm-integrating-with-strategy-and-performance-executive-summary2017 coso-erm-integrating-with-strategy-and-performance-executive-summary
2017 coso-erm-integrating-with-strategy-and-performance-executive-summaryVALUES & SENSE
 
#Corpriskforum2016 - Tatiana Budishevskaya
#Corpriskforum2016 - Tatiana Budishevskaya#Corpriskforum2016 - Tatiana Budishevskaya
#Corpriskforum2016 - Tatiana BudishevskayaAlexei Sidorenko, CRMP
 
Enterprise Risk Management and Sustainability
Enterprise Risk Management and SustainabilityEnterprise Risk Management and Sustainability
Enterprise Risk Management and SustainabilityJeff B
 
Case Study - Leveraging Risk Management for Future Growth - Published Final Copy
Case Study - Leveraging Risk Management for Future Growth - Published Final CopyCase Study - Leveraging Risk Management for Future Growth - Published Final Copy
Case Study - Leveraging Risk Management for Future Growth - Published Final CopyKevin Fryatt
 
Super Strategies 2014 Risk Strategy Presentation
Super Strategies 2014  Risk Strategy PresentationSuper Strategies 2014  Risk Strategy Presentation
Super Strategies 2014 Risk Strategy PresentationDavid Fernandes
 
How to Create a Risk Profile for Your Organization: 10 Essential Steps
How to Create a Risk Profile for Your Organization: 10 Essential StepsHow to Create a Risk Profile for Your Organization: 10 Essential Steps
How to Create a Risk Profile for Your Organization: 10 Essential StepsCase IQ
 
Enterprise 360 degree risk management
Enterprise 360 degree risk managementEnterprise 360 degree risk management
Enterprise 360 degree risk managementInfosys
 
Risk Mgmt - Define_And_Articulate
Risk Mgmt - Define_And_ArticulateRisk Mgmt - Define_And_Articulate
Risk Mgmt - Define_And_ArticulateAnthony Chiusano
 
Strategic Planning Society Webinar- Integrating Strategy and Risk Management
Strategic Planning Society Webinar- Integrating Strategy and Risk ManagementStrategic Planning Society Webinar- Integrating Strategy and Risk Management
Strategic Planning Society Webinar- Integrating Strategy and Risk ManagementAndrew Smart
 
Risk Management Essentials for Bankers
Risk Management Essentials for BankersRisk Management Essentials for Bankers
Risk Management Essentials for BankersDavid Vu
 
PECB Webinar: ISO 31000 – Risk Management and how it can help an organization
PECB Webinar: ISO 31000 – Risk Management and how it can help an organizationPECB Webinar: ISO 31000 – Risk Management and how it can help an organization
PECB Webinar: ISO 31000 – Risk Management and how it can help an organizationPECB
 
Practical approach to Risk Based Internal Audit
Practical approach to Risk Based Internal AuditPractical approach to Risk Based Internal Audit
Practical approach to Risk Based Internal AuditManoj Agarwal
 
21.04.2016 global perspective on risk management during economic slowdown
21.04.2016 global perspective on risk management during economic slowdown21.04.2016 global perspective on risk management during economic slowdown
21.04.2016 global perspective on risk management during economic slowdownThe Business Council of Mongolia
 
7 Key Elements Of An Enterprise Risk Management Program
7 Key Elements Of An Enterprise Risk Management Program7 Key Elements Of An Enterprise Risk Management Program
7 Key Elements Of An Enterprise Risk Management ProgramAlicia Edwards
 
Leading risk culture change webinar
Leading risk culture change webinarLeading risk culture change webinar
Leading risk culture change webinarFERMA
 
#Contract Risk Audit# By SN panigrahi
#Contract Risk Audit# By SN panigrahi#Contract Risk Audit# By SN panigrahi
#Contract Risk Audit# By SN panigrahiSN Panigrahi, PMP
 
Riskpro iso 31000 services 2013
Riskpro iso 31000 services 2013Riskpro iso 31000 services 2013
Riskpro iso 31000 services 2013Nidhi Gupta
 

Semelhante a Five lines of assurance a new paradigm in internal audit & erm (20)

Enterprise Risk Management Integrating with Strategy and Per
Enterprise Risk Management Integrating with Strategy and PerEnterprise Risk Management Integrating with Strategy and Per
Enterprise Risk Management Integrating with Strategy and Per
 
2017 coso-erm-integrating-with-strategy-and-performance-executive-summary
2017 coso-erm-integrating-with-strategy-and-performance-executive-summary2017 coso-erm-integrating-with-strategy-and-performance-executive-summary
2017 coso-erm-integrating-with-strategy-and-performance-executive-summary
 
#Corpriskforum2016 - Tatiana Budishevskaya
#Corpriskforum2016 - Tatiana Budishevskaya#Corpriskforum2016 - Tatiana Budishevskaya
#Corpriskforum2016 - Tatiana Budishevskaya
 
Enterprise Risk Management and Sustainability
Enterprise Risk Management and SustainabilityEnterprise Risk Management and Sustainability
Enterprise Risk Management and Sustainability
 
Case Study - Leveraging Risk Management for Future Growth - Published Final Copy
Case Study - Leveraging Risk Management for Future Growth - Published Final CopyCase Study - Leveraging Risk Management for Future Growth - Published Final Copy
Case Study - Leveraging Risk Management for Future Growth - Published Final Copy
 
Super Strategies 2014 Risk Strategy Presentation
Super Strategies 2014  Risk Strategy PresentationSuper Strategies 2014  Risk Strategy Presentation
Super Strategies 2014 Risk Strategy Presentation
 
