This document outlines an agenda for managing operational risk through control self-assessment (CSA). The agenda includes evaluating control procedures for compliance, creating action plans, and generating summary reports. Control procedures for a banking group will be assessed and categorized as fully compliant, partially compliant, not compliant, or not applicable. Action plans will be made for non-compliant controls and CSA summaries will be prepared by bank, by individual control procedure, and by bank and control procedure. A compliance projection will also be prepared and opinions on the CSA process will be collected.