SlideShare a Scribd company logo
1 of 38
Download to read offline
Risk Consulting & Advisory Services
ISO 31000:2009 Risk Management Standards




RiskPro India Ventures (P) Limited
         New Delhi, Mumbai, Bangalore




                         1
Who is Riskpro… Why us?


                 ABOUT US                                                    MISSION
   Riskpro is an organisation of member firms
    around India devoted to client service                   Provide integrated risk management
    excellence. Member firms offer wide range                 consulting services to mid-large sized
    of services in the field of risk management.              corporate /financial institutions in India
   Currently it has offices in three major cities           Be the preferred service provider for
    Mumbai, Delhi and Bangalore and alliances                 complete Governance, Risk and Compliance
    in other cities.                                          (GRC) solutions.
   Managed by experienced professionals with
    experiences spanning various industries.




         VALUE PROPOSITION                                            DIFFERENTIATORS
   You get quality advisory, normally delivered
    by large consulting firms, at fee levels                  Risk Management is our main focus
    charged by independent & small firms
                                                              Over 200 years of cumulative experience
   High quality deliverables
                                                              Hybrid Delivery model
   Multi-skilled & multi-disciplined organisation.
                                                              Ability to take on large and complex projects
   Timely completion of any task                              due to delivery capabilities
   Affordable alternative to large firms                     We Hold hands, not shake hands.

                                                      2
Risk Management Advisory Services

           Basel II/III Advisory               Corporate Risks                            Information Security
              Market Risk                        Enterprise Risk Assessment                IS Audit
              Credit Risk                        Fraud Risk                                Information Security
              Operational Risk                   Risk based Internal Audit                 IT Assurance
              ICAAP                              Operations Risk                           IT Governance
                                                  Forensic services
SERVICES




           Operational Risk                    Governance                                 Other Risks
              Process reviews                    Corporate Governance                      Business/Strategic Risk
              Policy/ Process Review             Business Strategic risk                   Reputation Risk
              Process Improvement                Fraud Risk                                Outsourcing Risk
              Compliance Risk                    Forensic Accounting                       Contractual Risk
              Insurance Risk



                              Training                                                  Recruitment
                      Banking – E Learning
                      Corporate Training                                          Virtual Risk Managers
                      Regular Risk Management Training                            Full Time Risk Professionals
                      Online Training material                                    Part time Risk Professionals
                      Workshops / Events                                          Risk Managers on call – free
                      ISO Standards




                                                            3
RiskPro Highlights

                          Large talent pool of risk experts, consultants and
                          associate partners in India with deep domain skills for
                          domestic and global clients

                11 service locations across Indian region with key
                offices in New Delhi, Mumbai and Bangalore


                               Deep expertise in consulting with over 200 years
                               of cumulative consulting experience



                Operating Groups:    Risk-Advisory,   Consulting,
                Training & HCMS


                              Service Lines : Credit, Operational, Fraud Risks,
                              ERM,    Regulatory     Compliance,    Outsourcing
                              Management, Corporate governance

                We are fastest growing risk consulting company
                and     have realistic plans to capture coming
                opportunities while competing with Big - 4’s for
                superior, unmatched, low cost services to our
                clients




                                                4
Riskpro’s Network Presence




                                    New Delhi



                                    Agra




                    Ahmedabad

                                                 Kolkata

               Mumbai

                        Pune

                                 Hyderabad


                   Bangalore




                                Salem




                                             5
ISO 31000:Future standard on Risk Management
                               Every organization has objectives to
                               achieve, and in order to achieve them,
                               any uncertainty that could interfere with
                               their realization must be effectively
                               managed.
                               ISO 31000 is clearly different from
                               existing guidelines in that the emphasis is
                               shifted from something happening – the
             Tackling          event – to the effect on objectives.
               hazards         It sets out principles, a framework, and a
                               process for the management of all forms
                               of risk, including safety and environment,
                               in all organizations, regardless of size.
                               Key principles which includes-
                               Communication and Consultation,
                               Establishing the context, Risk
                               assessment steps- Identification,
                               Analysis, Evaluation.
                               Risk treatment, Monitoring and review.
                               6
ISO 31000: 2009 Risk Management Standards Insight…


                            RISK MANAGEMENT
                        INTERNATIONAL STANDARD
                              ISO 31000:2009



           ISO Guide 73                        ISO 31000
        Risk Management -                 Risk Management –
            Vocabulary                 Principles and guidelines


                                              IEC 31010
   Standard                            Risk Management Risk
   Vocabulary                         Assessment Techniques
   Principles/Guidelines
   Assessment

                                   7                7
Evolution of ISO 31000 Journey…

         1995                1999                   2002               2004        2004 +




                                                                 Standards           Guidelines
                                                                Australia/New   review on Standards
                                                                  Zealand         and released for
                                                                  Review 2         implementation
                                                      Risk
                                                   Management
                                                   Vocabulary   AS/NZS 4360
                                                    Guideline
                                          2001
                                                    ISO/IEC
                                       Standards
                                                    Guide 73
                          Standards     Version-
                         Australia/New   Japan
          Standards        Zealand
         Australia/New     Review 1
           Zealand

                         AS/NZS 4360
         AS/NZS 4360




                                                           8
Understand ISO 31000...Future of Risk !
    Historical glance - When the Standards Australia/Standards New Zealand Joint
     Technical Committee developed AS/NZS 4360 – Risk Management, which was
     first published in November 1995, revised in 1999 and most recently revised in
     2004. Standards organizations in Canada (1997) and Japan (2001) followed
     with their own versions and then in 2002, ISO and the International Electro
     technical Commission (IEC) published ISO/ IEC Guide 73, Risk management –
     Vocabulary – Guidelines for use in standards.
    Every organization has objectives to achieve, and in order to achieve them,
     any uncertainty that could interfere with their realization must be effectively
     managed.
    ISO 31000 is clearly different from existing guidelines in that the emphasis is
     shifted from something happening – the event – to the effect on objectives.
    It sets out principles, a framework, and a process for the management of all
     forms of risk, including safety and environment, in all organizations, regardless
     of size.
    Key principles which includes- Communication and Consultation, Establishing
     the context, Risk assessment steps- Identification, Analysis, and evaluation
     Risk treatment, Monitoring and review.
                                              9
ISO 31000 Elements Overview…        Key Elements




                               10
ISO 31000 Elements Demystified




*This presentation and its contents in part or whole should not be copied or distributed to anyone.
                                                                           11
Risk Management Overview : ISO 31000 Outlook                                        Overview

•Without risk, there is no reward or progress. Unless risk is managed effectively, organizations
cannot maximize opportunities and minimize threats.

• Applicable and Adaptable with emphasizes on tailoring the principles and guidelines to the
specific needs and structure of the organization.

• Commitment of senior top management with the overarching component of the framework is
the mandate and commitment of the organization’s board and top management to the
implementation, review and continual improvement of how risk is managed. Ultimately to
ensure risk is fully focused on the achievement of objectives.

• Organizations with a commitment to managing risk know that implementing standards can
enable them to do so more effectively and therefore maximize opportunities and minimize
losses in the course of achieving corporate objectives.

• Risk is “effect of uncertainty on objectives” – positive and negative consequences, safety,
compliance, strategy.

• Risk management process a systematic application of management policies, procedures and
practices to the tasks of communication, consultation, establishing the context, identifying,
analyzing, evaluating, treating, monitoring and reviewing risk.


                                                  12
ISO 31000 Concept & Organizational Alignment                                        How we Do


• ISO (International Organization for Standardardization) 31000 standard sets out
  principles, a framework and a process for the management of risk that are applicable to any
  type of organization in public or private sector.


• Every organization is unique, yours might be a regulator, a deliverer of services, a policy
  analysis shop, an enforcer of laws, a facilitator of industry and commerce, support for
  education or literacy or rights, etc.


• So implementation of risk management in every organization is different but instantaneously
  recognized as 31000 risk management framework, process, terminology, and other best
  practices.


• So your organization’s risk management could be reviewed and evaluated by any other risk
  management literate person from any organization to mutual advantage.