How to Create a Risk Profile for Your Organization: 10 Essential Steps
How to Create a Risk Profile for Your Organization: 10 Essential StepsHow to Create a Risk Profile for Your Organization: 10 Essential Steps
How to Create a Risk Profile for Your Organization: 10 Essential Steps
 
Enterprise 360 degree risk management
Enterprise 360 degree risk managementEnterprise 360 degree risk management
Enterprise 360 degree risk management
 
Risk Mgmt - Define_And_Articulate
Risk Mgmt - Define_And_ArticulateRisk Mgmt - Define_And_Articulate
Risk Mgmt - Define_And_Articulate
 
Strategic Planning Society Webinar- Integrating Strategy and Risk Management
Strategic Planning Society Webinar- Integrating Strategy and Risk ManagementStrategic Planning Society Webinar- Integrating Strategy and Risk Management
Strategic Planning Society Webinar- Integrating Strategy and Risk Management
 
Risk Management Essentials for Bankers
Risk Management Essentials for BankersRisk Management Essentials for Bankers
Risk Management Essentials for Bankers
 
PECB Webinar: ISO 31000 – Risk Management and how it can help an organization
PECB Webinar: ISO 31000 – Risk Management and how it can help an organizationPECB Webinar: ISO 31000 – Risk Management and how it can help an organization
PECB Webinar: ISO 31000 – Risk Management and how it can help an organization
 
Practical approach to Risk Based Internal Audit
Practical approach to Risk Based Internal AuditPractical approach to Risk Based Internal Audit
Practical approach to Risk Based Internal Audit
 
21.04.2016 global perspective on risk management during economic slowdown
21.04.2016 global perspective on risk management during economic slowdown21.04.2016 global perspective on risk management during economic slowdown
21.04.2016 global perspective on risk management during economic slowdown
 
7 Key Elements Of An Enterprise Risk Management Program
7 Key Elements Of An Enterprise Risk Management Program7 Key Elements Of An Enterprise Risk Management Program
7 Key Elements Of An Enterprise Risk Management Program
 
Creating Value Through Enterprise Risk Management
Creating Value Through Enterprise Risk Management Creating Value Through Enterprise Risk Management
Creating Value Through Enterprise Risk Management
 
Leading risk culture change webinar
Leading risk culture change webinarLeading risk culture change webinar
Leading risk culture change webinar
 
#Contract Risk Audit# By SN panigrahi
#Contract Risk Audit# By SN panigrahi#Contract Risk Audit# By SN panigrahi
#Contract Risk Audit# By SN panigrahi
 
Riskpro iso 31000 services 2013
Riskpro iso 31000 services 2013Riskpro iso 31000 services 2013
Riskpro iso 31000 services 2013
 
Riskpro iso 31000 services 2013
Riskpro iso 31000 services 2013Riskpro iso 31000 services 2013
Riskpro iso 31000 services 2013
 

Mais de Dr .Maizar Radjin, SE., M.Ak., QIA., QRMA, CRGP

Mais de Dr .Maizar Radjin, SE., M.Ak., QIA., QRMA, CRGP (20)

Detasering_secondment_BLU_SPI_APIP.pdf
Detasering_secondment_BLU_SPI_APIP.pdfDetasering_secondment_BLU_SPI_APIP.pdf
Detasering_secondment_BLU_SPI_APIP.pdf
 
Aturan pALING LENGKAP Manajemen ASN_pns _sESUAI_NSPK_SLIDE SHARE.pdf
Aturan pALING LENGKAP Manajemen ASN_pns _sESUAI_NSPK_SLIDE SHARE.pdfAturan pALING LENGKAP Manajemen ASN_pns _sESUAI_NSPK_SLIDE SHARE.pdf
Aturan pALING LENGKAP Manajemen ASN_pns _sESUAI_NSPK_SLIDE SHARE.pdf
 
Transformasi Internal Audit_APIP_Auditor Agile_Itjen_Kemenhub_Agile Auditing_...
Transformasi Internal Audit_APIP_Auditor Agile_Itjen_Kemenhub_Agile Auditing_...Transformasi Internal Audit_APIP_Auditor Agile_Itjen_Kemenhub_Agile Auditing_...
Transformasi Internal Audit_APIP_Auditor Agile_Itjen_Kemenhub_Agile Auditing_...
 
Perilaku Kerja Inovatif Memediasi Pengaruh Integritas, Kompetensi Dan Leader...
Perilaku Kerja Inovatif Memediasi Pengaruh Integritas, Kompetensi Dan  Leader...Perilaku Kerja Inovatif Memediasi Pengaruh Integritas, Kompetensi Dan  Leader...
Perilaku Kerja Inovatif Memediasi Pengaruh Integritas, Kompetensi Dan Leader...
 
Buku Saku Perilaku Kerja Inovatif dan Efektivitas Kerja Internal Audit
Buku Saku Perilaku Kerja Inovatif dan Efektivitas Kerja Internal AuditBuku Saku Perilaku Kerja Inovatif dan Efektivitas Kerja Internal Audit
Buku Saku Perilaku Kerja Inovatif dan Efektivitas Kerja Internal Audit
 
Sistem manajemen kinerja pns permenpan 8 tahun 2021
Sistem manajemen kinerja pns permenpan 8 tahun 2021Sistem manajemen kinerja pns permenpan 8 tahun 2021
Sistem manajemen kinerja pns permenpan 8 tahun 2021
 
Change it today birokrasi is modern model
Change it today birokrasi is modern modelChange it today birokrasi is modern model
Change it today birokrasi is modern model
 
Penyederhanaan struktur organisasi kementerian lembaga penyederhanaan birokrasi
Penyederhanaan struktur organisasi kementerian  lembaga penyederhanaan birokrasiPenyederhanaan struktur organisasi kementerian  lembaga penyederhanaan birokrasi
Penyederhanaan struktur organisasi kementerian lembaga penyederhanaan birokrasi
 
Manajemen talenta ASN arah model birokrasi 2020 2024
Manajemen talenta ASN arah model birokrasi 2020 2024Manajemen talenta ASN arah model birokrasi 2020 2024
Manajemen talenta ASN arah model birokrasi 2020 2024
 
Pentingnya pengendalian risiko bagi organsiasi menghadapi revolusi global dar...
Pentingnya pengendalian risiko bagi organsiasi menghadapi revolusi global dar...Pentingnya pengendalian risiko bagi organsiasi menghadapi revolusi global dar...
Pentingnya pengendalian risiko bagi organsiasi menghadapi revolusi global dar...
 
