SlideShare a Scribd company logo
EVOLVE BEYOND
THE THIRD LINE
INTEGRATING AUDIT & RISK
FOR GREATER AGILITY, VISIBILITY & EFFECTIVENESS
PANELISTS
Patrick Potter
GRC Strategist
RSA Archer
@pnpotter1017
Kirk Hogan
COO
Iceberg Networks
@KW_Hogan
Moderator:
Glen Gower, Iceberg Networks
Patrick Potter
@pnpotter1017
Kirk Hogan
@KW_Hogan
AGENDA
1 What are today’s IA challenges?
2 Why do these challenges exist?
3 How can we evolve?
Patrick Potter
@pnpotter1017
Kirk Hogan
@KW_Hogan
1. TODAY’S INTERNAL AUDIT CHALLENGES
•  Rapidly changing risk environment
•  Audit teams are slow, audit plans are static
•  Audit engagements are past-looking (vs. forward looking)
•  Limited budget & resources
•  Compliance-driven vs. risk-driven
Patrick Potter
@pnpotter1017
Kirk Hogan
@KW_Hogan
WHAT POSES THE GREATEST CHALLENGE?
Source: KPMG’s Audit Committee Institute –“Is Everything Under
Control?” 2017 Global Audit Committee Pulse Survey
41%
Effectiveness of the risk
management program 34% Legal/regulatory compliance
28%
Managing cyber
security risks 28%
Maintaining the control
environment
24%
Tone at the top &
organizational culture
Patrick Potter
@pnpotter1017
Kirk Hogan
@KW_Hogan
HOW CAN INTERNAL AUDIT MAXIMIZE VALUE?
Source: KPMG’s Audit Committee Institute –“Is Everything Under
Control?” 2017 Global Audit Committee Pulse Survey
56%
Expand audit plan on key
areas of risk (e.g. cyber,
operational, technology)
53% Maintain flexibility in the
audit plan
49%
Expand the audit plan on
effectiveness of risk
management processes
Patrick Potter
@pnpotter1017
Kirk Hogan
@KW_Hogan
2. WHY DO THESE CHALLENGES EXIST?
•  Industry inertia
•  External auditor & regulator expectations
•  IA independence challenge
•  Heavy regulatory burden
Patrick Potter
@pnpotter1017
Kirk Hogan
@KW_Hogan
3. HOW CAN WE EVOLVE?
ü  Integrate IA + GRC
ü  Leverage the 2nd Line of Defense
ü  Dynamic / Agile risk-driven audit plans
ü  Continuous control monitoring
ü  Data Analytics
Patrick Potter
@pnpotter1017
Kirk Hogan
@KW_Hogan
WHAT IS INTEGRATED GRC?
Business
Continuity
Management
Vendor Risk
Management
Enterprise
Legal
Management
IT Risk
Management
Corporate
Compliance
Audit
Management
Operational
Risk
Management
Integrated risk management…
recognizes the interconnected
nature of operational risk across
an enterprise
Patrick Potter
@pnpotter1017
Kirk Hogan
@KW_Hogan
1st Line of Defense 2nd Line of Defense 3rd Line of Defense
LEVERAGE THE 2ND LINE OF DEFENSE
Adapted from ECIIA/FERMA Guidance on the 8th EU company Law Directive, article 41
Management
Controls
Internal
Control
Measures
Internal Audit
Financial Control
Security
Risk Management
Quality
Inspection
Compliance
Senior Management
Governing Body / Board / Audit Committee
ExternalAudit
Regulator
Patrick Potter
@pnpotter1017
Kirk Hogan
@KW_Hogan
AGILITY
(PWC 2017 State of the Internal Audit Profession Study)
“To meet business expectation, Internal Audit needs to be able
to execute more agile audits. Speed and flexibility are key–
getting the work done and reported quickly; less of audits
running on for weeks.”
–Mike Taylor, Head of Global Internal Audit, Experian plc
Patrick Potter
@pnpotter1017
Kirk Hogan
@KW_Hogan
AGILITY
Source: CBOK Practitioner Survey, 2015
63%
of CAEs update audit
plans no more than
twice per year
15%
have ‘highly flexible’
plans
31%
don’t update risk
assessments
21%
deploy continuous risk
assessments
Patrick Potter
@pnpotter1017
Kirk Hogan
@KW_Hogan
BENEFITS OF AGILE IA
Source: PWC 2017 State of the Internal Audit Profession Study
73%
change course and
evaluate risk at the
speed required by the
business
63%
have increased the
frequency of audit plan
development and
modification
47%
Have increased the
use of data mining &
data analytics for
continuous
monitoring of trends
and potential impacts
of disruption
Patrick Potter
@pnpotter1017
Kirk Hogan
@KW_Hogan
VISIBILITY & REPORTING
Source: Deloitte’s Global Chief Audit Executive Survey, 2016
Static Word Processing Reports Static Presentations Dynamic Visualization Tools Dynamic Analytics Tools
How will you communicate – today vs. future?
Today Future
Patrick Potter
@pnpotter1017
Kirk Hogan
@KW_Hogan
RECAP: INTERNAL AUDIT CHALLENGES
•  Rapidly changing risk environment
•  Audit teams are slow, audit plans are static
•  Audit engagements are past-looking (vs. forward looking)
•  Limited budget & resources
•  Compliance-driven vs. risk-driven
Patrick Potter
@pnpotter1017
Kirk Hogan
@KW_Hogan
Risk-based
audit
(prioritization)
More efficient
audit process
Fewer
workarounds
Visibility &
reporting
(metrics,
stats)
Enable
“self-serve”
Tracking of
issues &
findings
Integrate
functions –
audit,
compliance,
risk
Address
regulator
findings re:
process
A GRC SOLUTION FOR AUDIT
Patrick Potter
@pnpotter1017
Kirk Hogan
@KW_Hogan
RSA ARCHER
IT and Security Risk
Management
Third Party
Governance
Audit
Management
Regulatory and
Corporate
Compliance
Management
Business Resiliency
Patrick Potter
@pnpotter1017
Kirk Hogan
@KW_Hogan
BENEFITS OF AUDIT + GRC
Cross business lines &
organizational boundaries for
Collaboration
Define & enforce risk
ownership through
Accountability
Automate processes for
Efficiencies
Consolidate data and
enable risk Analytics
& Visibility
RISK INTELLIGENCE
ACADEMY
icebergnetworks.com
EVOLVE BEYOND
THE THIRD LINE
THANK YOU!
icebergnetworks.com/audit-webinar
info@icebergnetworks.com • 855-595-0808 x261