                                                      13
Key Principles- Clauses                                    How we Do


Clause – 3

o    Create value
o    An integral part of organizational processes
o    Part of decision making
o    Explicitly address uncertainty
o    Be systematic and structured
o    Be based on the best available information
o    Be tailored
o    Take into account human factors
o    Be transparent and inclusive
o    Be dynamic, iterative and responsive to change
o    Be capable of continual improvement and enhancement


                                             14
Key Principles- Clauses                                              How we Do


Clause – 4 (Mandate & Commitment)


4.3 Design of framework
    o Understanding the organization and its context
    o Risk management policy
    o Integration into organizational processes
    o Accountability
    o Resources
    o Establishing internal communication and reporting mechanisms
    o Establishing external communication and reporting mechanisms



4.4 Implementing risk management
    4.4.1 Implementing the framework
    4.4.2 Implementing the risk management process

4.5 Monitoring and review of the framework

4.6 Continual improvement of the framework



                                                      15
Key Principles- Clauses                                     How we Do

Clause – 5 (Risk Management Process)


o Should be an integral part of management

o Be embedded in culture and practices and

o Tailored to the business processes of the organization.

o Communication and consultation

o Establishing the context

o Risk assessment

o Risk treatment

o Monitoring and review.



                                        16
Risk Components and Framework…1/3        How we Do




                                    17
Risk Components and Framework…2/3                                                  How we Do

• Setting of performance based standards that link risk management to change management
  and decision making.

• Focus on risks that change and why.

• Integration of risk management with strategic and performance management.

• Risk management plans for organization/divisions & departments.

• Implementation of a training strategy to build skills and knowledge.

• Appointing embedded practitioner’s.

• Allocation of risks , controls, and action based owner’s.

• Clear focus on control assurance as a line management role.

• Learning through the application of RCA (root cause analysis) for wins/losses.

• Risk governance, treatment and reporting on RM maturity within BU’s.


                                                   18
Risk Management Process…3/3                                      How we Do


                         Establishing the context (5.3)


                          Risk assessment (5.4 )


                              Risk identification (5.4.2)



      Communication                                         Monitoring
          and                                                 and
       Consultation             Risk analysis (5.4.3)        Review
          (5.2)                                               (5.6)



                               Risk evaluation (5.4.4)




                                Risk treatment (5.5)




                                          19
Relationship- Principles, Framework and Process                      How we Do




                           Mandate and
                           commitment



                            Framework
                             design for
                           managing risk



              Continual                              Risk
             framework      Principles           management
            improvement                         implementation   Process



                            Framework
                            monitoring
                            and review




                                           20
Components- Principles, Framework and Process                                                              How we Do


      Principles for Managing Risk                   Framework for Managing Risk                Process for Managing Risk


                                                 •      Embedding of RM throughout the      •    Identify   and      acknowledge
•       Risk management creates value                   organisation                             stakeholder perceptions –internal
                                                 •      Should ensure effective reporting        and external
                                                        and use for decision making         •    Establish    basis     for     decision
•       RM is an integral part             of                                                    making
        organisational processes                 •      Drive policy and define
                                                        performance                         •    Optimise use of expertise
                                                 •      Ensure alignment with strategy      •    Ensure   effective              change
•       RM is part of decision making                   and objectives                           management
                                                 •      Assign accountabilities; ensure     •    Defining parameters – external
                                                        resources                                and internal
•       RM       explicitly        addresses
        uncertainty                              •      Communicate benefits to             •    Alignment with objectives
                                                        stakeholders
                                                                                            •    Alignment    with           stakeholder
                                                 •      Understanding the organisation           expectations
•       RM is systematic, structured and                and its context
        timely                                                                              •    Developing risk criteria
                                                 •      Risk management policy
                                                                                            •    Risk    identification,       Analysis,
                                                 •      Integration into organisational          Evaluation
•       RM is tailored/aligned to internal              processes (embedding)
        and external context                                                                •    Selection    of      risk    treatment
                                                 •      Accountability (for process as           options
                                                        well as risks)
•       RM    is    dynamic,        iterative,                                              •    Preparing and implementing risk
                                                 •      Resources (people, skills,               treatment plans
        responsive to change                            information, documentation)
                                                                                            •    Recording the risk management
                                                 •      Establishing internal                    process
•       RM is capable         of    continual           communication and reporting
        improvement                                                                         •    Monitoring and Review
                                                 •      Establishing external
                                                        communication and reporting:
                                                                       21
Risk Implementation Approach…                                                                                 How we Do

1. Achieve an unequivocal Executive and Board mandate with a full appreciation of the changes required at all levels of the
   organization.

2. Undertake a gap analysis and maturity evaluation.

3. Develop a carefully tailored framework, based on ISO 31000 risk management framework, principles, and process as
   well as the organization's context and structure necessary for ERM to be implemented and sustained.

4. Workshop and develop a strategic risk management plan to implement the framework utilizing practical tools and best
   practice methods.

5. Develop and gain senior management agreement on a set of performance base standards to codify the framework and its
   implementation plan.

6. Create a tailored risk management information system, that enforces accountability for risks, controls and tasks, supports
   control assurance and enables risk management performance management and reporting.

7. Cause Champions to be appointed within the organization and trained to create the confidence, skills and local management
   support needed for roll-out.

8. Help Champions engage local management and implement the framework and risk management plan, generating risk
   registers, etc.

9. Establish a process and structure for RM performance management and reporting, including committees and review groups,
   and performance measures.

10. Periodically, review, benchmark, and revise the framework.



                                                                   22
Risk Integration – Strategic ERM                                                                        How we Do


                      Risk Management Framework and Process




                                                                                                              Change Management & Opportunities
                                                                         Performance Management (KPI)
                   Establish the                          RM Plan
                     context




 Lessons learn’t                   Risk assessment to
                    Draft Plan                          Strategic Plan
  from last year                     stress test plan



                                                             Risk
                    Strategic                             treatment
                    Objective                                plan




                                                23
ISO 31000 Standards FAQ’s- We Answer for you !                           How we Do




                                 How to allocate            What is your
                                  ownership to           organizational Risk
      Practical Challenges        management                  Appetite




                                 How to ensure         How to use your critical
                              assessment is current     success factors with
       How to create value     and risk treatment is    related measures of
                                   appropriate                success




                                                          What is CEN/ IEC
                              How to spot emerging       Guide 73 guideline
        How to integrate
                               and changing risks      relevance to ISO 31000
                                                             & more… ?




                                              24
Riskpro Clients                                                                                           Our Clients




 *Any trademarks or logos used throughout this presentation are the property of their respective owners
                                                                     25
Team Experiences                                                                  Our Experiences




                  Our team members have worked at world class Companies
 *Any trademarks or logos used throughout this presentation are the property of
 their respective owners
                                                             26
RESUMES – Our Team                                                                     Credentials

                 Co-Founder - Riskpro
                 CA, CPA, MBA-Finance (USA), FRM (GARP)
 Manoj Jain


                 Over 10 years international experience – 6 years in Bahrain and 4 years USA
                 15 years exp in risk management consulting and internal audits, Specialization in
                  Operational Risk, Basel II, Sox and Control design
                 Worked for Ernst & Young (Bahrain), Arab Investment Company (Bahrain),
                  Navigant Consulting(USA), Kotak Mahindra Bank (India) and Credit Suisse(India)
                 Sox Compliance project for Fannie Mae, USA ( $900+ Billion Mortgage Company)


                 Co- Founder - Riskpro
                 CA (India), MBA (Netherlands), CIA (USA)
 Rahul Bhan




                 Over 15 years of extensive internal and external audit experience in India and
                  abroad.
                 Worked with KPMG United Arab Emirates, PKF South Africa, Ernst and Young
                  Kuwait, Deloitte Netherlands and KPMG India.
                 Worked with clients in a wide variety of industries and countries including trading,
                  retail and consumer goods, NGO, manufacturing and banking and finance. Major
                  clients include banks, investment companies, manufacturing organizations,
                  aviation etc.


                                                      27
RESUMES - Our team                                                                                Credentials


                     Co-Founder - Riskpro
 Casper Abraham

                     PGD (Electrical & Electronics & Computer Programming)
                     30 years of experience in Information & Communications Technology (ICT) Solutions
                      for Retail, Garments, Manufacturing, Services Industries.
                     Has created Companies, Divisions, Products, Brands, Teams & Markets.
                     Consulting in Business, Technology, Marketing & Sales & Strategic Planning.
                     Advisory, Training, Workshops & Implementation in Systems Thinking, Systems
                      Modeling & Balanced Scorecard
                     Worked with TIFR, Mahindra, Ambience, Communico-Graphique & Ionidea Inc, USA,

                     Vice President – Risk Management
                     MBA, PDFM, NSE-NCFM, PMP, CSSGB,Trained ISO 9001:2000 I.A,GARP-FBR, ITIL
 Hemant Seigell




                     Professional with 17 years of rich experience into diverse Consumer finance/ Lending
                      operations ,Risk Management,BPMS, Consumer Banking, NBFC, Management Consulting &
                      Housing finance in BFSI industry having successfully led key business strategic
                      engagements across multi-product environment in APAC, Australia and US regions.
                     Worked with GE, ABN AMRO Bank, Citigroup, Accenture, Deutsche Postbank
                     Highly skilled and expert Trainer in Risk areas across Fraud, Credit, Operational, Corporate
                      Risk management, GRC.
                     Specializes in Fraud Control, Compliance QA ,ERM and Regulatory governance.