Mewujudkan birokrasi di era disrupsi dan tatanan normal baru
Mewujudkan birokrasi di era disrupsi dan tatanan normal baruMewujudkan birokrasi di era disrupsi dan tatanan normal baru
Mewujudkan birokrasi di era disrupsi dan tatanan normal baru
 
Three lines model updated, IIA update model tiga lapis pertahanan risiko
Three lines model updated, IIA update model tiga lapis pertahanan risikoThree lines model updated, IIA update model tiga lapis pertahanan risiko
Three lines model updated, IIA update model tiga lapis pertahanan risiko
 
Dua model pengukuran dampak ekonomi proyek infrastruktur publik
Dua model pengukuran dampak ekonomi proyek infrastruktur publikDua model pengukuran dampak ekonomi proyek infrastruktur publik
Dua model pengukuran dampak ekonomi proyek infrastruktur publik
 
Perencanaan dan penganggaran yang lebih efisien, efektif dan bermanfaat bagi ...
Perencanaan dan penganggaran yang lebih efisien, efektif dan bermanfaat bagi ...Perencanaan dan penganggaran yang lebih efisien, efektif dan bermanfaat bagi ...
Perencanaan dan penganggaran yang lebih efisien, efektif dan bermanfaat bagi ...
 
Redesain sistem perencanaan dan penganggaran kementerian dan lembaga
Redesain sistem perencanaan dan penganggaran kementerian dan lembagaRedesain sistem perencanaan dan penganggaran kementerian dan lembaga
Redesain sistem perencanaan dan penganggaran kementerian dan lembaga
 
Maizar_Pembangunan zona integritas zi wbk wbbm tahun 2020 kementerian perhubu...
Maizar_Pembangunan zona integritas zi wbk wbbm tahun 2020 kementerian perhubu...Maizar_Pembangunan zona integritas zi wbk wbbm tahun 2020 kementerian perhubu...
Maizar_Pembangunan zona integritas zi wbk wbbm tahun 2020 kementerian perhubu...
 
Kebijakan implementasi reformasi birokrasi RB 2020 2024
Kebijakan implementasi reformasi birokrasi RB 2020 2024Kebijakan implementasi reformasi birokrasi RB 2020 2024
Kebijakan implementasi reformasi birokrasi RB 2020 2024
 
Proses audit jarak jauh selama dan setelah corona virus disease 2019 covid 19
Proses audit jarak jauh selama dan setelah corona virus disease 2019 covid 19Proses audit jarak jauh selama dan setelah corona virus disease 2019 covid 19
Proses audit jarak jauh selama dan setelah corona virus disease 2019 covid 19
 
Pembangunan Zona Integritas (ZI) menuju predikat Wilayah Bebas dari Korupsi (...
Pembangunan Zona Integritas (ZI) menuju predikat Wilayah Bebas dari Korupsi (...Pembangunan Zona Integritas (ZI) menuju predikat Wilayah Bebas dari Korupsi (...
Pembangunan Zona Integritas (ZI) menuju predikat Wilayah Bebas dari Korupsi (...
 
Value based internal auditing - Nilai Dasar Internal Audit
Value based internal auditing - Nilai Dasar Internal AuditValue based internal auditing - Nilai Dasar Internal Audit
Value based internal auditing - Nilai Dasar Internal Audit
 

Último

Top Rated Pune Call Girls Bhosari ⟟ 6297143586 ⟟ Call Me For Genuine Sex Ser...
Top Rated  Pune Call Girls Bhosari ⟟ 6297143586 ⟟ Call Me For Genuine Sex Ser...Top Rated  Pune Call Girls Bhosari ⟟ 6297143586 ⟟ Call Me For Genuine Sex Ser...
Top Rated Pune Call Girls Bhosari ⟟ 6297143586 ⟟ Call Me For Genuine Sex Ser...Call Girls in Nagpur High Profile
 
Regional Snapshot Atlanta Aging Trends 2024
Regional Snapshot Atlanta Aging Trends 2024Regional Snapshot Atlanta Aging Trends 2024
Regional Snapshot Atlanta Aging Trends 2024ARCResearch
 
Zechariah Boodey Farmstead Collaborative presentation - Humble Beginnings
Zechariah Boodey Farmstead Collaborative presentation -  Humble BeginningsZechariah Boodey Farmstead Collaborative presentation -  Humble Beginnings
Zechariah Boodey Farmstead Collaborative presentation - Humble Beginningsinfo695895
 
Financing strategies for adaptation. Presentation for CANCC
Financing strategies for adaptation. Presentation for CANCCFinancing strategies for adaptation. Presentation for CANCC
Financing strategies for adaptation. Presentation for CANCCNAP Global Network
 
Item # 4 - 231 Encino Ave (Significance Only).pdf
Item # 4 - 231 Encino Ave (Significance Only).pdfItem # 4 - 231 Encino Ave (Significance Only).pdf
Item # 4 - 231 Encino Ave (Significance Only).pdfahcitycouncil
 
