SlideShare a Scribd company logo
ERM – Table of Contents
2
• Executive Summary
• Executive Risk Committee Risk Assessment
• Top Risks/Risk Model
• Appendix
Enterprise Risk Management
Page
3
ERM Executive Summary
In addition to updatingour top risks and related mitigation efforts through discussions with the key
members of management charged with managingthose risks (see appendix pages X-X) we also
conducted our first Executive Risk Committee facilitated meeting. The goals of that meeting were to:
• Align on the importance of risk management at ABC Inc.
• Discuss/debate the key risks facing the company.
• Gain executive consensus as to the key risk and their potential likelihood, impact and trend.
The outcome of that meeting was unanimous agreement as to the top three risks facing the company
(see page X)
• Risk One
• Risk Two
• Risk Three
Additionally, the committee added Risk X (see page X) to the list of top risks and requested that we
expand Y Risk to include Z Risk. The X risk previously focused on the development of a, b and c. Z risk
includes one two and three, among other things. Though these risks are similar in nature, they have
different mitigatingstrategies, therefore, for ease of clarity, we have added Z risk as an additional risk
(see page X), but recognize that both risks, combined, make up the overall X risk to the company.
Enterprise Risk Management
4Enterprise Risk Management
Risks Risk Statement
Enterprise Risk Management–
1
2
3
4
5
6
7
8
9
10
11
12
14
15
13
Enterprise Risk Management – Fall 2016 Assessment
Low
High
Impact
Likelihood
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
5Enterprise Risk Management
1
23
4
5
6
7
8
9
10
11
12
14
15
16
High
Executive Risk Committee’s “Top Three” Risks
Middle Tier of Top Risks
Lower Tier of Top Risks
Requires significant and sustained
management attention
Increasing
Stable
Decreasing
Color of
horizontal
bar indicates
risk trend
rating
13
Risk Trend
Top Risks Mapped to the ABC Inc. Risk Model Risks
6Enterprise Risk Management
In addition to “rating” our top risks as to impact
and likelihood, it is also helpful to map each risk
to its primary risk “sources.” For our purposes we
use the ABC Inc. Risk Model risks, a set of 34
business risks divided into four categories –
Strategic, Financial, Operational and Compliance.
While Diagram One (shown full size on the
following page) may be a bit difficult to read,
when the diagram is deconstructed by top risk, as
in Diagram Two, it becomes a very useful tool to
help management understand the true nature of
the risk. For example, at ABC Inc., abc risk is
primarily driven by our our portfolio, customer
behavior, organizational structure and talent risks
(see page 8).
Diagram One
Diagram Two
7
StrategicRisks
Top Risks Mapped to the ABC Inc. Risk Model Risks
Board Effectiveness
Business Model & Portfolio
Competitor
Image & Branding
Customer Behavior
Organization Structure & Culture
Sovereign/Political
Technological Innovation
Intellectual Property and License
Financial Accounting & Reporting
Credit
Currency
Liquidity
Capital Availability
Investment Valuation/Effectiveness
Authority/Limit
Budget, Planning & Monitoring
Business Interruption
Channel Effectiveness
Communications
Infrastructure
Access
Integrity
Talent
Product Pricing
Supply Chain
Health, Safety & Environment
Ethical Behavior
Information Security
Internal Control Evaluation
Regulatory
Illegal Acts
Third-party Fraud
Shareholder Expectations & Financial Market
(4)
(11)
(1)
(15)
(12)
(5)
(6)
(8)
(10)
(3)
(7)
(9)
(2)
(13)
(14)
Top Risks
FinancialRisks
OperationalRisksComplianceRisks
Risk Drivers Risk Drivers
8
StrategicRisks
Top Risks Mapped to the ABC Inc. Risk Model Risks
Board Effectiveness
Business Model & Portfolio
Competitor
Image & Branding
Customer Behavior
Organization Structure & Culture
Sovereign/Political
Technological Innovation
Intellectual Property and License
Financial Accounting & Reporting
Credit
Currency
Liquidity
Capital Availability
Investment Valuation/Effectiveness
Authority/Limit
Budget, Planning & Monitoring
Business Interruption
Channel Effectiveness
Communications
Infrastructure
Access
Integrity
Talent
Product Pricing
Supply Chain
Health, Safety & Environment
Ethical Behavior
Information Security
Internal Control Evaluation
Regulatory
Illegal Acts
Third-party Fraud
Shareholder Expectations & Financial Market
(4)
FinancialRisks
OperationalRisksComplianceRisks
Top RisksRisk Drivers Risk Drivers
Appendix
9
• Executive Risk Committee
• Risk Rating Scale
• Risk Trending Scale
• Individual Risk Pages
Enterprise Risk Management
10Enterprise Risk Management
Executive Risk Committee
Executive Title
President & CEO
Chief Operating Officer and President - Digital
EVP & Chief Financial Officer
EVP & President, Corporate Development, New Ventures & Investments
EVP, Consumer Marketing
EVP & Chief Revenue Officer
CEO, ABC Inc. UK
EVP, Chief Human Resources and Communications Officer
EVP & General Counsel
Chief Content Officer
SVP, Global Technology Services
SVP, Chief Auditor (non-voting)
Enterprise Risk Management
Likelihood Impact Financial Qualitative Examples
Very Likely >X% Critical
• Severe impact on the ABC Inc. brand resulting in major reductions in
subscriptions/readership/ad buys.
• Termination or reduction in executive leadership positions and/or 10-20%
reduction in global workforce.
• Unsustainable loss of multiple key talent.
Likely X%-X% High
• Significant impact on the ABC Inc. brand resulting in substantial
reductions in subscriptions/readership/ad buys.
• Termination or reduction in senior management positions and/or 5%-10%
reduction in global workforce.
• Loss of several key talent.
Possible X%-X% Medium
• Moderate impact on the ABC Inc. brand resulting in painful ,but
manageable, reductions in subscriptions/readership/ad buys.
• Termination or reduction in management positions and/ or up to 5%
reduction in global workforce.
• Loss of some key talent.
Unlikely <X% Low
• Little impact on ABC Inc. brand resulting in little to no incremental
reductions in subscriptions/readership/ad buys.
• Insignificant terminations or reduction in personnel.
• Minimal loss of key talent.
Enterprise Risk Management
Risk Rating Scales
11
Impact rating may be based on financial, qualitative, or both
Enterprise Risk Management
Risk Trend
Increasing
The threat to the company, despite mitigating efforts, is expected to increase; the
overall environment is becoming more risky.
Stable to moderate increase
The threat to the company, inclusive of mitigating efforts, is generally remaining the
same, but it appears that the overall environment is becoming more risky.
Stable The threat to the company, inclusive of mitigating efforts, is remaining the same.
Stable to moderate decrease
The threat to the company, inclusive of mitigating efforts, is generally remaining the
same, but it appears that the overall environment may become less risky.
Decreasing
The threat to the company, inclusive of mitigating efforts, is decreasing through a
combination of improved mitigating efforts and/or an improvement in the overall risk
environment.
Enterprise Risk Management
Risk Trending Scale
12
13Enterprise Risk Management
Enterprise Risk Management
Risk Summary
Risk Title
Risk Statement
Executive Sponsor Likelihood Likely
Key Management Impact Critical
Category Risk Trend Increasing
Risk Synopsis
• x.
Mitigation Efforts
• X.
1