                                                             28
RESUMES - Our team                                                                              Credentials


                    Head - Insurance Risk Advisory services
                    B.sc, Associate of Indian Institute of Insurance
                     Licensed Category A Insurance surveyor
 R. Gupta


                 

                    26 years of experience in Insurance advisory services, Loss adjusting for large
                     corporates,Claims management.
                    Has assessed more than 4500 high value insurance claims across various industry
                     sectors.
                    Risk management inspection
                    Valuations of fixed assets for insurance purpose.


                    Head - Human Capital Management
 Nilesh Bhatia




                    Chartered Accountant, Lead Assessor ISO 9000, Six Sigma Trained, Trained on Situational
                     Leadership, Trained on interviewing skills and Whole Message Model.
                    Over two decades of international, multi-cultural experience in finance and human resources
                     viz. internal audit, accounting operations, accounting process review & re-designing, risk
                     management, business solutioning, six sigma projects, talent acquisition, talent retention,
                     organization design/redesigning, compensation and appraisal processing, employee and
                     customer satisfaction surveys, knowledge management and finance services.
                    Worked with Citicorp/MGF, India Glycol, Delphi, American Express India, American Express
                     USA, Fidelity International and Macquarie Global Finance Services India.



                                                            29
Our team                                                                                          Credentials

                     Co-founder- Riskpro
 Rajesh Jhalani

                     B.Com, FCA
                     Senior Partner with 48 year old Delhi based Chartered Accountant firm, Mehrotra
                      and Mehrotra
                     Over 19 years of experience in the field of Audit, Taxation, Company law matters.
                     Major clients served are NTPC, BHEL, Bank of India, PNB, Airport Authority of
                      India etc.



                     Specialist Risk Consultant – ERP & IT Compliance
                     SAP Certified, MBA (Finance), SAP Security trained (from SAP India), SAP GRC Access
 Gourav Ladha




                      Controls trained (from SAP India)
                     Over 7 years of experience working in the area of ERP/IT Risk advisory, primarily focusing
                      on SAP, for ‘Fortune 500’ clients in around 8 countries including US, UK, UAE, Hong Kong,
                      etc
                     Specializes in SAP Risk & Controls Advisory, SAP Business Process Controls Audit, SAP
                      Security & Segregation of Duties Control Audit, ERP Trainings,
                     Strong Industry experiences ranging from Beverages, Insurance, Energy, FMCG,
                      Pharmaceutical, Retail, Telecommunication to IT Services
                     Worked for risk advisory teams of reputed organizations like Ernst & Young, EXL Services



                                                             30
RESUMES - Our team                                                                          Credentials

                  Executive Vice President – Risk Management ( Banking & Financial Services)
                     A hands-on banking professional {BSc (Mathematics), CAIIB} with considerable
                      domestic and international experience
 Kashi Banerjee



                     An aggregate experience of 24+ years across industry, mainly BFSI in several
                      functional areas including Retail and Commercial Banking, Corporate Lending, team
                      member of the Business Process Re-Engineering project (BPR); conceptualizing and
                      setting up shared services centres for centralized operations for the Bank in India.
                     Management through ERM framework overseeing all key areas of the business
                      through various Operational Risk tools like KRI / RCSA matrices. Managing of major
                      project implementation of Basel II and Compliance risk framework
                     Directing, reviewing and advising Board of Directors on various compliance issues and
                      representing the bank to the Central Bank regulatory offices.
                     Worked for ANZ Grindlays Bank, Standard Chartered, Bahraini Saudi Bank and Dubai
                      Holdings ( subsidiary)
                  Consultant – Information Security & IT Governance
 Anjay Agarwal




                   LLB, CA, CISA, CWA, CS, CFE and others

                   Over 15 years of experience in the field of Audit, Taxation, Investigations.

                   Specializing in the field of Systems Audit, Cybrex Audit, Computer Crime
                     Investigations, IS Forensics
                   International Committee Member of Governmental and Regulatory Agencies
                     Board and Academic Relations Committee of ISACA, USA


                                                          31
RESUMES - Our team                                                                                                   Credentials

                        Executive Vice President – Risk Management ( Banking & Financial Services)
 Vijayan Govindarajan

                           Professional Risk Manager with considerable domestic and international experience
                           An aggregate experience of 30 + years across industry, mainly Banking in several functional areas
                            including Wholesale Credit Risk, Operational Risk, Trade Finance , Retail Banking and Islamic Financial
                            Services.
                           Track record of setting up of excellence in the set-up, and management of credit and operational risk,
                            compliance and credit administration functions in retail, commercial , Islamic Banking and offshore banking
                            entities in the Middle East.
                           Key strength includes Corporate Credits, Risk Management in IT, implementation of Risk Management
                            module in core banking Bank’s Policies, procedures, Country Risk. Played an active role in 3 core banking
                            software implementations
                           Worked for a Private Sector Bank in India, ABN AMRO Bank, Bahrain, Bank Muscat Bahrain and BMI Bank
                            Bahrain as AGM Risk Management.


                            Specialist Risk Consultant – ERP & IT Compliance
 Gourav Ladha




                            SAP Certified, MBA (Finance), SAP Security trained (from SAP India), SAP GRC Access Controls trained
                             (from SAP India)
                            Over 7 years of experience working in the area of ERP/IT Risk advisory, primarily focusing on SAP, for
                             ‘Fortune 500’ clients in around 8 countries including US, UK, UAE, Hong Kong, etc
                            Specializes in SAP Risk & Controls Advisory, SAP Business Process Controls Audit, SAP Security &
                             Segregation of Duties Control Audit, ERP Trainings,
                            Strong Industry experiences ranging from Beverages, Insurance, Energy, FMCG, Pharmaceutical, Retail,
                             Telecommunication to IT Services
                            Worked for risk advisory teams of reputed organizations like Ernst & Young, EXL Services




                                                                           32
RESUMES - Our team                                                                                     Credentials

                         Vice President & Head – IT Risk Advisory
 Ravikiran Bhandari

                         Over 14+ Years of Experience in Information Security and Risk Management & CISM
                          certified
                         Headed the Global Information Security team of Daimler (Mercedes-Benz) Worldwide at
                          Bangalore for 9 years, previously worked at organization like Wipro, Bangalore Labs
                         Multi-sector experience including Banking, Insurance, Finance, Energy, Manufacturing,
                          Retail, Hi-Tech & Telecom, and Automobile
                         Well known Ethical hacker: Was featured in BusinessWorld Magazine in an article about
                          leading ethical hackers in India and published several articles in Print and Online Media
                         Rich experience in Information Security Audits across Corporations, 3rd Party Suppliers, Joint
                          Ventures across several countries in the world including US, UK, China, Germany

                          Vice President – Legal Risk Advisory
 Aashish Shrivastav




                      

                         B.B.A. LL.B. (Hons.)
                         About half a decade experience in legal services to client’s with respect to Contract
                          and Commercial Laws, Joint Ventures, Inbound & Outbound Investments, Private
                          Equity Investment Transactions, Real Estate & Infrastructure, Energy and General
                          Corporate.
                         Have advised various social enterprises and start ups in setting up business in
                          India.
                         Worked for the leading law firms of India such as FoxMandal Little.



                                                                  33
RESUMES - Our team                                                                                      Credentials

                        Vice President – Riskpro India
 Phanindra Prakash

                        FCA [India], ACMA [India], CFE [USA], CertIFRS [UK]
                        Over 16 years of extensive consulting experience which includes financial & systems audit,
                         process transformation, implementation of internal controls, SOX compliance, fraud audits
                         & due diligence, US-India taxation
                        Engaged in consulting roles as trusted advisor to finance, internal audit and information
                         technology executives of multiple Fortune 1000 companies with project sites in US,
                         Canada, Europe & Asia
                        Worked with E&Y and Deloitte Consulting in USA
                        Some of the major clients served internationally are GE Capital, UBS, McKesson, Eaton,
                         Imation, Albertsons,


                        EVP and Head – Telecom Risk Advisory
                        M.Tech, IIT Kharagpur, India; IES; Doctoral study, research and teaching in Linkpoing
                         University/Sweden; Lead Auditor (BVQI).
 Asok Sit




                        Over 30 years on International experience in networks and mobile Handsets from top
                         global companies /institutes like ISRO, Ericsson, Nokia, Nokia Siemens Networks and
                         based mostly in its head quarter locations in India, EU, USA.
                        Expertise: Setting up capability, behaviour, culture in turning Risk, Quality, Innovation for
                         competitive advantage, customer delight and sustainability; key skill sets are Engagement,
                         Handholding, Coaching, Mentoring and lot of best practices, benchmarking/standards like
                         CMMI, TL9000, Six Sigma, ISO, SAS 70 etc.



