1. COSO Enterprise Risk Management (ERM) is a framework that helps companies consistently define and manage risks across the organization. It involves identifying, assessing, and responding to risks in a way that helps the company achieve its objectives.
2. The COSO ERM framework is represented as a cube with four columns of strategic objectives, eight rows of risk components, and multiple levels to describe the enterprise. It includes components like internal environment, objective setting, event identification, risk assessment, risk response, control activities, information & communication, and monitoring.
3. Control activities are policies and procedures that ensure risks are mitigated, such as separating duties and documentation. Information & communication ensures relevant information is shared to allow people