More Related Content

What's hot

CF_8 UNIT4 Risk Reporting & Risk Mgt
CF_8 UNIT4 Risk Reporting & Risk MgtCF_8 UNIT4 Risk Reporting & Risk Mgt
CF_8 UNIT4 Risk Reporting & Risk MgtDr. Firdaus Khan
 
Introduction To Risk Management Powerpoint Presentation Slides
Introduction To Risk Management Powerpoint Presentation SlidesIntroduction To Risk Management Powerpoint Presentation Slides
Introduction To Risk Management Powerpoint Presentation Slides
SlideTeam
 
Chapter 1 risk management (3)
Chapter 1  risk management (3)Chapter 1  risk management (3)
Chapter 1 risk management (3)
rafeeqameen
 
Risk management
Risk managementRisk management
Risk management
Harold Malamion
 
Business Risk Analysis PowerPoint Presentation Slides
Business Risk Analysis PowerPoint Presentation SlidesBusiness Risk Analysis PowerPoint Presentation Slides
Business Risk Analysis PowerPoint Presentation Slides
SlideTeam
 
Enterprise Risk Management (ERM); From theory to practice
Enterprise Risk Management (ERM); From theory to practiceEnterprise Risk Management (ERM); From theory to practice
Enterprise Risk Management (ERM); From theory to practice
Segun Ogunwale
 
Risk Assessment PowerPoint Presentation Slides
Risk Assessment PowerPoint Presentation Slides Risk Assessment PowerPoint Presentation Slides
Risk Assessment PowerPoint Presentation Slides
SlideTeam
 
Strategic Risk Management in the Face of Uncertainty and Unexpected Risks
Strategic Risk Management in the Face of Uncertainty and Unexpected RisksStrategic Risk Management in the Face of Uncertainty and Unexpected Risks
Strategic Risk Management in the Face of Uncertainty and Unexpected Risks
International Federation of Accountants
 
RisK, RiSk MaNaGeMeNt & EnterPRise RisK ManaGemeNT
RisK, RiSk MaNaGeMeNt & EnterPRise RisK ManaGemeNTRisK, RiSk MaNaGeMeNt & EnterPRise RisK ManaGemeNT
RisK, RiSk MaNaGeMeNt & EnterPRise RisK ManaGemeNT
Sonu Sah
 
Risk Management module PowerPoint Presentation Slides
Risk Management module PowerPoint Presentation SlidesRisk Management module PowerPoint Presentation Slides
Risk Management module PowerPoint Presentation Slides
SlideTeam
 
Operations Risk Management
Operations Risk ManagementOperations Risk Management
Operations Risk Management
Medlin Rozario
 
Risk Identification PowerPoint Presentation Slide
Risk Identification PowerPoint Presentation SlideRisk Identification PowerPoint Presentation Slide
Risk Identification PowerPoint Presentation Slide
SlideTeam
 
Risk Management ERM Presentation
Risk Management ERM PresentationRisk Management ERM Presentation
Risk Management ERM Presentationalygale
 
Enterprise Risk Management.pdf
Enterprise Risk Management.pdfEnterprise Risk Management.pdf
Enterprise Risk Management.pdf
Self Employed
 
Risk Assessment Strategies PowerPoint Presentation Slides
Risk Assessment Strategies PowerPoint Presentation SlidesRisk Assessment Strategies PowerPoint Presentation Slides
Risk Assessment Strategies PowerPoint Presentation Slides
SlideTeam
 
Enterprise Risk Management
Enterprise Risk ManagementEnterprise Risk Management
Enterprise Risk Management
Prof. Akram Hassan PhD,MBA,PMP,OPM3
 
Chapter1 introduction to risk management
Chapter1  introduction to risk managementChapter1  introduction to risk management
Chapter1 introduction to risk management
Dr Riyaz Muhmmad
 
Introduction To Risk Management
Introduction To Risk Management Introduction To Risk Management
Introduction To Risk Management
Sagar Garg
 
Key risk indicators shareslide
Key risk indicators shareslideKey risk indicators shareslide
Key risk indicators shareslide
Zakaria Salah, Ph.D,MBA
 
Risk and Control Self Assessment - IRM India Affiliate
Risk and Control Self  Assessment - IRM India AffiliateRisk and Control Self  Assessment - IRM India Affiliate
Risk and Control Self Assessment - IRM India Affiliate
IRM India Affiliate
 

What's hot (20)

CF_8 UNIT4 Risk Reporting & Risk Mgt
CF_8 UNIT4 Risk Reporting & Risk MgtCF_8 UNIT4 Risk Reporting & Risk Mgt
CF_8 UNIT4 Risk Reporting & Risk Mgt
 
Introduction To Risk Management Powerpoint Presentation Slides
Introduction To Risk Management Powerpoint Presentation SlidesIntroduction To Risk Management Powerpoint Presentation Slides
Introduction To Risk Management Powerpoint Presentation Slides
 