Tuvalu Coastal Adaptation Project (TCAP)
Tuvalu Coastal Adaptation Project (TCAP)Tuvalu Coastal Adaptation Project (TCAP)
Tuvalu Coastal Adaptation Project (TCAP)NAP Global Network
 
A Press for the Planet: Journalism in the face of the Environmental Crisis
A Press for the Planet: Journalism in the face of the Environmental CrisisA Press for the Planet: Journalism in the face of the Environmental Crisis
A Press for the Planet: Journalism in the face of the Environmental CrisisChristina Parmionova
 
Human-AI Collaboration for Virtual Capacity in Emergency Operation Centers (E...
Human-AI Collaborationfor Virtual Capacity in Emergency Operation Centers (E...Human-AI Collaborationfor Virtual Capacity in Emergency Operation Centers (E...
Human-AI Collaboration for Virtual Capacity in Emergency Operation Centers (E...Hemant Purohit
 
CBO’s Recent Appeals for New Research on Health-Related Topics
CBO’s Recent Appeals for New Research on Health-Related TopicsCBO’s Recent Appeals for New Research on Health-Related Topics
CBO’s Recent Appeals for New Research on Health-Related TopicsCongressional Budget Office
 
Night 7k to 12k Call Girls Service In Navi Mumbai 👉 BOOK NOW 9833363713 👈 ♀️...
Night 7k to 12k  Call Girls Service In Navi Mumbai 👉 BOOK NOW 9833363713 👈 ♀️...Night 7k to 12k  Call Girls Service In Navi Mumbai 👉 BOOK NOW 9833363713 👈 ♀️...
Night 7k to 12k Call Girls Service In Navi Mumbai 👉 BOOK NOW 9833363713 👈 ♀️...aartirawatdelhi
 
VIP Model Call Girls Lohegaon ( Pune ) Call ON 8005736733 Starting From 5K to...
VIP Model Call Girls Lohegaon ( Pune ) Call ON 8005736733 Starting From 5K to...VIP Model Call Girls Lohegaon ( Pune ) Call ON 8005736733 Starting From 5K to...
VIP Model Call Girls Lohegaon ( Pune ) Call ON 8005736733 Starting From 5K to...SUHANI PANDEY
 
An Atoll Futures Research Institute? Presentation for CANCC
An Atoll Futures Research Institute? Presentation for CANCCAn Atoll Futures Research Institute? Presentation for CANCC
An Atoll Futures Research Institute? Presentation for CANCCNAP Global Network
 
PPT Item # 4 - 231 Encino Ave (Significance Only)
PPT Item # 4 - 231 Encino Ave (Significance Only)PPT Item # 4 - 231 Encino Ave (Significance Only)
PPT Item # 4 - 231 Encino Ave (Significance Only)ahcitycouncil
 
The U.S. Budget and Economic Outlook (Presentation)
The U.S. Budget and Economic Outlook (Presentation)The U.S. Budget and Economic Outlook (Presentation)
The U.S. Budget and Economic Outlook (Presentation)Congressional Budget Office
 
Booking open Available Pune Call Girls Shukrawar Peth 6297143586 Call Hot In...
Booking open Available Pune Call Girls Shukrawar Peth  6297143586 Call Hot In...Booking open Available Pune Call Girls Shukrawar Peth  6297143586 Call Hot In...
Booking open Available Pune Call Girls Shukrawar Peth 6297143586 Call Hot In...tanu pandey
 
celebrity 💋 Agra Escorts Just Dail 8250092165 service available anytime 24 hour
celebrity 💋 Agra Escorts Just Dail 8250092165 service available anytime 24 hourcelebrity 💋 Agra Escorts Just Dail 8250092165 service available anytime 24 hour
celebrity 💋 Agra Escorts Just Dail 8250092165 service available anytime 24 hourCall Girls in Nagpur High Profile
 
Finance strategies for adaptation. Presentation for CANCC
Finance strategies for adaptation. Presentation for CANCCFinance strategies for adaptation. Presentation for CANCC
Finance strategies for adaptation. Presentation for CANCCNAP Global Network
 
Call Girls Sangamwadi Call Me 7737669865 Budget Friendly No Advance Booking
Call Girls Sangamwadi Call Me 7737669865 Budget Friendly No Advance BookingCall Girls Sangamwadi Call Me 7737669865 Budget Friendly No Advance Booking
Call Girls Sangamwadi Call Me 7737669865 Budget Friendly No Advance Bookingroncy bisnoi
 
Call Girls Chakan Call Me 7737669865 Budget Friendly No Advance Booking
Call Girls Chakan Call Me 7737669865 Budget Friendly No Advance BookingCall Girls Chakan Call Me 7737669865 Budget Friendly No Advance Booking
Call Girls Chakan Call Me 7737669865 Budget Friendly No Advance Bookingroncy bisnoi
 

Último (20)

Top Rated Pune Call Girls Bhosari ⟟ 6297143586 ⟟ Call Me For Genuine Sex Ser...
Top Rated  Pune Call Girls Bhosari ⟟ 6297143586 ⟟ Call Me For Genuine Sex Ser...Top Rated  Pune Call Girls Bhosari ⟟ 6297143586 ⟟ Call Me For Genuine Sex Ser...
Top Rated Pune Call Girls Bhosari ⟟ 6297143586 ⟟ Call Me For Genuine Sex Ser...
 