More Related Content

Similar to Webinar: Evolve Beyond the Third Line

Evolve or Die: Healthcare IT Testing | QASymphony Webinar
Evolve or Die: Healthcare IT Testing | QASymphony WebinarEvolve or Die: Healthcare IT Testing | QASymphony Webinar
Evolve or Die: Healthcare IT Testing | QASymphony Webinar
QASymphony
 
FuturePMO 2018 - Michael Cooch PwC - The Future of Work - A Closer Look at Ar...
FuturePMO 2018 - Michael Cooch PwC - The Future of Work - A Closer Look at Ar...FuturePMO 2018 - Michael Cooch PwC - The Future of Work - A Closer Look at Ar...
FuturePMO 2018 - Michael Cooch PwC - The Future of Work - A Closer Look at Ar...
Wellingtone
 
Developing PMO Maturity - Wellingtone | FuturePMO 2022.pdf
Developing PMO Maturity - Wellingtone | FuturePMO 2022.pdfDeveloping PMO Maturity - Wellingtone | FuturePMO 2022.pdf
Developing PMO Maturity - Wellingtone | FuturePMO 2022.pdf
Wellingtone
 
PwC Trends in the workforce
PwC Trends in the workforcePwC Trends in the workforce
PwC Trends in the workforce
PwC
 
State of Georgia
State of GeorgiaState of Georgia
State of Georgia
Computer Aid, Inc
 
Touchstone Research for Internal Audit 2020 – A Look at the Now and Tomorrow ...
Touchstone Research for Internal Audit 2020 – A Look at the Now and Tomorrow ...Touchstone Research for Internal Audit 2020 – A Look at the Now and Tomorrow ...
Touchstone Research for Internal Audit 2020 – A Look at the Now and Tomorrow ...
Jim Kaplan CIA CFE
 
pc15222_brochure
pc15222_brochurepc15222_brochure
pc15222_brochure
Amy Ripston
 
2022 gLOCAL Khulisa QASP Presentation
2022 gLOCAL Khulisa QASP Presentation2022 gLOCAL Khulisa QASP Presentation
2022 gLOCAL Khulisa QASP Presentation
Khulisa Management Services
 