                                                                  34
RESUMES - PARTNERSHIPS
                     Specialist Risk Consultant – Business Continuity
Andrew Hiles

                     Founder and 15-year Chairman of Survive, the first international user group for Business
                      Continuity professionals
                     Founding director and first Fellow of the Business Continuity Institute
                     Over 25 years international consulting expertise in Risk, Crisis, Emergency, Incident, and
                      Business Continuity and ICT Disaster Recovery Management
                     Multi-sector experience including Banking, Insurance, Finance, Oil, Gas, Energy,
                      Manufacturing, Retail, Hi-Tech & Telecom
                     Western Press Award for services to business, 1994; BCI/CIR nomination for
                      lifetime achievement in BC, 1999, London; inducted into BC Hall of Fame by CPM magazine,
                      2004, Washington DC.

                     Specialist Risk Consultant – Enterprise Risk Management
Chris E. Mandel




                     Highly skilled risk and insurance professional with 25 years of experience designing,
                      developing and implementing large, global corporate risk management programs for Fortune
                      500 firms.
                     Principal Consultant and Founder - Excellence in Risk Management, LLC. (Texas, USA) Co-
                      founder and EVP, Professional Services, rPM3 Solutions, LLC (Maryland, USA).
                     Past experiences include Head of Global Risk Management for USAA, PepsiCo/Tricon
                      Global and American National Red Cross
                     Additional risk and insurance experience at Verizon Corp,. Marsh USA and Liberty Mutual
                      Insurance Co.
                     2004 Risk Manager of the Year – 2007 recipient of the Alexander Hamilton Award for
                      “Excellence in ERM” (at USAA) – former President, Risk and Insurance Management
                      Society, Inc.

                                                            35
RESUMES - Advisors                                                                                 Credentials

                      Founder partner of Mehrotra and Mehrotra, a 48 year old CA firm in India
 Mr. MP Mehrorta

                      B.Com, FCA, LLB
                      Over 48 years of experience in audits, taxation, legal matters, loan syndication etc.
                      Trustee of Cochin Port Trust, Member of Task Force for MOUs, Ministry of Heavy
                       Industries & Public Enterprises, Govt. of India, Ex- Member of Central Board of
                       Trustees, Employees’ Provident Fund Organisation (EPFO), Ministry of Labour,
                       Govt. of India, New Delhi.
                      Ex - Director, Canara Bank


                      Practicing chartered accountant in Delhi
                      CA, ICWA
 Mr. PK Gupta




                      Over 35 years of professional experience.
                      Trustee, Kargil Shaheed Smarak Samiti
                      Hon. Treasurer, World Academy of Spiritual Sciences (WASS).
                      Panel Arbitrator, International Centre for Alternative Dispute Resolution
                      Arbitrator, Cement Corporation of India
                      Arbitrator, Bombay Stock Exchange Limited
                      Arbitrator, Central Depository Services (India) Limited
                      Arbitrator’s Panel of Indian Council of Arbitration



                                                                   36
Key Contacts
 Corporate                           Mumbai                      Delhi                       Bangalore
    Riskpro India                    Manoj Jain                  Rahul Bhan                  Casper Abraham
 Ventures (P) Limited                Director                    Director                    Director
                                     M- 98337 67114              M- 99680 05042              M- 98450 61870
                                     manoj.jain@riskpro.in       rahul.bhan@riskpro.in       casper.abraham@riskpro.in
     info@riskpro.in
     www.riskpro.in                  Sivaramakrishnan            Hemant Seigell              Vijayan Govindarajan
                                     President – Banking & FS    SVP – Risk Management       EVP – Risk Management
 C 561, Defence colony               M- 98690 19311              M- 99536 97905              M- 99166 63652
   New Delhi 110024                  smaran.iyer@riskpro.in      hemant.seigell@riskpro.in   vijayan.govindarajan@riskpro.in

 Ahmedabad                           Pune                        Kolkata                     Gurgaon
 Maulik Manakiwala                   M.L. Jain                   Kashi Banerjee              Nilesh Bhatia
 Associate Firm                      Principal – Strategy Risk   EVP – Risk Management       Head – Human Capital Mgt.
 M – 98256 40046                     M- 98220 11987              M- 98304 75375              M- 98182 93434
                                     mljain@riskpro.in           kashi.banerjee@riskpro.in   nilesh.bhatia@riskpro.in
 Gourav Ladha
 Sap Risk Advisory
 M- 97129 52955

 Salem                               Ghaziabad                   Agra                        Hyderabad

 Chandrasekeran                      R Gupta                     Alok Kumar Agarwal          Phanindra Prakash
 Recruitment franchisee              Head – Insurance Risk       Associate Firm              Member Firm
 M – 94435 99132                     M- 98101 07387              M- 99971 65253              M- 95500 61616



Copyright- © 2012 Riskpro ,India .All rights reserved.              37
Key Contacts (Continued)
 Corporate                           Bangalore                       Gurgaon
    Riskpro India                    Ravikiran Bhandari              Asok Sit
 Ventures (P) Limited
                                     VP – IT Risk Advisory           EVP, Head – Telecom Risk Advisory
                                     M- 99001 69562                  M- 98105 03463
     info@riskpro.in                 ravikiran.bhandari@riskpro.in
     www.riskpro.in                                                  asok.sit@riskpro.in

 C 561, Defence colony
   New Delhi 110024




Copyright- © 2012 Riskpro ,India .All rights reserved.                  38

More Related Content

What's hot (8)

Riskpro company introduction 2013
Riskpro company introduction 2013Riskpro company introduction 2013
Riskpro company introduction 2013
 
Riskpro company introduction 2013
Riskpro company introduction 2013Riskpro company introduction 2013
Riskpro company introduction 2013
 
Risk Management Certification
Risk Management CertificationRisk Management Certification
Risk Management Certification
 
Riskpro Trainings Automotive Industry
Riskpro Trainings Automotive IndustryRiskpro Trainings Automotive Industry
Riskpro Trainings Automotive Industry
 
Riskpro security audit
Riskpro security auditRiskpro security audit
Riskpro security audit
 
Riskpro Brief Introduction
Riskpro Brief IntroductionRiskpro Brief Introduction
Riskpro Brief Introduction
 
Riskpro Brief Introduction
Riskpro Brief IntroductionRiskpro Brief Introduction
Riskpro Brief Introduction
 
Risk pro corporate restructuring 2013
Risk pro corporate restructuring 2013Risk pro corporate restructuring 2013
Risk pro corporate restructuring 2013
 

Viewers also liked (17)

Code of conduct completion certificate
Code of conduct completion certificateCode of conduct completion certificate
Code of conduct completion certificate
 
MBA Nyenrode degree
MBA Nyenrode degreeMBA Nyenrode degree
MBA Nyenrode degree
 
CA final certificate
CA final certificateCA final certificate
CA final certificate
 
CIA degree
CIA degreeCIA degree
CIA degree
 
Riskpro iso 31000 services 2013
Riskpro iso 31000 services 2013Riskpro iso 31000 services 2013
Riskpro iso 31000 services 2013
 
EC Certificate
EC CertificateEC Certificate
EC Certificate
 
HARISH TENTH SSC
HARISH TENTH  SSCHARISH TENTH  SSC
HARISH TENTH SSC
 
ICAI Membership Certificate
ICAI Membership CertificateICAI Membership Certificate
ICAI Membership Certificate
 
IEng Certificate
IEng CertificateIEng Certificate
IEng Certificate
 
B.Com Degree
B.Com DegreeB.Com Degree
B.Com Degree
 
CA Final Passing certificate.PDF
CA Final Passing certificate.PDFCA Final Passing certificate.PDF
CA Final Passing certificate.PDF
 
CS Pass Certificate
CS Pass CertificateCS Pass Certificate
CS Pass Certificate
 
FCCA Certificate
FCCA CertificateFCCA Certificate
FCCA Certificate
 
CFA Charter-h1
CFA Charter-h1CFA Charter-h1
CFA Charter-h1
 
_CV Pimenov Apr 2015-8
_CV Pimenov Apr 2015-8_CV Pimenov Apr 2015-8
_CV Pimenov Apr 2015-8
 