Chapter 1 risk management (3)
Chapter 1  risk management (3)Chapter 1  risk management (3)
Chapter 1 risk management (3)
 
Risk management
Risk managementRisk management
Risk management
 
Business Risk Analysis PowerPoint Presentation Slides
Business Risk Analysis PowerPoint Presentation SlidesBusiness Risk Analysis PowerPoint Presentation Slides
Business Risk Analysis PowerPoint Presentation Slides
 
Enterprise Risk Management (ERM); From theory to practice
Enterprise Risk Management (ERM); From theory to practiceEnterprise Risk Management (ERM); From theory to practice
Enterprise Risk Management (ERM); From theory to practice
 
Risk Assessment PowerPoint Presentation Slides
Risk Assessment PowerPoint Presentation Slides Risk Assessment PowerPoint Presentation Slides
Risk Assessment PowerPoint Presentation Slides
 
Strategic Risk Management in the Face of Uncertainty and Unexpected Risks
Strategic Risk Management in the Face of Uncertainty and Unexpected RisksStrategic Risk Management in the Face of Uncertainty and Unexpected Risks
Strategic Risk Management in the Face of Uncertainty and Unexpected Risks
 
RisK, RiSk MaNaGeMeNt & EnterPRise RisK ManaGemeNT
RisK, RiSk MaNaGeMeNt & EnterPRise RisK ManaGemeNTRisK, RiSk MaNaGeMeNt & EnterPRise RisK ManaGemeNT
RisK, RiSk MaNaGeMeNt & EnterPRise RisK ManaGemeNT
 
Risk Management module PowerPoint Presentation Slides
Risk Management module PowerPoint Presentation SlidesRisk Management module PowerPoint Presentation Slides
Risk Management module PowerPoint Presentation Slides
 
Operations Risk Management
Operations Risk ManagementOperations Risk Management
Operations Risk Management
 
Risk Identification PowerPoint Presentation Slide
Risk Identification PowerPoint Presentation SlideRisk Identification PowerPoint Presentation Slide
Risk Identification PowerPoint Presentation Slide
 
Risk Management ERM Presentation
Risk Management ERM PresentationRisk Management ERM Presentation
Risk Management ERM Presentation
 
Enterprise Risk Management.pdf
Enterprise Risk Management.pdfEnterprise Risk Management.pdf
Enterprise Risk Management.pdf
 
Risk Assessment Strategies PowerPoint Presentation Slides
Risk Assessment Strategies PowerPoint Presentation SlidesRisk Assessment Strategies PowerPoint Presentation Slides
Risk Assessment Strategies PowerPoint Presentation Slides
 
Enterprise Risk Management
Enterprise Risk ManagementEnterprise Risk Management
Enterprise Risk Management
 
Chapter1 introduction to risk management
Chapter1  introduction to risk managementChapter1  introduction to risk management
Chapter1 introduction to risk management
 
Introduction To Risk Management
Introduction To Risk Management Introduction To Risk Management
Introduction To Risk Management
 
Key risk indicators shareslide
Key risk indicators shareslideKey risk indicators shareslide
Key risk indicators shareslide
 
Risk and Control Self Assessment - IRM India Affiliate
Risk and Control Self  Assessment - IRM India AffiliateRisk and Control Self  Assessment - IRM India Affiliate
Risk and Control Self Assessment - IRM India Affiliate
 

Similar to Enterprise Risk Management

Enterprise risk management summary approach guide
Enterprise risk management summary approach guideEnterprise risk management summary approach guide
Enterprise risk management summary approach guide
AstalapulosListestos
 
Enterprise risk management summary approach guide
Enterprise risk management summary approach guideEnterprise risk management summary approach guide
Enterprise risk management summary approach guide
CenapSerdarolu
 
1 -corinne_berinstein
1  -corinne_berinstein1  -corinne_berinstein
1 -corinne_berinsteinAahil Malik
 
1 -corinne_berinstein
1  -corinne_berinstein1  -corinne_berinstein
1 -corinne_berinsteinRamaica Ona
 
1 -corinne_berinstein
1  -corinne_berinstein1  -corinne_berinstein
1 -corinne_berinstein
Sukumar Reddy
 
6 Pitfalls when Implementing Enterprise Risk Management
6 Pitfalls when Implementing Enterprise Risk Management6 Pitfalls when Implementing Enterprise Risk Management
6 Pitfalls when Implementing Enterprise Risk Management
PECB
 
Enterprise Risk Management & Fraud Sample Presentation
Enterprise Risk Management & Fraud Sample PresentationEnterprise Risk Management & Fraud Sample Presentation
Enterprise Risk Management & Fraud Sample Presentation
Alexander Larsen
 
Corporate and Project Risk Management Toolkit
Corporate and Project Risk Management Toolkit Corporate and Project Risk Management Toolkit
Corporate and Project Risk Management Toolkit
Aurelien Domont, MBA
 
Implementing an Enterprise Risk Management program (2022 updates).pdf
Implementing an Enterprise Risk Management program (2022 updates).pdfImplementing an Enterprise Risk Management program (2022 updates).pdf
Implementing an Enterprise Risk Management program (2022 updates).pdf
Robert Serena, FSA, CFA, CPCU
 
Trustee Conference AM4: Effectively managing risk
Trustee Conference AM4: Effectively managing riskTrustee Conference AM4: Effectively managing risk
Trustee Conference AM4: Effectively managing risk
NCVO - National Council for Voluntary Organisations
 
The Case of Enterprise Risk Management
The Case of Enterprise Risk ManagementThe Case of Enterprise Risk Management
The Case of Enterprise Risk Management
Weibull AS
 
An Industry Overview: Enterprise Risk Services and Products
An Industry Overview: Enterprise Risk Services and ProductsAn Industry Overview: Enterprise Risk Services and Products
An Industry Overview: Enterprise Risk Services and Productss0P5a41b
 
Getting the risk basics right, 30th November 2016
Getting the risk basics right, 30th November 2016Getting the risk basics right, 30th November 2016
Getting the risk basics right, 30th November 2016
Association for Project Management
 