Project Management Office Vol. 1 - One Page Gold Vol. 1
Project Management Office Vol. 1  - One Page Gold Vol. 1Project Management Office Vol. 1  - One Page Gold Vol. 1
Project Management Office Vol. 1 - One Page Gold Vol. 1
ken martin
 
Confessions of a CDO - The Evolving Role of the Chief Data Officer
Confessions of a CDO - The Evolving Role of the Chief Data OfficerConfessions of a CDO - The Evolving Role of the Chief Data Officer
Confessions of a CDO - The Evolving Role of the Chief Data Officer
DATAVERSITY
 
Transforming compliance and audit management with ServiceNow
Transforming compliance and audit management with ServiceNowTransforming compliance and audit management with ServiceNow
Transforming compliance and audit management with ServiceNow
Iceberg Networks Corporation
 
Changing Landscape of Vendors, Technologies and Influences in the Mortgage In...
Changing Landscape of Vendors, Technologies and Influences in the Mortgage In...Changing Landscape of Vendors, Technologies and Influences in the Mortgage In...
Changing Landscape of Vendors, Technologies and Influences in the Mortgage In...
Craig Leabig
 
Why are value for money and performance audits important for government (publ...
Why are value for money and performance audits important for government (publ...Why are value for money and performance audits important for government (publ...
Why are value for money and performance audits important for government (publ...
paul young cpa, cga
 
How To Improve Your Organization's PPM Maturity Level
How To Improve Your Organization's PPM Maturity LevelHow To Improve Your Organization's PPM Maturity Level
How To Improve Your Organization's PPM Maturity Level
Productivity Intelligence Institute
 
World Quality Report 2015 - 16
World Quality Report 2015 - 16World Quality Report 2015 - 16
World Quality Report 2015 - 16
Piotr Kula
 
Project management professional exam outline
Project management professional exam outlineProject management professional exam outline
Project management professional exam outline
Dadunoor Kamati
 
Measuring Performance in a Future Media World
Measuring Performance in a Future Media WorldMeasuring Performance in a Future Media World
Measuring Performance in a Future Media World
Origami Logic
 
Maksym Vyshnivetskyi: PMO KPIs ( UA ).
Maksym  Vyshnivetskyi:  PMO KPIs ( UA ).Maksym  Vyshnivetskyi:  PMO KPIs ( UA ).
Maksym Vyshnivetskyi: PMO KPIs ( UA ).
Lviv Startup Club
 
InfoSec: Evolve Thyself to Keep Pace in the Age of DevOps
InfoSec: Evolve Thyself to Keep Pace in the Age of DevOpsInfoSec: Evolve Thyself to Keep Pace in the Age of DevOps
InfoSec: Evolve Thyself to Keep Pace in the Age of DevOps
VMware Tanzu
 
Qa focus 2015 2020
Qa focus 2015 2020Qa focus 2015 2020
Qa focus 2015 2020
anuvip
 

Similar to Webinar: Evolve Beyond the Third Line (20)

Evolve or Die: Healthcare IT Testing | QASymphony Webinar
Evolve or Die: Healthcare IT Testing | QASymphony WebinarEvolve or Die: Healthcare IT Testing | QASymphony Webinar
Evolve or Die: Healthcare IT Testing | QASymphony Webinar
 
FuturePMO 2018 - Michael Cooch PwC - The Future of Work - A Closer Look at Ar...
FuturePMO 2018 - Michael Cooch PwC - The Future of Work - A Closer Look at Ar...FuturePMO 2018 - Michael Cooch PwC - The Future of Work - A Closer Look at Ar...
FuturePMO 2018 - Michael Cooch PwC - The Future of Work - A Closer Look at Ar...
 