Regional Snapshot Atlanta Aging Trends 2024
Regional Snapshot Atlanta Aging Trends 2024Regional Snapshot Atlanta Aging Trends 2024
Regional Snapshot Atlanta Aging Trends 2024
 
Zechariah Boodey Farmstead Collaborative presentation - Humble Beginnings
Zechariah Boodey Farmstead Collaborative presentation -  Humble BeginningsZechariah Boodey Farmstead Collaborative presentation -  Humble Beginnings
Zechariah Boodey Farmstead Collaborative presentation - Humble Beginnings
 
Financing strategies for adaptation. Presentation for CANCC
Financing strategies for adaptation. Presentation for CANCCFinancing strategies for adaptation. Presentation for CANCC
Financing strategies for adaptation. Presentation for CANCC
 
Item # 4 - 231 Encino Ave (Significance Only).pdf
Item # 4 - 231 Encino Ave (Significance Only).pdfItem # 4 - 231 Encino Ave (Significance Only).pdf
Item # 4 - 231 Encino Ave (Significance Only).pdf
 
Tuvalu Coastal Adaptation Project (TCAP)
Tuvalu Coastal Adaptation Project (TCAP)Tuvalu Coastal Adaptation Project (TCAP)
Tuvalu Coastal Adaptation Project (TCAP)
 
A Press for the Planet: Journalism in the face of the Environmental Crisis
A Press for the Planet: Journalism in the face of the Environmental CrisisA Press for the Planet: Journalism in the face of the Environmental Crisis
A Press for the Planet: Journalism in the face of the Environmental Crisis
 
Human-AI Collaboration for Virtual Capacity in Emergency Operation Centers (E...
Human-AI Collaborationfor Virtual Capacity in Emergency Operation Centers (E...Human-AI Collaborationfor Virtual Capacity in Emergency Operation Centers (E...
Human-AI Collaboration for Virtual Capacity in Emergency Operation Centers (E...
 
CBO’s Recent Appeals for New Research on Health-Related Topics
CBO’s Recent Appeals for New Research on Health-Related TopicsCBO’s Recent Appeals for New Research on Health-Related Topics
CBO’s Recent Appeals for New Research on Health-Related Topics
 
Night 7k to 12k Call Girls Service In Navi Mumbai 👉 BOOK NOW 9833363713 👈 ♀️...
Night 7k to 12k  Call Girls Service In Navi Mumbai 👉 BOOK NOW 9833363713 👈 ♀️...Night 7k to 12k  Call Girls Service In Navi Mumbai 👉 BOOK NOW 9833363713 👈 ♀️...
Night 7k to 12k Call Girls Service In Navi Mumbai 👉 BOOK NOW 9833363713 👈 ♀️...
 
VIP Model Call Girls Lohegaon ( Pune ) Call ON 8005736733 Starting From 5K to...
VIP Model Call Girls Lohegaon ( Pune ) Call ON 8005736733 Starting From 5K to...VIP Model Call Girls Lohegaon ( Pune ) Call ON 8005736733 Starting From 5K to...
VIP Model Call Girls Lohegaon ( Pune ) Call ON 8005736733 Starting From 5K to...
 
An Atoll Futures Research Institute? Presentation for CANCC
An Atoll Futures Research Institute? Presentation for CANCCAn Atoll Futures Research Institute? Presentation for CANCC
An Atoll Futures Research Institute? Presentation for CANCC
 
PPT Item # 4 - 231 Encino Ave (Significance Only)
PPT Item # 4 - 231 Encino Ave (Significance Only)PPT Item # 4 - 231 Encino Ave (Significance Only)
PPT Item # 4 - 231 Encino Ave (Significance Only)
 
The U.S. Budget and Economic Outlook (Presentation)
The U.S. Budget and Economic Outlook (Presentation)The U.S. Budget and Economic Outlook (Presentation)
The U.S. Budget and Economic Outlook (Presentation)
 
Booking open Available Pune Call Girls Shukrawar Peth 6297143586 Call Hot In...
Booking open Available Pune Call Girls Shukrawar Peth  6297143586 Call Hot In...Booking open Available Pune Call Girls Shukrawar Peth  6297143586 Call Hot In...
Booking open Available Pune Call Girls Shukrawar Peth 6297143586 Call Hot In...
 
celebrity 💋 Agra Escorts Just Dail 8250092165 service available anytime 24 hour
celebrity 💋 Agra Escorts Just Dail 8250092165 service available anytime 24 hourcelebrity 💋 Agra Escorts Just Dail 8250092165 service available anytime 24 hour
celebrity 💋 Agra Escorts Just Dail 8250092165 service available anytime 24 hour
 
Finance strategies for adaptation. Presentation for CANCC
Finance strategies for adaptation. Presentation for CANCCFinance strategies for adaptation. Presentation for CANCC
Finance strategies for adaptation. Presentation for CANCC
 
Call Girls Sangamwadi Call Me 7737669865 Budget Friendly No Advance Booking
Call Girls Sangamwadi Call Me 7737669865 Budget Friendly No Advance BookingCall Girls Sangamwadi Call Me 7737669865 Budget Friendly No Advance Booking
Call Girls Sangamwadi Call Me 7737669865 Budget Friendly No Advance Booking
 
Call Girls Chakan Call Me 7737669865 Budget Friendly No Advance Booking
Call Girls Chakan Call Me 7737669865 Budget Friendly No Advance BookingCall Girls Chakan Call Me 7737669865 Budget Friendly No Advance Booking
Call Girls Chakan Call Me 7737669865 Budget Friendly No Advance Booking
 
Russian🍌Dazzling Hottie Get☎️ 9053900678 ☎️call girl In Chandigarh By Chandig...
Russian🍌Dazzling Hottie Get☎️ 9053900678 ☎️call girl In Chandigarh By Chandig...Russian🍌Dazzling Hottie Get☎️ 9053900678 ☎️call girl In Chandigarh By Chandig...
Russian🍌Dazzling Hottie Get☎️ 9053900678 ☎️call girl In Chandigarh By Chandig...
 