CHAPTER 34Turning Crisis into OpportunityBuilding an ERM.docx
CHAPTER 34Turning Crisis into OpportunityBuilding an ERM.docxCHAPTER 34Turning Crisis into OpportunityBuilding an ERM.docx
CHAPTER 34Turning Crisis into OpportunityBuilding an ERM.docx
keturahhazelhurst
 
A Board Perspective on Enterprise Risk Management
A Board Perspective on Enterprise Risk ManagementA Board Perspective on Enterprise Risk Management
A Board Perspective on Enterprise Risk Management
Turlough Guerin GAICD FGIA
 
The risks of risk management
The risks of risk managementThe risks of risk management
The risks of risk management
cjburt
 
STRATEGIC RISK ADVISORY SOLUTIONS_Risk Management_Newsletter
STRATEGIC RISK ADVISORY SOLUTIONS_Risk Management_NewsletterSTRATEGIC RISK ADVISORY SOLUTIONS_Risk Management_Newsletter
STRATEGIC RISK ADVISORY SOLUTIONS_Risk Management_NewsletterDion K Hamilton
 
Business Continuity Management-The Case for Return on Investment-white paper
Business Continuity Management-The Case for Return on  Investment-white paperBusiness Continuity Management-The Case for Return on  Investment-white paper
Business Continuity Management-The Case for Return on Investment-white paperGreg Cybulski, CBCP, ARM
 
Strategically+Speaking+October+2015
Strategically+Speaking+October+2015Strategically+Speaking+October+2015
Strategically+Speaking+October+2015Andrew Smart
 
The risks of risk management
The risks of risk managementThe risks of risk management
The risks of risk management
cjburt
 

Similar to Enterprise Risk Management (20)

Enterprise risk management summary approach guide
Enterprise risk management summary approach guideEnterprise risk management summary approach guide
Enterprise risk management summary approach guide
 
Enterprise risk management summary approach guide
Enterprise risk management summary approach guideEnterprise risk management summary approach guide
Enterprise risk management summary approach guide
 
1 -corinne_berinstein
1  -corinne_berinstein1  -corinne_berinstein
1 -corinne_berinstein
 
1 -corinne_berinstein
1  -corinne_berinstein1  -corinne_berinstein
1 -corinne_berinstein
 
1 -corinne_berinstein
1  -corinne_berinstein1  -corinne_berinstein
1 -corinne_berinstein
 
6 Pitfalls when Implementing Enterprise Risk Management
6 Pitfalls when Implementing Enterprise Risk Management6 Pitfalls when Implementing Enterprise Risk Management
6 Pitfalls when Implementing Enterprise Risk Management
 
Enterprise Risk Management & Fraud Sample Presentation
Enterprise Risk Management & Fraud Sample PresentationEnterprise Risk Management & Fraud Sample Presentation
Enterprise Risk Management & Fraud Sample Presentation
 
Corporate and Project Risk Management Toolkit
Corporate and Project Risk Management Toolkit Corporate and Project Risk Management Toolkit
Corporate and Project Risk Management Toolkit
 
Implementing an Enterprise Risk Management program (2022 updates).pdf
Implementing an Enterprise Risk Management program (2022 updates).pdfImplementing an Enterprise Risk Management program (2022 updates).pdf
Implementing an Enterprise Risk Management program (2022 updates).pdf
 
Trustee Conference AM4: Effectively managing risk
Trustee Conference AM4: Effectively managing riskTrustee Conference AM4: Effectively managing risk
Trustee Conference AM4: Effectively managing risk
 
The Case of Enterprise Risk Management
The Case of Enterprise Risk ManagementThe Case of Enterprise Risk Management
The Case of Enterprise Risk Management
 
An Industry Overview: Enterprise Risk Services and Products
An Industry Overview: Enterprise Risk Services and ProductsAn Industry Overview: Enterprise Risk Services and Products
An Industry Overview: Enterprise Risk Services and Products
 
Getting the risk basics right, 30th November 2016
Getting the risk basics right, 30th November 2016Getting the risk basics right, 30th November 2016
Getting the risk basics right, 30th November 2016
 
CHAPTER 34Turning Crisis into OpportunityBuilding an ERM.docx
CHAPTER 34Turning Crisis into OpportunityBuilding an ERM.docxCHAPTER 34Turning Crisis into OpportunityBuilding an ERM.docx
CHAPTER 34Turning Crisis into OpportunityBuilding an ERM.docx
 
A Board Perspective on Enterprise Risk Management
A Board Perspective on Enterprise Risk ManagementA Board Perspective on Enterprise Risk Management
A Board Perspective on Enterprise Risk Management
 
The risks of risk management
The risks of risk managementThe risks of risk management
The risks of risk management
 
STRATEGIC RISK ADVISORY SOLUTIONS_Risk Management_Newsletter
STRATEGIC RISK ADVISORY SOLUTIONS_Risk Management_NewsletterSTRATEGIC RISK ADVISORY SOLUTIONS_Risk Management_Newsletter
STRATEGIC RISK ADVISORY SOLUTIONS_Risk Management_Newsletter
 
Business Continuity Management-The Case for Return on Investment-white paper
Business Continuity Management-The Case for Return on  Investment-white paperBusiness Continuity Management-The Case for Return on  Investment-white paper
Business Continuity Management-The Case for Return on Investment-white paper
 
Strategically+Speaking+October+2015
Strategically+Speaking+October+2015Strategically+Speaking+October+2015
Strategically+Speaking+October+2015
 
The risks of risk management
The risks of risk managementThe risks of risk management
The risks of risk management
 

More from Resolver Inc.

How to Prove the Value of Security Investments
How to Prove the Value of Security InvestmentsHow to Prove the Value of Security Investments
How to Prove the Value of Security Investments
Resolver Inc.
 
ERM Benchmarking Survey Results
ERM Benchmarking Survey ResultsERM Benchmarking Survey Results
ERM Benchmarking Survey Results
Resolver Inc.
 