CA INTER PASS CERTIFICATE
CA INTER PASS CERTIFICATECA INTER PASS CERTIFICATE
CA INTER PASS CERTIFICATE
 
ACCA Certificates
ACCA CertificatesACCA Certificates
ACCA Certificates
 

Similar to Riskpro iso 31000 services 2013

Riskpro Web Based Training
Riskpro Web Based TrainingRiskpro Web Based Training
Riskpro Web Based TrainingManoj Jain
 

Similar to Riskpro iso 31000 services 2013 (20)

Riskpro company introduction 2013
Riskpro company introduction 2013Riskpro company introduction 2013
Riskpro company introduction 2013
 
Riskpro company introduction 2013
Riskpro company introduction 2013Riskpro company introduction 2013
Riskpro company introduction 2013
 
Risk management benchmarking 2013
Risk management benchmarking 2013Risk management benchmarking 2013
Risk management benchmarking 2013
 
Independent director sme services 2013
Independent director sme services 2013Independent director sme services 2013
Independent director sme services 2013
 
Independent director sme services 2013
Independent director sme services 2013Independent director sme services 2013
Independent director sme services 2013
 
Independent director sme services 2013
Independent director sme services 2013Independent director sme services 2013
Independent director sme services 2013
 
Riskpro web based training
Riskpro web based trainingRiskpro web based training
Riskpro web based training
 
Riskpro Web Based Training
Riskpro Web Based TrainingRiskpro Web Based Training
Riskpro Web Based Training
 
Riskpro Web Based Training
Riskpro Web Based TrainingRiskpro Web Based Training
Riskpro Web Based Training
 
Riskpro Trainings Telecom Industry
Riskpro Trainings Telecom IndustryRiskpro Trainings Telecom Industry
Riskpro Trainings Telecom Industry
 
Riskpro Trainings Telecom Industry
Riskpro Trainings Telecom IndustryRiskpro Trainings Telecom Industry
Riskpro Trainings Telecom Industry
 
Independent director sme services 2013
Independent director sme services 2013Independent director sme services 2013
Independent director sme services 2013
 
Independent director sme services 2013
Independent director sme services 2013Independent director sme services 2013
Independent director sme services 2013
 
Independent director sme services 2013
Independent director sme services 2013Independent director sme services 2013
Independent director sme services 2013
 
Independent director sme services 2013
Independent director sme services 2013Independent director sme services 2013
Independent director sme services 2013
 
Riskpro Insurance Advisory Services
Riskpro Insurance Advisory ServicesRiskpro Insurance Advisory Services
Riskpro Insurance Advisory Services
 
Riskpro company introduction 2013
Riskpro company introduction 2013Riskpro company introduction 2013
Riskpro company introduction 2013
 
Independent Dir Sme Services Brochure
Independent Dir Sme Services BrochureIndependent Dir Sme Services Brochure
Independent Dir Sme Services Brochure
 
Independent Dir Sme Services Brochure
Independent Dir Sme Services BrochureIndependent Dir Sme Services Brochure
Independent Dir Sme Services Brochure
 
Independent Dir Sme Services
Independent Dir Sme ServicesIndependent Dir Sme Services
Independent Dir Sme Services
 

More from Rahul Bhan (CA, CIA, MBA)

India and sweden strategy brochure 2013 riskpro
India and sweden strategy brochure 2013 riskproIndia and sweden strategy brochure 2013 riskpro
India and sweden strategy brochure 2013 riskproRahul Bhan (CA, CIA, MBA)
 
Accounting payroll outsourcing services 2013
Accounting payroll outsourcing services   2013Accounting payroll outsourcing services   2013
Accounting payroll outsourcing services 2013Rahul Bhan (CA, CIA, MBA)
 
Accounting payroll outsourcing services 2013
Accounting payroll outsourcing services   2013Accounting payroll outsourcing services   2013
Accounting payroll outsourcing services 2013Rahul Bhan (CA, CIA, MBA)
 

More from Rahul Bhan (CA, CIA, MBA) (20)

Marketing risk advisory brochure 2013
Marketing risk advisory brochure 2013Marketing risk advisory brochure 2013
Marketing risk advisory brochure 2013
 
Legal risk advisory services 2013
Legal risk advisory services 2013Legal risk advisory services 2013
Legal risk advisory services 2013
 
Lean six sigma training services 2013
Lean six sigma training services 2013Lean six sigma training services 2013
Lean six sigma training services 2013
 
It risk advisory brochure 2013
It risk advisory brochure 2013It risk advisory brochure 2013
It risk advisory brochure 2013
 
Insurance fraud risk management service
Insurance fraud risk management serviceInsurance fraud risk management service
Insurance fraud risk management service
 
India entry strategy brochure 2013
India entry strategy brochure 2013India entry strategy brochure 2013
India entry strategy brochure 2013
 
India and sweden strategy brochure 2013 riskpro
India and sweden strategy brochure 2013 riskproIndia and sweden strategy brochure 2013 riskpro
India and sweden strategy brochure 2013 riskpro
 
Independent director sme services 2013
Independent director sme services 2013Independent director sme services 2013
Independent director sme services 2013
 
Fraud risk services 2013
Fraud risk services 2013Fraud risk services 2013
Fraud risk services 2013
 
Fatca compliance brochure riskpro 2013
Fatca compliance brochure riskpro 2013Fatca compliance brochure riskpro 2013
Fatca compliance brochure riskpro 2013
 
Bpo risk management 2013
Bpo risk management 2013Bpo risk management 2013
Bpo risk management 2013
 
Bi risk services 2013
Bi risk services 2013Bi risk services 2013
Bi risk services 2013
 
Aml training
Aml trainingAml training
Aml training
 
Accounting payroll outsourcing services 2013
Accounting payroll outsourcing services   2013Accounting payroll outsourcing services   2013
Accounting payroll outsourcing services 2013
 
Vendor risk management 2013
Vendor risk management 2013Vendor risk management 2013
Vendor risk management 2013
 
Accounting payroll outsourcing services 2013
Accounting payroll outsourcing services   2013Accounting payroll outsourcing services   2013
Accounting payroll outsourcing services 2013
 
Member firm proposal 2013
Member firm proposal 2013Member firm proposal 2013
Member firm proposal 2013
 
Marketing risk advisory brochure 2013
Marketing risk advisory brochure 2013Marketing risk advisory brochure 2013
Marketing risk advisory brochure 2013
 
Legal risk advisory services 2013
Legal risk advisory services 2013Legal risk advisory services 2013
Legal risk advisory services 2013
 
Lean six sigma training services 2013
Lean six sigma training services 2013Lean six sigma training services 2013
Lean six sigma training services 2013
 