Five lines of assurance a new paradigm in internal audit & erm

  • 1. © Risk Oversight Solutions Inc. Five Lines of Assurance: A New Paradigm in Internal Audit & ERM Tim Leech, Managing Director Risk Oversight Solutions Inc. timleech@riskoversightsolutions.com www.riskoversightsolutions.com
  • 2. © Risk Oversight Solutions Inc. 2 Speaker Professional Profile Tim J. Leech, FCPA CIA CRMA CCSA CFE is Managing Director at Risk Oversight Solutions Inc. based in Oakville, Ontario, Canada and Sarasota, Florida. He has over 30 years of experience in the risk governance, internal audit, IT, and forensic accounting/litigation support fields. His experience base includes setting up a new business unit, a “first of its kind”, for Coopers & Lybrand, “Control & Risk Management Services” in 1987; founding in 1991, building, and successfully selling CARD®decisions, a global risk and assurance consulting and software firm, to Paisley/Thomson Reuters in 2004; serving as Paisley’s Chief Methodology Officer from 2004 -2007; and 30+ years of global experience helping clients around the world with internal audit transformation initiatives and the design, implementation, and maintenance of integrated and more powerful ERM/IA methodology and technology frameworks. He developed and successfully released CARD®map, the world’s first integrated risk and assurance software, in 1997. The web-enabled “cloud” version of CARD®map was released in 2000. Tim was the first in 2009 to develop and deliver training on IIA IPPF Standard 2120 to equip internal auditors to assess and report on the effectiveness of risk management processes. He is the author of the Conference Board Director Notes December 2012 publication “Board Oversight of Management’s Risk Appetite and Tolerance”, co-author of the highly acclaimed January 2014 “Risk Oversight: Evolving Expectations for Boards”, and most recently, “Paradigm Paralysis in ERM and Internal Audit” in the summer 2016 issue of Ethical Boardroom. His ground breaking article, “Reinventing Internal Audit”, published in the April 2015 issue of Internal Auditor magazine has attracted global recognition and was awarded a 2016 Outstanding Contribution Award from IIA global. In 2013 he launched a second generation of disruptive innovation with a breakthrough approach to risk and assurance management – “Five Lines of Assurance: Board & C-Suite Driven/Objective-centric ERM and Internal Audit”. The goal – respond to the rapid escalation in board risk oversight expectations and deliver substantially more “bang for the buck” from formal assurance spending. Leech was the recipient of IIA Canada’s first Outstanding Contributions to the Profession award at the first IIA Canada national conference in Quebec City in 2009, and is currently working with IIA Global in Florida to roll-out training on “Five Lines of Assurance/Board & C-Suite Driven/Objective Centric ERM and internal audit to CAEs, IIA National Institutes, and in-house IIA training clients around the world.
  • 3. © Risk Oversight Solutions Inc. 3 Presentation Agenda Part 1: Escalating Expectations • Escalating Expectations: Regulators • Escalating Expectations: Credit Agencies • Escalating Expectations: Institutional Investors • Escalating Expectations: Director Associations • Escalating Expectations: Internal Audit & ERM Customers • IIA Response to date • The Way Forward: Five Lines of Assurance-A New Paradigm in ERM & Internal Audit
  • 4. © Risk Oversight Solutions Inc. 4 Part 2 Five Lines of Assurance- A New Paradigm in ERM and IA • 5LoA Design Objectives • 5LoA Core Elements • 5LoA Key Benefits • 5LoA Examples • 5LoA Tools • 5LoA Implementation Overview Presentation Agenda
  • 5. © Risk Oversight Solutions Inc. 5 Escalating Expectations: Regulators
  • 6. © Risk Oversight Solutions Inc. 6 Escalating Expectations: Regulators CSA Expectations: Canadian Public Companies Material risks are required to be disclosed in regulatory filings such as an AIF or a prospectus. The way in which an issuer manages those risks may vary between industries and even between issuers within an industry according to their particular circumstances. It is important for investors to understand how issuers manage those risks. Disclosure regarding oversight and management of risks should indicate: • the board’s responsibility for oversight and management of risks, and • any board and management-level committee to which responsibility for oversight and management of risks has been delegated. The disclosure should provide insight into: • the development and periodic review of the issuer’s risk profile • the integration of risk oversight and management into the issuer’s strategic plan • the identification of significant elements of risk management, including policies and procedures to manage risk, and • the board’s assessment of the effectiveness of risk management policies and procedures, where applicable. Source: CSA STAFF NOTICE 58-306 2010 CORPORATE GOVERNANCE DISCLOSURE COMPLIANCE REVIEW December 2, 2010, page24 http://bit.ly/ezvf3O
  • 7. © Risk Oversight Solutions Inc. 7 Escalating Expectations: Regulators Financial Stability Board (“FSB”) November 2013:
  • 8. © Risk Oversight Solutions Inc. 8 Escalating Expectations: Regulators Financial Stability Board (“FSB”) November 2013:
  • 9. © Risk Oversight Solutions Inc. 9 Escalating Expectations: Regulators Board responsibilities per FRC UK Sept 2014 Code Boards are responsible for: • determining the extent to which the company is willing to take on risk (its “risk appetite”); • ensuring that an appropriate “risk culture” has been instilled throughout the organization; • identifying and evaluating the principal risks to the company’s business model and the achievement of its strategic objectives, including risks that could threaten its solvency or liquidity; • agreeing how these risks should be controlled, managed, or mitigated;
  • 10. © Risk Oversight Solutions Inc. 10 Escalating Expectations: Regulators