Developing PMO Maturity - Wellingtone | FuturePMO 2022.pdf
Developing PMO Maturity - Wellingtone | FuturePMO 2022.pdfDeveloping PMO Maturity - Wellingtone | FuturePMO 2022.pdf
Developing PMO Maturity - Wellingtone | FuturePMO 2022.pdf
 
PwC Trends in the workforce
PwC Trends in the workforcePwC Trends in the workforce
PwC Trends in the workforce
 
State of Georgia
State of GeorgiaState of Georgia
State of Georgia
 
Touchstone Research for Internal Audit 2020 – A Look at the Now and Tomorrow ...
Touchstone Research for Internal Audit 2020 – A Look at the Now and Tomorrow ...Touchstone Research for Internal Audit 2020 – A Look at the Now and Tomorrow ...
Touchstone Research for Internal Audit 2020 – A Look at the Now and Tomorrow ...
 
pc15222_brochure
pc15222_brochurepc15222_brochure
pc15222_brochure
 
2022 gLOCAL Khulisa QASP Presentation
2022 gLOCAL Khulisa QASP Presentation2022 gLOCAL Khulisa QASP Presentation
2022 gLOCAL Khulisa QASP Presentation
 
Project Management Office Vol. 1 - One Page Gold Vol. 1
Project Management Office Vol. 1  - One Page Gold Vol. 1Project Management Office Vol. 1  - One Page Gold Vol. 1
Project Management Office Vol. 1 - One Page Gold Vol. 1
 
Confessions of a CDO - The Evolving Role of the Chief Data Officer
Confessions of a CDO - The Evolving Role of the Chief Data OfficerConfessions of a CDO - The Evolving Role of the Chief Data Officer
Confessions of a CDO - The Evolving Role of the Chief Data Officer
 
Transforming compliance and audit management with ServiceNow
Transforming compliance and audit management with ServiceNowTransforming compliance and audit management with ServiceNow
Transforming compliance and audit management with ServiceNow
 
Changing Landscape of Vendors, Technologies and Influences in the Mortgage In...
Changing Landscape of Vendors, Technologies and Influences in the Mortgage In...Changing Landscape of Vendors, Technologies and Influences in the Mortgage In...
Changing Landscape of Vendors, Technologies and Influences in the Mortgage In...
 
Why are value for money and performance audits important for government (publ...
Why are value for money and performance audits important for government (publ...Why are value for money and performance audits important for government (publ...
Why are value for money and performance audits important for government (publ...
 
How To Improve Your Organization's PPM Maturity Level
How To Improve Your Organization's PPM Maturity LevelHow To Improve Your Organization's PPM Maturity Level
How To Improve Your Organization's PPM Maturity Level
 
World Quality Report 2015 - 16
World Quality Report 2015 - 16World Quality Report 2015 - 16
World Quality Report 2015 - 16
 
Project management professional exam outline
Project management professional exam outlineProject management professional exam outline
Project management professional exam outline
 
Measuring Performance in a Future Media World
Measuring Performance in a Future Media WorldMeasuring Performance in a Future Media World
Measuring Performance in a Future Media World
 
Maksym Vyshnivetskyi: PMO KPIs ( UA ).
Maksym  Vyshnivetskyi:  PMO KPIs ( UA ).Maksym  Vyshnivetskyi:  PMO KPIs ( UA ).
Maksym Vyshnivetskyi: PMO KPIs ( UA ).
 
InfoSec: Evolve Thyself to Keep Pace in the Age of DevOps
InfoSec: Evolve Thyself to Keep Pace in the Age of DevOpsInfoSec: Evolve Thyself to Keep Pace in the Age of DevOps
InfoSec: Evolve Thyself to Keep Pace in the Age of DevOps
 
Qa focus 2015 2020
Qa focus 2015 2020Qa focus 2015 2020
Qa focus 2015 2020
 

More from Iceberg Networks Corporation

Yes, there is a better way to do vendor risk assessments!
Yes, there is a better way to do vendor risk assessments!Yes, there is a better way to do vendor risk assessments!
Yes, there is a better way to do vendor risk assessments!
Iceberg Networks Corporation
 
How Archer users are leveraging Iceberg APS for a stronger GRC program
How Archer users are leveraging Iceberg APS for a stronger GRC programHow Archer users are leveraging Iceberg APS for a stronger GRC program
How Archer users are leveraging Iceberg APS for a stronger GRC program
Iceberg Networks Corporation
 
WEBINAR: Enhance your perspective of vendor risk with ServiceNow
WEBINAR: Enhance your perspective of vendor risk with ServiceNowWEBINAR: Enhance your perspective of vendor risk with ServiceNow
WEBINAR: Enhance your perspective of vendor risk with ServiceNow
Iceberg Networks Corporation
 