Riskpro iso 31000 services 2013

  • 1. Risk Consulting & Advisory Services ISO 31000:2009 Risk Management Standards RiskPro India Ventures (P) Limited New Delhi, Mumbai, Bangalore 1
  • 2. Who is Riskpro… Why us? ABOUT US MISSION  Riskpro is an organisation of member firms around India devoted to client service  Provide integrated risk management excellence. Member firms offer wide range consulting services to mid-large sized of services in the field of risk management. corporate /financial institutions in India  Currently it has offices in three major cities  Be the preferred service provider for Mumbai, Delhi and Bangalore and alliances complete Governance, Risk and Compliance in other cities. (GRC) solutions.  Managed by experienced professionals with experiences spanning various industries. VALUE PROPOSITION DIFFERENTIATORS  You get quality advisory, normally delivered by large consulting firms, at fee levels  Risk Management is our main focus charged by independent & small firms  Over 200 years of cumulative experience  High quality deliverables  Hybrid Delivery model  Multi-skilled & multi-disciplined organisation.  Ability to take on large and complex projects  Timely completion of any task due to delivery capabilities  Affordable alternative to large firms  We Hold hands, not shake hands. 2
  • 3. Risk Management Advisory Services Basel II/III Advisory Corporate Risks Information Security  Market Risk  Enterprise Risk Assessment  IS Audit  Credit Risk  Fraud Risk  Information Security  Operational Risk  Risk based Internal Audit  IT Assurance  ICAAP  Operations Risk  IT Governance  Forensic services SERVICES Operational Risk Governance Other Risks  Process reviews  Corporate Governance  Business/Strategic Risk  Policy/ Process Review  Business Strategic risk  Reputation Risk  Process Improvement  Fraud Risk  Outsourcing Risk  Compliance Risk  Forensic Accounting  Contractual Risk  Insurance Risk Training Recruitment  Banking – E Learning  Corporate Training  Virtual Risk Managers  Regular Risk Management Training  Full Time Risk Professionals  Online Training material  Part time Risk Professionals  Workshops / Events  Risk Managers on call – free  ISO Standards 3
  • 4. RiskPro Highlights Large talent pool of risk experts, consultants and associate partners in India with deep domain skills for domestic and global clients 11 service locations across Indian region with key offices in New Delhi, Mumbai and Bangalore Deep expertise in consulting with over 200 years of cumulative consulting experience Operating Groups: Risk-Advisory, Consulting, Training & HCMS Service Lines : Credit, Operational, Fraud Risks, ERM, Regulatory Compliance, Outsourcing Management, Corporate governance We are fastest growing risk consulting company and have realistic plans to capture coming opportunities while competing with Big - 4’s for superior, unmatched, low cost services to our clients 4
  • 5. Riskpro’s Network Presence New Delhi Agra Ahmedabad Kolkata Mumbai Pune Hyderabad Bangalore Salem 5
  • 6. ISO 31000:Future standard on Risk Management  Every organization has objectives to achieve, and in order to achieve them, any uncertainty that could interfere with their realization must be effectively managed.  ISO 31000 is clearly different from existing guidelines in that the emphasis is shifted from something happening – the Tackling event – to the effect on objectives. hazards  It sets out principles, a framework, and a process for the management of all forms of risk, including safety and environment, in all organizations, regardless of size.  Key principles which includes- Communication and Consultation, Establishing the context, Risk assessment steps- Identification, Analysis, Evaluation.  Risk treatment, Monitoring and review. 6
  • 7. ISO 31000: 2009 Risk Management Standards Insight… RISK MANAGEMENT INTERNATIONAL STANDARD ISO 31000:2009 ISO Guide 73 ISO 31000 Risk Management - Risk Management – Vocabulary Principles and guidelines IEC 31010 Standard Risk Management Risk Vocabulary Assessment Techniques Principles/Guidelines Assessment 7 7
  • 8. Evolution of ISO 31000 Journey… 1995 1999 2002 2004 2004 + Standards Guidelines Australia/New review on Standards Zealand and released for Review 2 implementation Risk Management Vocabulary AS/NZS 4360 Guideline 2001 ISO/IEC Standards Guide 73 Standards Version- Australia/New Japan Standards Zealand Australia/New Review 1 Zealand AS/NZS 4360 AS/NZS 4360 8
  • 9. Understand ISO 31000...Future of Risk !  Historical glance - When the Standards Australia/Standards New Zealand Joint Technical Committee developed AS/NZS 4360 – Risk Management, which was first published in November 1995, revised in 1999 and most recently revised in 2004. Standards organizations in Canada (1997) and Japan (2001) followed with their own versions and then in 2002, ISO and the International Electro technical Commission (IEC) published ISO/ IEC Guide 73, Risk management – Vocabulary – Guidelines for use in standards.  Every organization has objectives to achieve, and in order to achieve them, any uncertainty that could interfere with their realization must be effectively managed.  ISO 31000 is clearly different from existing guidelines in that the emphasis is shifted from something happening – the event – to the effect on objectives.  It sets out principles, a framework, and a process for the management of all forms of risk, including safety and environment, in all organizations, regardless of size.  Key principles which includes- Communication and Consultation, Establishing the context, Risk assessment steps- Identification, Analysis, and evaluation Risk treatment, Monitoring and review. 9
  • 10. ISO 31000 Elements Overview… Key Elements 10
  • 11. ISO 31000 Elements Demystified *This presentation and its contents in part or whole should not be copied or distributed to anyone. 11
  • 12. Risk Management Overview : ISO 31000 Outlook Overview •Without risk, there is no reward or progress. Unless risk is managed effectively, organizations cannot maximize opportunities and minimize threats. • Applicable and Adaptable with emphasizes on tailoring the principles and guidelines to the specific needs and structure of the organization. • Commitment of senior top management with the overarching component of the framework is the mandate and commitment of the organization’s board and top management to the implementation, review and continual improvement of how risk is managed. Ultimately to ensure risk is fully focused on the achievement of objectives. • Organizations with a commitment to managing risk know that implementing standards can enable them to do so more effectively and therefore maximize opportunities and minimize losses in the course of achieving corporate objectives. • Risk is “effect of uncertainty on objectives” – positive and negative consequences, safety, compliance, strategy. • Risk management process a systematic application of management policies, procedures and practices to the tasks of communication, consultation, establishing the context, identifying, analyzing, evaluating, treating, monitoring and reviewing risk. 12
  • 13. ISO 31000 Concept & Organizational Alignment How we Do • ISO (International Organization for Standardardization) 31000 standard sets out principles, a framework and a process for the management of risk that are applicable to any type of organization in public or private sector. • Every organization is unique, yours might be a regulator, a deliverer of services, a policy analysis shop, an enforcer of laws, a facilitator of industry and commerce, support for education or literacy or rights, etc. • So implementation of risk management in every organization is different but instantaneously recognized as 31000 risk management framework, process, terminology, and other best practices. • So your organization’s risk management could be reviewed and evaluated by any other risk management literate person from any organization to mutual advantage. 13
  • 14. Key Principles- Clauses How we Do Clause – 3 o Create value o An integral part of organizational processes o Part of decision making o Explicitly address uncertainty o Be systematic and structured o Be based on the best available information o Be tailored o Take into account human factors o Be transparent and inclusive o Be dynamic, iterative and responsive to change o Be capable of continual improvement and enhancement 14
  • 15. Key Principles- Clauses How we Do Clause – 4 (Mandate & Commitment) 4.3 Design of framework o Understanding the organization and its context o Risk management policy o Integration into organizational processes o Accountability o Resources o Establishing internal communication and reporting mechanisms o Establishing external communication and reporting mechanisms 4.4 Implementing risk management 4.4.1 Implementing the framework 4.4.2 Implementing the risk management process 4.5 Monitoring and review of the framework 4.6 Continual improvement of the framework 15
  • 16. Key Principles- Clauses How we Do Clause – 5 (Risk Management Process) o Should be an integral part of management o Be embedded in culture and practices and o Tailored to the business processes of the organization. o Communication and consultation o Establishing the context o Risk assessment o Risk treatment o Monitoring and review. 16
  • 17. Risk Components and Framework…1/3 How we Do 17
  • 18. Risk Components and Framework…2/3 How we Do • Setting of performance based standards that link risk management to change management and decision making. • Focus on risks that change and why. • Integration of risk management with strategic and performance management. • Risk management plans for organization/divisions & departments. • Implementation of a training strategy to build skills and knowledge. • Appointing embedded practitioner’s. • Allocation of risks , controls, and action based owner’s. • Clear focus on control assurance as a line management role. • Learning through the application of RCA (root cause analysis) for wins/losses. • Risk governance, treatment and reporting on RM maturity within BU’s. 18