  • 11. © Risk Oversight Solutions Inc. 11 Escalating Expectations: Regulators Integrated Risk Management Risk management cannot be practiced effectively in silos. As a result, integrated risk management promotes a continuous, proactive and systematic process to understand, manage and communicate risk from an organization-wide perspective in a cohesive and consistent manner. It is about supporting strategic decision-making that contributes to the achievement of an organization's overall objectives. It requires an ongoing assessment of risks at every level and in every sector of the organization, aggregating these results at the corporate level, communicating them and ensuring adequate monitoring and review. Integrated risk management involves the use of these aggregated results to inform decision-making and business practices within the organization. Source: TBS Guide to Integrated Risk Management May 2016
  • 12. © Risk Oversight Solutions Inc. 12 Escalating Expectations: Regulators Deputy Heads Deputy Heads are responsible for managing their organization's risks by leading the implementation of effective risk management practices, both formal and informal. This includes establishing the organization's overall risk management approach and ensuring that supporting processes are in place. In doing so, Deputy Heads are encouraged to apply the principles outlined in section 2.3. A key role of the Deputy Head is to ensure that risk management principles and practices are understood and integrated into the various activities of his/her organization. Deputy Heads are also responsible for monitoring risk management practices in their organizations, as well as considering risks that arise when partnering with organizations within and external to the federal public service. This includes ensuring that issues affecting the organization's risk management approach, whether identified through assessments or internal and external monitoring, are examined, reviewed and addressed effectively. In addition, Deputy Heads play an important role in creating a learning environment that promotes continuous improvement in risk management competencies and capacity within their organization. Through their leadership, Deputy Heads foster a risk-informed organizational culture that supports risk- informed decision-making, enables dialogue on risk tolerance, focuses on results and enables the consideration of both opportunity and innovation. Source: TBS Guide to Integrated Risk Management May 2016
  • 13. © Risk Oversight Solutions Inc. 13 Escalating Expectations: Regulators Generally, there are numerous tools and techniques for analyzing (e.g. workshops, surveys) and prioritizing (e.g. risk maps) risks. Organizations are encouraged to design a process that is appropriate for their own operating environment. In defining risk assessment activities within the risk management process, organizations may wish to provide direction regarding: • who should be involved in the assessment of risks; • how much rigour is required for a particular risk assessment exercise; • what type of information needs to the collected and what level of detail is required; and • how assessed risks should be documented for response purposes. Source: TBS Guide to Integrated Risk Management May 2016
  • 14. © Risk Oversight Solutions Inc. 14 Escalating Expectations: Credit Agencies
  • 15. © Risk Oversight Solutions Inc. 15 Escalating Expectations: Credit Agencies S&P: “We believe that successful risk culture begins with fostering open dialogue where every employee in the organization has some level of ownership of the organization's risks, can readily identify the broader impacts of local decisions, and is rewarded for identifying outsize risks to senior levels. In such cultures, strategic decision-making routinely includes a review of relevant risks and alternative strategies rather than a simple return- on-investment analysis.” (page 4)
  • 16. © Risk Oversight Solutions Inc. 16 Escalating Expectations: Institutional Investors
  • 17. © Risk Oversight Solutions Inc. 17 Escalating Expectations: Institutional Investors
  • 18. © Risk Oversight Solutions Inc. 18 Escalating Expectations: Director Associations
  • 19. © Risk Oversight Solutions Inc. 19 Escalating Expectations: IA Customers
  • 20. © Risk Oversight Solutions Inc. 20 Escalating Expectations: IA Customers
  • 21. © Risk Oversight Solutions Inc. 21 IIA Response to Date 2120 – Risk Management “The internal audit activity must evaluate the effectiveness and contribute to the improvement of the risk management process”
  • 22. © Risk Oversight Solutions Inc. 22 IIA Response to Date
  • 23. © Risk Oversight Solutions Inc. 23 IIA Response to Date
  • 24. © Risk Oversight Solutions Inc. 24 The Way Forward: Reinvent Internal Audit
  • 25. © Risk Oversight Solutions Inc. 25 The Way Forward: Five Lines of Assurance
  • 26. © Risk Oversight Solutions Inc. 26 The Way Forward: Paradigm Shift Required
  • 27. © Risk Oversight Solutions Inc. 27 5LoA Design Objectives • Redefine risk management from being seen primarily as hazard avoidance/management to a tool to increase certainty key objectives are achieved while still operating with a tolerable level of retained risk • Provide management and boards with a practical solution to meet escalating board risk oversight and risk governance expectations • Generate higher levels of management and board participation in ERM and internal audit • Put the focus and resources on top value creation and potential value erosion end result objectives
  • 28. © Risk Oversight Solutions Inc. 28 5LoA Design Objectives • Transition organizations from “supply driven” to “board/demand driven” assurance • Provide a platform to “optimize” risk treatment design (i.e. lowest possible cost combination of risk treatments capable of producing an acceptable residual risk status) • Integrate the work of all assurance functions including IA, risk, safety, compliance, insurance, legal, and others
  • 29. © Risk Oversight Solutions Inc. 29 5LoA Design Objectives • Elevate the stature of and value added by Internal Audit and ERM support staff • Integrate strategic planning and ERM • Engage boards and senior management defining the amount of risk assessment rigor and independent assurance. This is a key risk decision in its own right that hasn’t been sufficiently recognized • Clarify accountabilities and role of all key assurance players including the board, senior management, work units, ERM staff and internal audit • Meet emerging risk oversight expectations