Best Practices and ROI for Risk-based Vulnerability Management
Best Practices and ROI for Risk-based Vulnerability ManagementBest Practices and ROI for Risk-based Vulnerability Management
Best Practices and ROI for Risk-based Vulnerability Management
Resolver Inc.
 
Taking a Data-Driven Approach to Business Continuity
Taking a Data-Driven Approach to Business ContinuityTaking a Data-Driven Approach to Business Continuity
Taking a Data-Driven Approach to Business Continuity
Resolver Inc.
 
Terrorism in a Corporate Setting
Terrorism in a Corporate SettingTerrorism in a Corporate Setting
Terrorism in a Corporate Setting
Resolver Inc.
 
Reporting to the Board on Corporate Compliance
Reporting to the Board on Corporate ComplianceReporting to the Board on Corporate Compliance
Reporting to the Board on Corporate Compliance
Resolver Inc.
 
An Intro to Resolver's Compliance Application
An Intro to Resolver's Compliance ApplicationAn Intro to Resolver's Compliance Application
An Intro to Resolver's Compliance Application
Resolver Inc.
 
Information Security Best Practices: Keeping Your Company's Data Safe
Information Security Best Practices: Keeping Your Company's Data SafeInformation Security Best Practices: Keeping Your Company's Data Safe
Information Security Best Practices: Keeping Your Company's Data Safe
Resolver Inc.
 
Security Trends: From "Silos" to Integrated Risk Management
Security Trends: From "Silos" to Integrated Risk ManagementSecurity Trends: From "Silos" to Integrated Risk Management
Security Trends: From "Silos" to Integrated Risk Management
Resolver Inc.
 
Modelling your Business Processes with Resolver Core
Modelling your Business Processes with Resolver CoreModelling your Business Processes with Resolver Core
Modelling your Business Processes with Resolver Core
Resolver Inc.
 
How Resolver Uses Resolver
How Resolver Uses ResolverHow Resolver Uses Resolver
How Resolver Uses Resolver
Resolver Inc.
 
Scammed: Defend Against Social Engineering
Scammed: Defend Against Social EngineeringScammed: Defend Against Social Engineering
Scammed: Defend Against Social Engineering
Resolver Inc.
 
A Peek at adidas Group's Integrated Risk & Security Management Strategy
A Peek at adidas Group's Integrated Risk & Security Management StrategyA Peek at adidas Group's Integrated Risk & Security Management Strategy
A Peek at adidas Group's Integrated Risk & Security Management Strategy
Resolver Inc.
 
An Intro to Resolver's Resilience Application
An Intro to Resolver's Resilience ApplicationAn Intro to Resolver's Resilience Application
An Intro to Resolver's Resilience Application
Resolver Inc.
 
Data Driven Risk Assessment
Data Driven Risk AssessmentData Driven Risk Assessment
Data Driven Risk Assessment
Resolver Inc.
 
How to Achieve a Fully Integrated Approach to Business Resilience
How to Achieve a Fully Integrated Approach to Business ResilienceHow to Achieve a Fully Integrated Approach to Business Resilience
How to Achieve a Fully Integrated Approach to Business Resilience
Resolver Inc.
 
An Intro to Resolver's Risk Application
An Intro to Resolver's Risk ApplicationAn Intro to Resolver's Risk Application
An Intro to Resolver's Risk Application
Resolver Inc.
 
Keeping Your Data Clean
Keeping Your Data CleanKeeping Your Data Clean
Keeping Your Data Clean
Resolver Inc.
 
Why You Should Prioritize Third Party Risk Management (TPRM) in Today's Marke...
Why You Should Prioritize Third Party Risk Management (TPRM) in Today's Marke...Why You Should Prioritize Third Party Risk Management (TPRM) in Today's Marke...
Why You Should Prioritize Third Party Risk Management (TPRM) in Today's Marke...
Resolver Inc.
 
An Intro to Resolver's InfoSec Application (RiskVision)
An Intro to Resolver's InfoSec Application (RiskVision)An Intro to Resolver's InfoSec Application (RiskVision)
An Intro to Resolver's InfoSec Application (RiskVision)
Resolver Inc.
 

More from Resolver Inc. (20)

How to Prove the Value of Security Investments
How to Prove the Value of Security InvestmentsHow to Prove the Value of Security Investments
How to Prove the Value of Security Investments
 
ERM Benchmarking Survey Results
ERM Benchmarking Survey ResultsERM Benchmarking Survey Results
ERM Benchmarking Survey Results
 
Best Practices and ROI for Risk-based Vulnerability Management
Best Practices and ROI for Risk-based Vulnerability ManagementBest Practices and ROI for Risk-based Vulnerability Management
Best Practices and ROI for Risk-based Vulnerability Management
 
Taking a Data-Driven Approach to Business Continuity
Taking a Data-Driven Approach to Business ContinuityTaking a Data-Driven Approach to Business Continuity
Taking a Data-Driven Approach to Business Continuity
 
Terrorism in a Corporate Setting
Terrorism in a Corporate SettingTerrorism in a Corporate Setting
Terrorism in a Corporate Setting
 
Reporting to the Board on Corporate Compliance
Reporting to the Board on Corporate ComplianceReporting to the Board on Corporate Compliance
Reporting to the Board on Corporate Compliance
 
An Intro to Resolver's Compliance Application
An Intro to Resolver's Compliance ApplicationAn Intro to Resolver's Compliance Application
An Intro to Resolver's Compliance Application
 
Information Security Best Practices: Keeping Your Company's Data Safe
Information Security Best Practices: Keeping Your Company's Data SafeInformation Security Best Practices: Keeping Your Company's Data Safe
Information Security Best Practices: Keeping Your Company's Data Safe
 
Security Trends: From "Silos" to Integrated Risk Management
Security Trends: From "Silos" to Integrated Risk ManagementSecurity Trends: From "Silos" to Integrated Risk Management
Security Trends: From "Silos" to Integrated Risk Management
 
Modelling your Business Processes with Resolver Core
Modelling your Business Processes with Resolver CoreModelling your Business Processes with Resolver Core
Modelling your Business Processes with Resolver Core
 
How Resolver Uses Resolver
How Resolver Uses ResolverHow Resolver Uses Resolver
How Resolver Uses Resolver
 