Iceberg Webinar: Adding relevant financial context to your BCM program
Iceberg Webinar: Adding relevant financial context to your BCM programIceberg Webinar: Adding relevant financial context to your BCM program
Iceberg Webinar: Adding relevant financial context to your BCM program
Iceberg Networks Corporation
 
Webinar: Getting a grip on application risk
Webinar: Getting a grip on application riskWebinar: Getting a grip on application risk
Webinar: Getting a grip on application risk
Iceberg Networks Corporation
 
Case study: Getting a grip on application risk
Case study: Getting a grip on application riskCase study: Getting a grip on application risk
Case study: Getting a grip on application risk
Iceberg Networks Corporation
 
Webinar: Vulnerability Management IT can fix it, but the business needs to ow...
Webinar: Vulnerability Management IT can fix it, but the business needs to ow...Webinar: Vulnerability Management IT can fix it, but the business needs to ow...
Webinar: Vulnerability Management IT can fix it, but the business needs to ow...
Iceberg Networks Corporation
 
Solution Brief: Helping prepare for risk & compliance challenges for GDPR
Solution Brief: Helping prepare for risk & compliance challenges for GDPRSolution Brief: Helping prepare for risk & compliance challenges for GDPR
Solution Brief: Helping prepare for risk & compliance challenges for GDPR
Iceberg Networks Corporation
 
RSA-Iceberg Seminar: Building an effective supplier risk management program
RSA-Iceberg Seminar: Building an effective supplier risk management programRSA-Iceberg Seminar: Building an effective supplier risk management program
RSA-Iceberg Seminar: Building an effective supplier risk management program
Iceberg Networks Corporation
 
Solving data publication challenges for even better rsa archer reporting
Solving data publication challenges for even better rsa archer reportingSolving data publication challenges for even better rsa archer reporting
Solving data publication challenges for even better rsa archer reporting
Iceberg Networks Corporation
 

More from Iceberg Networks Corporation (10)

Yes, there is a better way to do vendor risk assessments!
Yes, there is a better way to do vendor risk assessments!Yes, there is a better way to do vendor risk assessments!
Yes, there is a better way to do vendor risk assessments!
 
How Archer users are leveraging Iceberg APS for a stronger GRC program
How Archer users are leveraging Iceberg APS for a stronger GRC programHow Archer users are leveraging Iceberg APS for a stronger GRC program
How Archer users are leveraging Iceberg APS for a stronger GRC program
 
WEBINAR: Enhance your perspective of vendor risk with ServiceNow
WEBINAR: Enhance your perspective of vendor risk with ServiceNowWEBINAR: Enhance your perspective of vendor risk with ServiceNow
WEBINAR: Enhance your perspective of vendor risk with ServiceNow
 
Iceberg Webinar: Adding relevant financial context to your BCM program
Iceberg Webinar: Adding relevant financial context to your BCM programIceberg Webinar: Adding relevant financial context to your BCM program
Iceberg Webinar: Adding relevant financial context to your BCM program
 
Webinar: Getting a grip on application risk
Webinar: Getting a grip on application riskWebinar: Getting a grip on application risk
Webinar: Getting a grip on application risk
 
Case study: Getting a grip on application risk
Case study: Getting a grip on application riskCase study: Getting a grip on application risk
Case study: Getting a grip on application risk
 
Webinar: Vulnerability Management IT can fix it, but the business needs to ow...
Webinar: Vulnerability Management IT can fix it, but the business needs to ow...Webinar: Vulnerability Management IT can fix it, but the business needs to ow...
Webinar: Vulnerability Management IT can fix it, but the business needs to ow...
 
Solution Brief: Helping prepare for risk & compliance challenges for GDPR
Solution Brief: Helping prepare for risk & compliance challenges for GDPRSolution Brief: Helping prepare for risk & compliance challenges for GDPR
Solution Brief: Helping prepare for risk & compliance challenges for GDPR
 
RSA-Iceberg Seminar: Building an effective supplier risk management program
RSA-Iceberg Seminar: Building an effective supplier risk management programRSA-Iceberg Seminar: Building an effective supplier risk management program
RSA-Iceberg Seminar: Building an effective supplier risk management program
 
Solving data publication challenges for even better rsa archer reporting
Solving data publication challenges for even better rsa archer reportingSolving data publication challenges for even better rsa archer reporting
Solving data publication challenges for even better rsa archer reporting
 