  • 19. Risk Management Process…3/3 How we Do Establishing the context (5.3) Risk assessment (5.4 ) Risk identification (5.4.2) Communication Monitoring and and Consultation Risk analysis (5.4.3) Review (5.2) (5.6) Risk evaluation (5.4.4) Risk treatment (5.5) 19
  • 20. Relationship- Principles, Framework and Process How we Do Mandate and commitment Framework design for managing risk Continual Risk framework Principles management improvement implementation Process Framework monitoring and review 20
  • 21. Components- Principles, Framework and Process How we Do Principles for Managing Risk Framework for Managing Risk Process for Managing Risk • Embedding of RM throughout the • Identify and acknowledge • Risk management creates value organisation stakeholder perceptions –internal • Should ensure effective reporting and external and use for decision making • Establish basis for decision • RM is an integral part of making organisational processes • Drive policy and define performance • Optimise use of expertise • Ensure alignment with strategy • Ensure effective change • RM is part of decision making and objectives management • Assign accountabilities; ensure • Defining parameters – external resources and internal • RM explicitly addresses uncertainty • Communicate benefits to • Alignment with objectives stakeholders • Alignment with stakeholder • Understanding the organisation expectations • RM is systematic, structured and and its context timely • Developing risk criteria • Risk management policy • Risk identification, Analysis, • Integration into organisational Evaluation • RM is tailored/aligned to internal processes (embedding) and external context • Selection of risk treatment • Accountability (for process as options well as risks) • RM is dynamic, iterative, • Preparing and implementing risk • Resources (people, skills, treatment plans responsive to change information, documentation) • Recording the risk management • Establishing internal process • RM is capable of continual communication and reporting improvement • Monitoring and Review • Establishing external communication and reporting: 21
  • 22. Risk Implementation Approach… How we Do 1. Achieve an unequivocal Executive and Board mandate with a full appreciation of the changes required at all levels of the organization. 2. Undertake a gap analysis and maturity evaluation. 3. Develop a carefully tailored framework, based on ISO 31000 risk management framework, principles, and process as well as the organization's context and structure necessary for ERM to be implemented and sustained. 4. Workshop and develop a strategic risk management plan to implement the framework utilizing practical tools and best practice methods. 5. Develop and gain senior management agreement on a set of performance base standards to codify the framework and its implementation plan. 6. Create a tailored risk management information system, that enforces accountability for risks, controls and tasks, supports control assurance and enables risk management performance management and reporting. 7. Cause Champions to be appointed within the organization and trained to create the confidence, skills and local management support needed for roll-out. 8. Help Champions engage local management and implement the framework and risk management plan, generating risk registers, etc. 9. Establish a process and structure for RM performance management and reporting, including committees and review groups, and performance measures. 10. Periodically, review, benchmark, and revise the framework. 22
  • 23. Risk Integration – Strategic ERM How we Do Risk Management Framework and Process Change Management & Opportunities Performance Management (KPI) Establish the RM Plan context Lessons learn’t Risk assessment to Draft Plan Strategic Plan from last year stress test plan Risk Strategic treatment Objective plan 23
  • 24. ISO 31000 Standards FAQ’s- We Answer for you ! How we Do How to allocate What is your ownership to organizational Risk Practical Challenges management Appetite How to ensure How to use your critical assessment is current success factors with How to create value and risk treatment is related measures of appropriate success What is CEN/ IEC How to spot emerging Guide 73 guideline How to integrate and changing risks relevance to ISO 31000 & more… ? 24
  • 25. Riskpro Clients Our Clients *Any trademarks or logos used throughout this presentation are the property of their respective owners 25
  • 26. Team Experiences Our Experiences Our team members have worked at world class Companies *Any trademarks or logos used throughout this presentation are the property of their respective owners 26
  • 27. RESUMES – Our Team Credentials  Co-Founder - Riskpro  CA, CPA, MBA-Finance (USA), FRM (GARP) Manoj Jain  Over 10 years international experience – 6 years in Bahrain and 4 years USA  15 years exp in risk management consulting and internal audits, Specialization in Operational Risk, Basel II, Sox and Control design  Worked for Ernst & Young (Bahrain), Arab Investment Company (Bahrain), Navigant Consulting(USA), Kotak Mahindra Bank (India) and Credit Suisse(India)  Sox Compliance project for Fannie Mae, USA ( $900+ Billion Mortgage Company)  Co- Founder - Riskpro  CA (India), MBA (Netherlands), CIA (USA) Rahul Bhan  Over 15 years of extensive internal and external audit experience in India and abroad.  Worked with KPMG United Arab Emirates, PKF South Africa, Ernst and Young Kuwait, Deloitte Netherlands and KPMG India.  Worked with clients in a wide variety of industries and countries including trading, retail and consumer goods, NGO, manufacturing and banking and finance. Major clients include banks, investment companies, manufacturing organizations, aviation etc. 27
  • 28. RESUMES - Our team Credentials  Co-Founder - Riskpro Casper Abraham  PGD (Electrical & Electronics & Computer Programming)  30 years of experience in Information & Communications Technology (ICT) Solutions for Retail, Garments, Manufacturing, Services Industries.  Has created Companies, Divisions, Products, Brands, Teams & Markets.  Consulting in Business, Technology, Marketing & Sales & Strategic Planning.  Advisory, Training, Workshops & Implementation in Systems Thinking, Systems Modeling & Balanced Scorecard  Worked with TIFR, Mahindra, Ambience, Communico-Graphique & Ionidea Inc, USA,  Vice President – Risk Management  MBA, PDFM, NSE-NCFM, PMP, CSSGB,Trained ISO 9001:2000 I.A,GARP-FBR, ITIL Hemant Seigell  Professional with 17 years of rich experience into diverse Consumer finance/ Lending operations ,Risk Management,BPMS, Consumer Banking, NBFC, Management Consulting & Housing finance in BFSI industry having successfully led key business strategic engagements across multi-product environment in APAC, Australia and US regions.  Worked with GE, ABN AMRO Bank, Citigroup, Accenture, Deutsche Postbank  Highly skilled and expert Trainer in Risk areas across Fraud, Credit, Operational, Corporate Risk management, GRC.  Specializes in Fraud Control, Compliance QA ,ERM and Regulatory governance. 28
  • 29. RESUMES - Our team Credentials  Head - Insurance Risk Advisory services  B.sc, Associate of Indian Institute of Insurance Licensed Category A Insurance surveyor R. Gupta   26 years of experience in Insurance advisory services, Loss adjusting for large corporates,Claims management.  Has assessed more than 4500 high value insurance claims across various industry sectors.  Risk management inspection  Valuations of fixed assets for insurance purpose.  Head - Human Capital Management Nilesh Bhatia  Chartered Accountant, Lead Assessor ISO 9000, Six Sigma Trained, Trained on Situational Leadership, Trained on interviewing skills and Whole Message Model.  Over two decades of international, multi-cultural experience in finance and human resources viz. internal audit, accounting operations, accounting process review & re-designing, risk management, business solutioning, six sigma projects, talent acquisition, talent retention, organization design/redesigning, compensation and appraisal processing, employee and customer satisfaction surveys, knowledge management and finance services.  Worked with Citicorp/MGF, India Glycol, Delphi, American Express India, American Express USA, Fidelity International and Macquarie Global Finance Services India. 29
  • 30. Our team Credentials  Co-founder- Riskpro Rajesh Jhalani  B.Com, FCA  Senior Partner with 48 year old Delhi based Chartered Accountant firm, Mehrotra and Mehrotra  Over 19 years of experience in the field of Audit, Taxation, Company law matters.  Major clients served are NTPC, BHEL, Bank of India, PNB, Airport Authority of India etc.  Specialist Risk Consultant – ERP & IT Compliance  SAP Certified, MBA (Finance), SAP Security trained (from SAP India), SAP GRC Access Gourav Ladha Controls trained (from SAP India)  Over 7 years of experience working in the area of ERP/IT Risk advisory, primarily focusing on SAP, for ‘Fortune 500’ clients in around 8 countries including US, UK, UAE, Hong Kong, etc  Specializes in SAP Risk & Controls Advisory, SAP Business Process Controls Audit, SAP Security & Segregation of Duties Control Audit, ERP Trainings,  Strong Industry experiences ranging from Beverages, Insurance, Energy, FMCG, Pharmaceutical, Retail, Telecommunication to IT Services  Worked for risk advisory teams of reputed organizations like Ernst & Young, EXL Services 30