Scammed: Defend Against Social Engineering
Scammed: Defend Against Social EngineeringScammed: Defend Against Social Engineering
Scammed: Defend Against Social Engineering
 
A Peek at adidas Group's Integrated Risk & Security Management Strategy
A Peek at adidas Group's Integrated Risk & Security Management StrategyA Peek at adidas Group's Integrated Risk & Security Management Strategy
A Peek at adidas Group's Integrated Risk & Security Management Strategy
 
An Intro to Resolver's Resilience Application
An Intro to Resolver's Resilience ApplicationAn Intro to Resolver's Resilience Application
An Intro to Resolver's Resilience Application
 
Data Driven Risk Assessment
Data Driven Risk AssessmentData Driven Risk Assessment
Data Driven Risk Assessment
 
How to Achieve a Fully Integrated Approach to Business Resilience
How to Achieve a Fully Integrated Approach to Business ResilienceHow to Achieve a Fully Integrated Approach to Business Resilience
How to Achieve a Fully Integrated Approach to Business Resilience
 
An Intro to Resolver's Risk Application
An Intro to Resolver's Risk ApplicationAn Intro to Resolver's Risk Application
An Intro to Resolver's Risk Application
 
Keeping Your Data Clean
Keeping Your Data CleanKeeping Your Data Clean
Keeping Your Data Clean
 
Why You Should Prioritize Third Party Risk Management (TPRM) in Today's Marke...
Why You Should Prioritize Third Party Risk Management (TPRM) in Today's Marke...Why You Should Prioritize Third Party Risk Management (TPRM) in Today's Marke...
Why You Should Prioritize Third Party Risk Management (TPRM) in Today's Marke...
 
An Intro to Resolver's InfoSec Application (RiskVision)
An Intro to Resolver's InfoSec Application (RiskVision)An Intro to Resolver's InfoSec Application (RiskVision)
An Intro to Resolver's InfoSec Application (RiskVision)
 

Recently uploaded

What is the TDS Return Filing Due Date for FY 2024-25.pdf
What is the TDS Return Filing Due Date for FY 2024-25.pdfWhat is the TDS Return Filing Due Date for FY 2024-25.pdf
What is the TDS Return Filing Due Date for FY 2024-25.pdf
seoforlegalpillers
 
anas about venice for grade 6f about venice
anas about venice for grade 6f about veniceanas about venice for grade 6f about venice
anas about venice for grade 6f about venice
anasabutalha2013
 
The Parable of the Pipeline a book every new businessman or business student ...
The Parable of the Pipeline a book every new businessman or business student ...The Parable of the Pipeline a book every new businessman or business student ...
The Parable of the Pipeline a book every new businessman or business student ...
awaisafdar
 
Maksym Vyshnivetskyi: PMO Quality Management (UA)
Maksym Vyshnivetskyi: PMO Quality Management (UA)Maksym Vyshnivetskyi: PMO Quality Management (UA)
Maksym Vyshnivetskyi: PMO Quality Management (UA)
Lviv Startup Club
 
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdf
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdfSearch Disrupted Google’s Leaked Documents Rock the SEO World.pdf
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdf
Arihant Webtech Pvt. Ltd
 
Role of Remote Sensing and Monitoring in Mining
Role of Remote Sensing and Monitoring in MiningRole of Remote Sensing and Monitoring in Mining
Role of Remote Sensing and Monitoring in Mining
Naaraayani Minerals Pvt.Ltd
 
Memorandum Of Association Constitution of Company.ppt
Memorandum Of Association Constitution of Company.pptMemorandum Of Association Constitution of Company.ppt
Memorandum Of Association Constitution of Company.ppt
seri bangash
 
Enterprise Excellence is Inclusive Excellence.pdf
Enterprise Excellence is Inclusive Excellence.pdfEnterprise Excellence is Inclusive Excellence.pdf
Enterprise Excellence is Inclusive Excellence.pdf
KaiNexus
 
Pitch Deck Teardown: RAW Dating App's $3M Angel deck
Pitch Deck Teardown: RAW Dating App's $3M Angel deckPitch Deck Teardown: RAW Dating App's $3M Angel deck
Pitch Deck Teardown: RAW Dating App's $3M Angel deck
HajeJanKamps
 
chapter 10 - excise tax of transfer and business taxation
chapter 10 - excise tax of transfer and business taxationchapter 10 - excise tax of transfer and business taxation
chapter 10 - excise tax of transfer and business taxation
AUDIJEAngelo
 
Exploring Patterns of Connection with Social Dreaming
Exploring Patterns of Connection with Social DreamingExploring Patterns of Connection with Social Dreaming
Exploring Patterns of Connection with Social Dreaming
Nicola Wreford-Howard
 
20240425_ TJ Communications Credentials_compressed.pdf
20240425_ TJ Communications Credentials_compressed.pdf20240425_ TJ Communications Credentials_compressed.pdf
20240425_ TJ Communications Credentials_compressed.pdf
tjcomstrang
 
Attending a job Interview for B1 and B2 Englsih learners
Attending a job Interview for B1 and B2 Englsih learnersAttending a job Interview for B1 and B2 Englsih learners
Attending a job Interview for B1 and B2 Englsih learners
Erika906060
 
FINAL PRESENTATION.pptx12143241324134134
FINAL PRESENTATION.pptx12143241324134134FINAL PRESENTATION.pptx12143241324134134
FINAL PRESENTATION.pptx12143241324134134
LR1709MUSIC
 
Premium MEAN Stack Development Solutions for Modern Businesses
Premium MEAN Stack Development Solutions for Modern BusinessesPremium MEAN Stack Development Solutions for Modern Businesses
Premium MEAN Stack Development Solutions for Modern Businesses
SynapseIndia
 
Improving profitability for small business
Improving profitability for small businessImproving profitability for small business
Improving profitability for small business
Ben Wann
 
Cracking the Workplace Discipline Code Main.pptx
Cracking the Workplace Discipline Code Main.pptxCracking the Workplace Discipline Code Main.pptx
Cracking the Workplace Discipline Code Main.pptx
Workforce Group
 