Recently uploaded

Creative Web Design Company in Singapore
Creative Web Design Company in SingaporeCreative Web Design Company in Singapore
Creative Web Design Company in Singapore
techboxsqauremedia
 
Easily Verify Compliance and Security with Binance KYC
Easily Verify Compliance and Security with Binance KYCEasily Verify Compliance and Security with Binance KYC
Easily Verify Compliance and Security with Binance KYC
Any kyc Account
 
Unveiling the Dynamic Personalities, Key Dates, and Horoscope Insights: Gemin...
Unveiling the Dynamic Personalities, Key Dates, and Horoscope Insights: Gemin...Unveiling the Dynamic Personalities, Key Dates, and Horoscope Insights: Gemin...
Unveiling the Dynamic Personalities, Key Dates, and Horoscope Insights: Gemin...
my Pandit
 
2022 Vintage Roman Numerals Men Rings
2022 Vintage Roman  Numerals  Men  Rings2022 Vintage Roman  Numerals  Men  Rings
2022 Vintage Roman Numerals Men Rings
aragme
 
The Heart of Leadership_ How Emotional Intelligence Drives Business Success B...
The Heart of Leadership_ How Emotional Intelligence Drives Business Success B...The Heart of Leadership_ How Emotional Intelligence Drives Business Success B...
The Heart of Leadership_ How Emotional Intelligence Drives Business Success B...
Stephen Cashman
 
How to Implement a Strategy: Transform Your Strategy with BSC Designer's Comp...
How to Implement a Strategy: Transform Your Strategy with BSC Designer's Comp...How to Implement a Strategy: Transform Your Strategy with BSC Designer's Comp...
How to Implement a Strategy: Transform Your Strategy with BSC Designer's Comp...
Aleksey Savkin
 
Satta Matka Dpboss Matka Guessing Kalyan Chart Indian Matka Kalyan panel Chart
Satta Matka Dpboss Matka Guessing Kalyan Chart Indian Matka Kalyan panel ChartSatta Matka Dpboss Matka Guessing Kalyan Chart Indian Matka Kalyan panel Chart
Satta Matka Dpboss Matka Guessing Kalyan Chart Indian Matka Kalyan panel Chart
➒➌➎➏➑➐➋➑➐➐Dpboss Matka Guessing Satta Matka Kalyan Chart Indian Matka
 
Company Valuation webinar series - Tuesday, 4 June 2024
Company Valuation webinar series - Tuesday, 4 June 2024Company Valuation webinar series - Tuesday, 4 June 2024
Company Valuation webinar series - Tuesday, 4 June 2024
FelixPerez547899
 
HOW TO START UP A COMPANY A STEP-BY-STEP GUIDE.pdf
HOW TO START UP A COMPANY A STEP-BY-STEP GUIDE.pdfHOW TO START UP A COMPANY A STEP-BY-STEP GUIDE.pdf
HOW TO START UP A COMPANY A STEP-BY-STEP GUIDE.pdf
46adnanshahzad
 
Digital Marketing with a Focus on Sustainability
Digital Marketing with a Focus on SustainabilityDigital Marketing with a Focus on Sustainability
Digital Marketing with a Focus on Sustainability
sssourabhsharma
 
Best Forex Brokers Comparison in INDIA 2024
Best Forex Brokers Comparison in INDIA 2024Best Forex Brokers Comparison in INDIA 2024
Best Forex Brokers Comparison in INDIA 2024
Top Forex Brokers Review
 
Innovation Management Frameworks: Your Guide to Creativity & Innovation
Innovation Management Frameworks: Your Guide to Creativity & InnovationInnovation Management Frameworks: Your Guide to Creativity & Innovation
Innovation Management Frameworks: Your Guide to Creativity & Innovation
Operational Excellence Consulting
 
BeMetals Investor Presentation_June 1, 2024.pdf
BeMetals Investor Presentation_June 1, 2024.pdfBeMetals Investor Presentation_June 1, 2024.pdf
BeMetals Investor Presentation_June 1, 2024.pdf
DerekIwanaka1
 
-- June 2024 is National Volunteer Month --
-- June 2024 is National Volunteer Month ---- June 2024 is National Volunteer Month --
-- June 2024 is National Volunteer Month --
NZSG
 