  • 30. © Risk Oversight Solutions Inc. 30 5LoA Core Elements Use an “OBJECTIVES REGISTER” with top value creation/strategic objectives and top potential value erosion objectives as the foundation for all ERM and internal audit work, not a “risk register” or “audit universe”
  • 31. © Risk Oversight Solutions Inc. 31 5LoA Core Elements “Top potential value erosion objectives” are also called “foundation objectives” and include compliance with laws, reliable external disclosures, safety and other social responsibility objectives.
  • 32. © Risk Oversight Solutions Inc. 32 5LoA Core Elements Engage senior management and the board in the process used to decide which objectives to include in the “OBJECTIVES REGISTER
  • 33. © Risk Oversight Solutions Inc. 33 5LoA Core Elements Engage senior management and the board in the process used to decide “Risk Assessment Rigor” and “Independent Assurance Level”
  • 34. © Risk Oversight Solutions Inc. 34 5LoA Core Elements Conscious and transparent decisions on “Risk Assessment Rigor/Rigour”
  • 35. © Risk Oversight Solutions Inc. 35 5LoA Core Elements Conscious and transparent decisions on “Independent Assurance Level” NIA – No independent assurance LOW – A high level assurance review has been completed and a feedback report provided to the OWNER/SPONSOR and RISK OVERSIGHT COMMITTEE MEDIUM – An independent review has been completed to assess the completeness of risks identified, risk treatments and residual risk status information provided and a report provided to the OWNER/SPONSOR and RISK OVERSIGHT COMMITTEE HIGH – In addition to the steps defined for MEDIUM, steps have been taken to confirm the existence and effectiveness of the risk treatments identified.
  • 36. © Risk Oversight Solutions Inc. 36 5LoA Core Elements Assign primary responsibility to report upwards on the residual risk status linked to each objective to a “OWNER/SPONSOR”
  • 37. © Risk Oversight Solutions Inc. 37 5LoA Core Elements Consider the full range of “Risk Treatments” when completing Risk Treatment Strategy section
  • 38. © Risk Oversight Solutions Inc. 38 5LoA Core Elements Focus on the acceptability of “Residual Risk Status”, specifically whether it is, or is not, within the entity’s risk appetite and tolerance
  • 39. © Risk Oversight Solutions Inc. 39 5LoA Core Elements Conscious and transparent decisions on “Composite Residual Risk Rating”
  • 40. © Risk Oversight Solutions Inc. 40 5LoA Core Elements After the decision on acceptability of residual risk status has been made, assess whether the Risk Treatment strategy is Optimized
  • 41. © Risk Oversight Solutions Inc. 41 5LoA Core Elements Provide consolidated reports on residual risk status to the board
  • 42. © Risk Oversight Solutions Inc. 42 5LoA Key Benefits • Boards are provided with a concise enterprise level report on the state of residual risk for the company’s top value creation and potential value erosion objectives • The work of the “assurance silos” including IA, risk, safety, environment, compliance, legal, insurance and others is integrated • Key information is provided to senior management and the board to assess if the current residual risk status linked to top objectives is, or is not, within the company’s risk appetite/tolerance
  • 43. © Risk Oversight Solutions Inc. 43 5LoA Key Benefits • Boards are provided with a tangible vehicle to demonstrate they are actively overseeing the company’s “risk appetite framework” (“RAF”) • The process is designed to fully integrate with strategic planning, new product/service initiatives, and M&A activities. • The process provides a clear response to emerging expectations like the UK Governance Code, Canadian Securities Administrators, SEC, FSB, credit agencies, institutional investors and TSB. • The main role of internal audit is to report on the effectiveness of the risk management processes and the consolidated report on residual risk status the board receives from the CEO or his/her designate and to help the company build and maintain robust risk management processes
  • 44. © Risk Oversight Solutions Inc. 44 5LoA Key Benefits • Boards are provided with a tangible vehicle to demonstrate they are actively overseeing the company’s “risk appetite framework” (“RAF”) • The process is designed to fully integrate with strategic planning, new product/service initiatives, and M&A activities. • The process provides a clear response to emerging expectations like the UK Governance Code, Canadian Securities Administrators, SEC, FSB, credit agencies, institutional investors and TSB. • The main role of internal audit is to report on the effectiveness of the risk management processes and the consolidated report on residual risk status the board receives from the CEO or his/her designate and to help the company build and maintain robust risk management processes
  • 45. © Risk Oversight Solutions Inc. 45 5LoA Key Benefit to Federal Departments: Meets TSB Expectations Generally, there are numerous tools and techniques for analyzing (e.g. workshops, surveys) and prioritizing (e.g. risk maps) risks. Organizations are encouraged to design a process that is appropriate for their own operating environment. In defining risk assessment activities within the risk management process, organizations may wish to provide direction regarding: • who should be involved in the assessment of risks; • how much rigour is required for a particular risk assessment exercise; • what type of information needs to the collected and what level of detail is required; and • how assessed risks should be documented for response purposes. Source: TBS Guide to Integrated Risk Management May 2016
  • 46. © Risk Oversight Solutions Inc. 46 5LoA Examples SVG Capital plc London Stock Exchange Jan 2015 Annual Report Page 29
  • 47. © Risk Oversight Solutions Inc. 47 5LoA Examples Ottawa Humane Society: The first charity in the world to implement BDO/OC
  • 48. © Risk Oversight Solutions Inc. 48 5LoA Examples Western University is a licensed user of Risk Oversight Solutions training tools and materials
  • 49. © Risk Oversight Solutions Inc. 49 5LoA Tools
  • 50. © Risk Oversight Solutions Inc. 50 5LoA Implementation Overview
  • 51. © Risk Oversight Solutions Inc. 51 QUESTIONS??? Thank you timleech@riskoversightsolutions.com