Business Valuation Principles for Entrepreneurs
Business Valuation Principles for EntrepreneursBusiness Valuation Principles for Entrepreneurs
Business Valuation Principles for Entrepreneurs
Ben Wann
 
3.0 Project 2_ Developing My Brand Identity Kit.pptx
3.0 Project 2_ Developing My Brand Identity Kit.pptx3.0 Project 2_ Developing My Brand Identity Kit.pptx
3.0 Project 2_ Developing My Brand Identity Kit.pptx
tanyjahb
 
Introduction to Amazon company 111111111111
Introduction to Amazon company 111111111111Introduction to Amazon company 111111111111
Introduction to Amazon company 111111111111
zoyaansari11365
 

Recently uploaded (20)

What is the TDS Return Filing Due Date for FY 2024-25.pdf
What is the TDS Return Filing Due Date for FY 2024-25.pdfWhat is the TDS Return Filing Due Date for FY 2024-25.pdf
What is the TDS Return Filing Due Date for FY 2024-25.pdf
 
anas about venice for grade 6f about venice
anas about venice for grade 6f about veniceanas about venice for grade 6f about venice
anas about venice for grade 6f about venice
 
The Parable of the Pipeline a book every new businessman or business student ...
The Parable of the Pipeline a book every new businessman or business student ...The Parable of the Pipeline a book every new businessman or business student ...
The Parable of the Pipeline a book every new businessman or business student ...
 
Maksym Vyshnivetskyi: PMO Quality Management (UA)
Maksym Vyshnivetskyi: PMO Quality Management (UA)Maksym Vyshnivetskyi: PMO Quality Management (UA)
Maksym Vyshnivetskyi: PMO Quality Management (UA)
 
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdf
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdfSearch Disrupted Google’s Leaked Documents Rock the SEO World.pdf
Search Disrupted Google’s Leaked Documents Rock the SEO World.pdf
 
Role of Remote Sensing and Monitoring in Mining
Role of Remote Sensing and Monitoring in MiningRole of Remote Sensing and Monitoring in Mining
Role of Remote Sensing and Monitoring in Mining
 
Memorandum Of Association Constitution of Company.ppt
Memorandum Of Association Constitution of Company.pptMemorandum Of Association Constitution of Company.ppt
Memorandum Of Association Constitution of Company.ppt
 
Enterprise Excellence is Inclusive Excellence.pdf
Enterprise Excellence is Inclusive Excellence.pdfEnterprise Excellence is Inclusive Excellence.pdf
Enterprise Excellence is Inclusive Excellence.pdf
 
Pitch Deck Teardown: RAW Dating App's $3M Angel deck
Pitch Deck Teardown: RAW Dating App's $3M Angel deckPitch Deck Teardown: RAW Dating App's $3M Angel deck
Pitch Deck Teardown: RAW Dating App's $3M Angel deck
 
chapter 10 - excise tax of transfer and business taxation
chapter 10 - excise tax of transfer and business taxationchapter 10 - excise tax of transfer and business taxation
chapter 10 - excise tax of transfer and business taxation
 
Exploring Patterns of Connection with Social Dreaming
Exploring Patterns of Connection with Social DreamingExploring Patterns of Connection with Social Dreaming
Exploring Patterns of Connection with Social Dreaming
 
20240425_ TJ Communications Credentials_compressed.pdf
20240425_ TJ Communications Credentials_compressed.pdf20240425_ TJ Communications Credentials_compressed.pdf
20240425_ TJ Communications Credentials_compressed.pdf
 
Attending a job Interview for B1 and B2 Englsih learners
Attending a job Interview for B1 and B2 Englsih learnersAttending a job Interview for B1 and B2 Englsih learners
Attending a job Interview for B1 and B2 Englsih learners
 
FINAL PRESENTATION.pptx12143241324134134
FINAL PRESENTATION.pptx12143241324134134FINAL PRESENTATION.pptx12143241324134134
FINAL PRESENTATION.pptx12143241324134134
 
Premium MEAN Stack Development Solutions for Modern Businesses
Premium MEAN Stack Development Solutions for Modern BusinessesPremium MEAN Stack Development Solutions for Modern Businesses
Premium MEAN Stack Development Solutions for Modern Businesses
 
Improving profitability for small business
Improving profitability for small businessImproving profitability for small business
Improving profitability for small business
 
Cracking the Workplace Discipline Code Main.pptx
Cracking the Workplace Discipline Code Main.pptxCracking the Workplace Discipline Code Main.pptx
Cracking the Workplace Discipline Code Main.pptx
 
Business Valuation Principles for Entrepreneurs
Business Valuation Principles for EntrepreneursBusiness Valuation Principles for Entrepreneurs
Business Valuation Principles for Entrepreneurs
 
3.0 Project 2_ Developing My Brand Identity Kit.pptx
3.0 Project 2_ Developing My Brand Identity Kit.pptx3.0 Project 2_ Developing My Brand Identity Kit.pptx
3.0 Project 2_ Developing My Brand Identity Kit.pptx
 
Introduction to Amazon company 111111111111
Introduction to Amazon company 111111111111Introduction to Amazon company 111111111111
Introduction to Amazon company 111111111111
 