  • 31. RESUMES - Our team Credentials Executive Vice President – Risk Management ( Banking & Financial Services)  A hands-on banking professional {BSc (Mathematics), CAIIB} with considerable domestic and international experience Kashi Banerjee  An aggregate experience of 24+ years across industry, mainly BFSI in several functional areas including Retail and Commercial Banking, Corporate Lending, team member of the Business Process Re-Engineering project (BPR); conceptualizing and setting up shared services centres for centralized operations for the Bank in India.  Management through ERM framework overseeing all key areas of the business through various Operational Risk tools like KRI / RCSA matrices. Managing of major project implementation of Basel II and Compliance risk framework  Directing, reviewing and advising Board of Directors on various compliance issues and representing the bank to the Central Bank regulatory offices.  Worked for ANZ Grindlays Bank, Standard Chartered, Bahraini Saudi Bank and Dubai Holdings ( subsidiary) Consultant – Information Security & IT Governance Anjay Agarwal  LLB, CA, CISA, CWA, CS, CFE and others  Over 15 years of experience in the field of Audit, Taxation, Investigations.  Specializing in the field of Systems Audit, Cybrex Audit, Computer Crime Investigations, IS Forensics  International Committee Member of Governmental and Regulatory Agencies Board and Academic Relations Committee of ISACA, USA 31
  • 32. RESUMES - Our team Credentials Executive Vice President – Risk Management ( Banking & Financial Services) Vijayan Govindarajan  Professional Risk Manager with considerable domestic and international experience  An aggregate experience of 30 + years across industry, mainly Banking in several functional areas including Wholesale Credit Risk, Operational Risk, Trade Finance , Retail Banking and Islamic Financial Services.  Track record of setting up of excellence in the set-up, and management of credit and operational risk, compliance and credit administration functions in retail, commercial , Islamic Banking and offshore banking entities in the Middle East.  Key strength includes Corporate Credits, Risk Management in IT, implementation of Risk Management module in core banking Bank’s Policies, procedures, Country Risk. Played an active role in 3 core banking software implementations  Worked for a Private Sector Bank in India, ABN AMRO Bank, Bahrain, Bank Muscat Bahrain and BMI Bank Bahrain as AGM Risk Management.  Specialist Risk Consultant – ERP & IT Compliance Gourav Ladha  SAP Certified, MBA (Finance), SAP Security trained (from SAP India), SAP GRC Access Controls trained (from SAP India)  Over 7 years of experience working in the area of ERP/IT Risk advisory, primarily focusing on SAP, for ‘Fortune 500’ clients in around 8 countries including US, UK, UAE, Hong Kong, etc  Specializes in SAP Risk & Controls Advisory, SAP Business Process Controls Audit, SAP Security & Segregation of Duties Control Audit, ERP Trainings,  Strong Industry experiences ranging from Beverages, Insurance, Energy, FMCG, Pharmaceutical, Retail, Telecommunication to IT Services  Worked for risk advisory teams of reputed organizations like Ernst & Young, EXL Services 32
  • 33. RESUMES - Our team Credentials  Vice President & Head – IT Risk Advisory Ravikiran Bhandari  Over 14+ Years of Experience in Information Security and Risk Management & CISM certified  Headed the Global Information Security team of Daimler (Mercedes-Benz) Worldwide at Bangalore for 9 years, previously worked at organization like Wipro, Bangalore Labs  Multi-sector experience including Banking, Insurance, Finance, Energy, Manufacturing, Retail, Hi-Tech & Telecom, and Automobile  Well known Ethical hacker: Was featured in BusinessWorld Magazine in an article about leading ethical hackers in India and published several articles in Print and Online Media  Rich experience in Information Security Audits across Corporations, 3rd Party Suppliers, Joint Ventures across several countries in the world including US, UK, China, Germany Vice President – Legal Risk Advisory Aashish Shrivastav   B.B.A. LL.B. (Hons.)  About half a decade experience in legal services to client’s with respect to Contract and Commercial Laws, Joint Ventures, Inbound & Outbound Investments, Private Equity Investment Transactions, Real Estate & Infrastructure, Energy and General Corporate.  Have advised various social enterprises and start ups in setting up business in India.  Worked for the leading law firms of India such as FoxMandal Little. 33
  • 34. RESUMES - Our team Credentials  Vice President – Riskpro India Phanindra Prakash  FCA [India], ACMA [India], CFE [USA], CertIFRS [UK]  Over 16 years of extensive consulting experience which includes financial & systems audit, process transformation, implementation of internal controls, SOX compliance, fraud audits & due diligence, US-India taxation  Engaged in consulting roles as trusted advisor to finance, internal audit and information technology executives of multiple Fortune 1000 companies with project sites in US, Canada, Europe & Asia  Worked with E&Y and Deloitte Consulting in USA  Some of the major clients served internationally are GE Capital, UBS, McKesson, Eaton, Imation, Albertsons,  EVP and Head – Telecom Risk Advisory  M.Tech, IIT Kharagpur, India; IES; Doctoral study, research and teaching in Linkpoing University/Sweden; Lead Auditor (BVQI). Asok Sit  Over 30 years on International experience in networks and mobile Handsets from top global companies /institutes like ISRO, Ericsson, Nokia, Nokia Siemens Networks and based mostly in its head quarter locations in India, EU, USA.  Expertise: Setting up capability, behaviour, culture in turning Risk, Quality, Innovation for competitive advantage, customer delight and sustainability; key skill sets are Engagement, Handholding, Coaching, Mentoring and lot of best practices, benchmarking/standards like CMMI, TL9000, Six Sigma, ISO, SAS 70 etc. 34
  • 35. RESUMES - PARTNERSHIPS  Specialist Risk Consultant – Business Continuity Andrew Hiles  Founder and 15-year Chairman of Survive, the first international user group for Business Continuity professionals  Founding director and first Fellow of the Business Continuity Institute  Over 25 years international consulting expertise in Risk, Crisis, Emergency, Incident, and Business Continuity and ICT Disaster Recovery Management  Multi-sector experience including Banking, Insurance, Finance, Oil, Gas, Energy, Manufacturing, Retail, Hi-Tech & Telecom  Western Press Award for services to business, 1994; BCI/CIR nomination for lifetime achievement in BC, 1999, London; inducted into BC Hall of Fame by CPM magazine, 2004, Washington DC.  Specialist Risk Consultant – Enterprise Risk Management Chris E. Mandel  Highly skilled risk and insurance professional with 25 years of experience designing, developing and implementing large, global corporate risk management programs for Fortune 500 firms.  Principal Consultant and Founder - Excellence in Risk Management, LLC. (Texas, USA) Co- founder and EVP, Professional Services, rPM3 Solutions, LLC (Maryland, USA).  Past experiences include Head of Global Risk Management for USAA, PepsiCo/Tricon Global and American National Red Cross  Additional risk and insurance experience at Verizon Corp,. Marsh USA and Liberty Mutual Insurance Co.  2004 Risk Manager of the Year – 2007 recipient of the Alexander Hamilton Award for “Excellence in ERM” (at USAA) – former President, Risk and Insurance Management Society, Inc. 35
  • 36. RESUMES - Advisors Credentials  Founder partner of Mehrotra and Mehrotra, a 48 year old CA firm in India Mr. MP Mehrorta  B.Com, FCA, LLB  Over 48 years of experience in audits, taxation, legal matters, loan syndication etc.  Trustee of Cochin Port Trust, Member of Task Force for MOUs, Ministry of Heavy Industries & Public Enterprises, Govt. of India, Ex- Member of Central Board of Trustees, Employees’ Provident Fund Organisation (EPFO), Ministry of Labour, Govt. of India, New Delhi.  Ex - Director, Canara Bank  Practicing chartered accountant in Delhi  CA, ICWA Mr. PK Gupta  Over 35 years of professional experience.  Trustee, Kargil Shaheed Smarak Samiti  Hon. Treasurer, World Academy of Spiritual Sciences (WASS).  Panel Arbitrator, International Centre for Alternative Dispute Resolution  Arbitrator, Cement Corporation of India  Arbitrator, Bombay Stock Exchange Limited  Arbitrator, Central Depository Services (India) Limited  Arbitrator’s Panel of Indian Council of Arbitration 36
  • 37. Key Contacts Corporate Mumbai Delhi Bangalore Riskpro India Manoj Jain Rahul Bhan Casper Abraham Ventures (P) Limited Director Director Director M- 98337 67114 M- 99680 05042 M- 98450 61870 manoj.jain@riskpro.in rahul.bhan@riskpro.in casper.abraham@riskpro.in info@riskpro.in www.riskpro.in Sivaramakrishnan Hemant Seigell Vijayan Govindarajan President – Banking & FS SVP – Risk Management EVP – Risk Management C 561, Defence colony M- 98690 19311 M- 99536 97905 M- 99166 63652 New Delhi 110024 smaran.iyer@riskpro.in hemant.seigell@riskpro.in vijayan.govindarajan@riskpro.in Ahmedabad Pune Kolkata Gurgaon Maulik Manakiwala M.L. Jain Kashi Banerjee Nilesh Bhatia Associate Firm Principal – Strategy Risk EVP – Risk Management Head – Human Capital Mgt. M – 98256 40046 M- 98220 11987 M- 98304 75375 M- 98182 93434 mljain@riskpro.in kashi.banerjee@riskpro.in nilesh.bhatia@riskpro.in Gourav Ladha Sap Risk Advisory M- 97129 52955 Salem Ghaziabad Agra Hyderabad Chandrasekeran R Gupta Alok Kumar Agarwal Phanindra Prakash Recruitment franchisee Head – Insurance Risk Associate Firm Member Firm M – 94435 99132 M- 98101 07387 M- 99971 65253 M- 95500 61616 Copyright- © 2012 Riskpro ,India .All rights reserved. 37
  • 38. Key Contacts (Continued) Corporate Bangalore Gurgaon Riskpro India Ravikiran Bhandari Asok Sit Ventures (P) Limited VP – IT Risk Advisory EVP, Head – Telecom Risk Advisory M- 99001 69562 M- 98105 03463 info@riskpro.in ravikiran.bhandari@riskpro.in www.riskpro.in asok.sit@riskpro.in C 561, Defence colony New Delhi 110024 Copyright- © 2012 Riskpro ,India .All rights reserved. 38