Organizational Change Leadership Agile Tour Geneve 2024
Organizational Change Leadership Agile Tour Geneve 2024Organizational Change Leadership Agile Tour Geneve 2024
Organizational Change Leadership Agile Tour Geneve 2024
Kirill Klimov
 
Mastering B2B Payments Webinar from BlueSnap
Mastering B2B Payments Webinar from BlueSnapMastering B2B Payments Webinar from BlueSnap
Mastering B2B Payments Webinar from BlueSnap
Norma Mushkat Gaffin
 
Anny Serafina Love - Letter of Recommendation by Kellen Harkins, MS.
Anny Serafina Love - Letter of Recommendation by Kellen Harkins, MS.Anny Serafina Love - Letter of Recommendation by Kellen Harkins, MS.
Anny Serafina Love - Letter of Recommendation by Kellen Harkins, MS.
AnnySerafinaLove
 
Best practices for project execution and delivery
Best practices for project execution and deliveryBest practices for project execution and delivery
Best practices for project execution and delivery
CLIVE MINCHIN
 
Event Report - SAP Sapphire 2024 Orlando - lots of innovation and old challenges
Event Report - SAP Sapphire 2024 Orlando - lots of innovation and old challengesEvent Report - SAP Sapphire 2024 Orlando - lots of innovation and old challenges
Event Report - SAP Sapphire 2024 Orlando - lots of innovation and old challenges
Holger Mueller
 
Income Tax exemption for Start up : Section 80 IAC
Income Tax  exemption for Start up : Section 80 IACIncome Tax  exemption for Start up : Section 80 IAC
Income Tax exemption for Start up : Section 80 IAC
CA Dr. Prithvi Ranjan Parhi
 

Recently uploaded (20)

Creative Web Design Company in Singapore
Creative Web Design Company in SingaporeCreative Web Design Company in Singapore
Creative Web Design Company in Singapore
 
Easily Verify Compliance and Security with Binance KYC
Easily Verify Compliance and Security with Binance KYCEasily Verify Compliance and Security with Binance KYC
Easily Verify Compliance and Security with Binance KYC
 
Unveiling the Dynamic Personalities, Key Dates, and Horoscope Insights: Gemin...
Unveiling the Dynamic Personalities, Key Dates, and Horoscope Insights: Gemin...Unveiling the Dynamic Personalities, Key Dates, and Horoscope Insights: Gemin...
Unveiling the Dynamic Personalities, Key Dates, and Horoscope Insights: Gemin...
 
2022 Vintage Roman Numerals Men Rings
2022 Vintage Roman  Numerals  Men  Rings2022 Vintage Roman  Numerals  Men  Rings
2022 Vintage Roman Numerals Men Rings
 
The Heart of Leadership_ How Emotional Intelligence Drives Business Success B...
The Heart of Leadership_ How Emotional Intelligence Drives Business Success B...The Heart of Leadership_ How Emotional Intelligence Drives Business Success B...
The Heart of Leadership_ How Emotional Intelligence Drives Business Success B...
 
How to Implement a Strategy: Transform Your Strategy with BSC Designer's Comp...
How to Implement a Strategy: Transform Your Strategy with BSC Designer's Comp...How to Implement a Strategy: Transform Your Strategy with BSC Designer's Comp...
How to Implement a Strategy: Transform Your Strategy with BSC Designer's Comp...
 
Satta Matka Dpboss Matka Guessing Kalyan Chart Indian Matka Kalyan panel Chart
Satta Matka Dpboss Matka Guessing Kalyan Chart Indian Matka Kalyan panel ChartSatta Matka Dpboss Matka Guessing Kalyan Chart Indian Matka Kalyan panel Chart
Satta Matka Dpboss Matka Guessing Kalyan Chart Indian Matka Kalyan panel Chart
 
Company Valuation webinar series - Tuesday, 4 June 2024
Company Valuation webinar series - Tuesday, 4 June 2024Company Valuation webinar series - Tuesday, 4 June 2024
Company Valuation webinar series - Tuesday, 4 June 2024
 
HOW TO START UP A COMPANY A STEP-BY-STEP GUIDE.pdf
HOW TO START UP A COMPANY A STEP-BY-STEP GUIDE.pdfHOW TO START UP A COMPANY A STEP-BY-STEP GUIDE.pdf
HOW TO START UP A COMPANY A STEP-BY-STEP GUIDE.pdf
 