Enterprise Risk Management

  • 1.
  • 2. ERM – Table of Contents 2 • Executive Summary • Executive Risk Committee Risk Assessment • Top Risks/Risk Model • Appendix Enterprise Risk Management Page
  • 3. 3 ERM Executive Summary In addition to updatingour top risks and related mitigation efforts through discussions with the key members of management charged with managingthose risks (see appendix pages X-X) we also conducted our first Executive Risk Committee facilitated meeting. The goals of that meeting were to: • Align on the importance of risk management at ABC Inc. • Discuss/debate the key risks facing the company. • Gain executive consensus as to the key risk and their potential likelihood, impact and trend. The outcome of that meeting was unanimous agreement as to the top three risks facing the company (see page X) • Risk One • Risk Two • Risk Three Additionally, the committee added Risk X (see page X) to the list of top risks and requested that we expand Y Risk to include Z Risk. The X risk previously focused on the development of a, b and c. Z risk includes one two and three, among other things. Though these risks are similar in nature, they have different mitigatingstrategies, therefore, for ease of clarity, we have added Z risk as an additional risk (see page X), but recognize that both risks, combined, make up the overall X risk to the company. Enterprise Risk Management
  • 4. 4Enterprise Risk Management Risks Risk Statement Enterprise Risk Management– 1 2 3 4 5 6 7 8 9 10 11 12 14 15 13
  • 5. Enterprise Risk Management – Fall 2016 Assessment Low High Impact Likelihood 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 5Enterprise Risk Management 1 23 4 5 6 7 8 9 10 11 12 14 15 16 High Executive Risk Committee’s “Top Three” Risks Middle Tier of Top Risks Lower Tier of Top Risks Requires significant and sustained management attention Increasing Stable Decreasing Color of horizontal bar indicates risk trend rating 13 Risk Trend
  • 6. Top Risks Mapped to the ABC Inc. Risk Model Risks 6Enterprise Risk Management In addition to “rating” our top risks as to impact and likelihood, it is also helpful to map each risk to its primary risk “sources.” For our purposes we use the ABC Inc. Risk Model risks, a set of 34 business risks divided into four categories – Strategic, Financial, Operational and Compliance. While Diagram One (shown full size on the following page) may be a bit difficult to read, when the diagram is deconstructed by top risk, as in Diagram Two, it becomes a very useful tool to help management understand the true nature of the risk. For example, at ABC Inc., abc risk is primarily driven by our our portfolio, customer behavior, organizational structure and talent risks (see page 8). Diagram One Diagram Two
  • 7. 7 StrategicRisks Top Risks Mapped to the ABC Inc. Risk Model Risks Board Effectiveness Business Model & Portfolio Competitor Image & Branding Customer Behavior Organization Structure & Culture Sovereign/Political Technological Innovation Intellectual Property and License Financial Accounting & Reporting Credit Currency Liquidity Capital Availability Investment Valuation/Effectiveness Authority/Limit Budget, Planning & Monitoring Business Interruption Channel Effectiveness Communications Infrastructure Access Integrity Talent Product Pricing Supply Chain Health, Safety & Environment Ethical Behavior Information Security Internal Control Evaluation Regulatory Illegal Acts Third-party Fraud Shareholder Expectations & Financial Market (4) (11) (1) (15) (12) (5) (6) (8) (10) (3) (7) (9) (2) (13) (14) Top Risks FinancialRisks OperationalRisksComplianceRisks Risk Drivers Risk Drivers
  • 8. 8 StrategicRisks Top Risks Mapped to the ABC Inc. Risk Model Risks Board Effectiveness Business Model & Portfolio Competitor Image & Branding Customer Behavior Organization Structure & Culture Sovereign/Political Technological Innovation Intellectual Property and License Financial Accounting & Reporting Credit Currency Liquidity Capital Availability Investment Valuation/Effectiveness Authority/Limit Budget, Planning & Monitoring Business Interruption Channel Effectiveness Communications Infrastructure Access Integrity Talent Product Pricing Supply Chain Health, Safety & Environment Ethical Behavior Information Security Internal Control Evaluation Regulatory Illegal Acts Third-party Fraud Shareholder Expectations & Financial Market (4) FinancialRisks OperationalRisksComplianceRisks Top RisksRisk Drivers Risk Drivers
  • 9. Appendix 9 • Executive Risk Committee • Risk Rating Scale • Risk Trending Scale • Individual Risk Pages Enterprise Risk Management
  • 10. 10Enterprise Risk Management Executive Risk Committee Executive Title President & CEO Chief Operating Officer and President - Digital EVP & Chief Financial Officer EVP & President, Corporate Development, New Ventures & Investments EVP, Consumer Marketing EVP & Chief Revenue Officer CEO, ABC Inc. UK EVP, Chief Human Resources and Communications Officer EVP & General Counsel Chief Content Officer SVP, Global Technology Services SVP, Chief Auditor (non-voting)
  • 11. Enterprise Risk Management Likelihood Impact Financial Qualitative Examples Very Likely >X% Critical • Severe impact on the ABC Inc. brand resulting in major reductions in subscriptions/readership/ad buys. • Termination or reduction in executive leadership positions and/or 10-20% reduction in global workforce. • Unsustainable loss of multiple key talent. Likely X%-X% High • Significant impact on the ABC Inc. brand resulting in substantial reductions in subscriptions/readership/ad buys. • Termination or reduction in senior management positions and/or 5%-10% reduction in global workforce. • Loss of several key talent. Possible X%-X% Medium • Moderate impact on the ABC Inc. brand resulting in painful ,but manageable, reductions in subscriptions/readership/ad buys. • Termination or reduction in management positions and/ or up to 5% reduction in global workforce. • Loss of some key talent. Unlikely <X% Low • Little impact on ABC Inc. brand resulting in little to no incremental reductions in subscriptions/readership/ad buys. • Insignificant terminations or reduction in personnel. • Minimal loss of key talent. Enterprise Risk Management Risk Rating Scales 11 Impact rating may be based on financial, qualitative, or both
  • 12. Enterprise Risk Management Risk Trend Increasing The threat to the company, despite mitigating efforts, is expected to increase; the overall environment is becoming more risky. Stable to moderate increase The threat to the company, inclusive of mitigating efforts, is generally remaining the same, but it appears that the overall environment is becoming more risky. Stable The threat to the company, inclusive of mitigating efforts, is remaining the same. Stable to moderate decrease The threat to the company, inclusive of mitigating efforts, is generally remaining the same, but it appears that the overall environment may become less risky. Decreasing The threat to the company, inclusive of mitigating efforts, is decreasing through a combination of improved mitigating efforts and/or an improvement in the overall risk environment. Enterprise Risk Management Risk Trending Scale 12
  • 13. 13Enterprise Risk Management Enterprise Risk Management Risk Summary Risk Title Risk Statement Executive Sponsor Likelihood Likely Key Management Impact Critical Category Risk Trend Increasing Risk Synopsis • x. Mitigation Efforts • X. 1