Digital Marketing with a Focus on Sustainability
Digital Marketing with a Focus on SustainabilityDigital Marketing with a Focus on Sustainability
Digital Marketing with a Focus on Sustainability
 
Best Forex Brokers Comparison in INDIA 2024
Best Forex Brokers Comparison in INDIA 2024Best Forex Brokers Comparison in INDIA 2024
Best Forex Brokers Comparison in INDIA 2024
 
Innovation Management Frameworks: Your Guide to Creativity & Innovation
Innovation Management Frameworks: Your Guide to Creativity & InnovationInnovation Management Frameworks: Your Guide to Creativity & Innovation
Innovation Management Frameworks: Your Guide to Creativity & Innovation
 
BeMetals Investor Presentation_June 1, 2024.pdf
BeMetals Investor Presentation_June 1, 2024.pdfBeMetals Investor Presentation_June 1, 2024.pdf
BeMetals Investor Presentation_June 1, 2024.pdf
 
-- June 2024 is National Volunteer Month --
-- June 2024 is National Volunteer Month ---- June 2024 is National Volunteer Month --
-- June 2024 is National Volunteer Month --
 
Organizational Change Leadership Agile Tour Geneve 2024
Organizational Change Leadership Agile Tour Geneve 2024Organizational Change Leadership Agile Tour Geneve 2024
Organizational Change Leadership Agile Tour Geneve 2024
 
Mastering B2B Payments Webinar from BlueSnap
Mastering B2B Payments Webinar from BlueSnapMastering B2B Payments Webinar from BlueSnap
Mastering B2B Payments Webinar from BlueSnap
 
Anny Serafina Love - Letter of Recommendation by Kellen Harkins, MS.
Anny Serafina Love - Letter of Recommendation by Kellen Harkins, MS.Anny Serafina Love - Letter of Recommendation by Kellen Harkins, MS.
Anny Serafina Love - Letter of Recommendation by Kellen Harkins, MS.
 
Best practices for project execution and delivery
Best practices for project execution and deliveryBest practices for project execution and delivery
Best practices for project execution and delivery
 
Event Report - SAP Sapphire 2024 Orlando - lots of innovation and old challenges
Event Report - SAP Sapphire 2024 Orlando - lots of innovation and old challengesEvent Report - SAP Sapphire 2024 Orlando - lots of innovation and old challenges
Event Report - SAP Sapphire 2024 Orlando - lots of innovation and old challenges
 
Income Tax exemption for Start up : Section 80 IAC
Income Tax  exemption for Start up : Section 80 IACIncome Tax  exemption for Start up : Section 80 IAC
Income Tax exemption for Start up : Section 80 IAC
 

Webinar: Evolve Beyond the Third Line

  • 1. EVOLVE BEYOND THE THIRD LINE INTEGRATING AUDIT & RISK FOR GREATER AGILITY, VISIBILITY & EFFECTIVENESS
  • 2. PANELISTS Patrick Potter GRC Strategist RSA Archer @pnpotter1017 Kirk Hogan COO Iceberg Networks @KW_Hogan Moderator: Glen Gower, Iceberg Networks
  • 3. Patrick Potter @pnpotter1017 Kirk Hogan @KW_Hogan AGENDA 1 What are today’s IA challenges? 2 Why do these challenges exist? 3 How can we evolve?
  • 4. Patrick Potter @pnpotter1017 Kirk Hogan @KW_Hogan 1. TODAY’S INTERNAL AUDIT CHALLENGES •  Rapidly changing risk environment •  Audit teams are slow, audit plans are static •  Audit engagements are past-looking (vs. forward looking) •  Limited budget & resources •  Compliance-driven vs. risk-driven
  • 5. Patrick Potter @pnpotter1017 Kirk Hogan @KW_Hogan WHAT POSES THE GREATEST CHALLENGE? Source: KPMG’s Audit Committee Institute –“Is Everything Under Control?” 2017 Global Audit Committee Pulse Survey 41% Effectiveness of the risk management program 34% Legal/regulatory compliance 28% Managing cyber security risks 28% Maintaining the control environment 24% Tone at the top & organizational culture
  • 6. Patrick Potter @pnpotter1017 Kirk Hogan @KW_Hogan HOW CAN INTERNAL AUDIT MAXIMIZE VALUE? Source: KPMG’s Audit Committee Institute –“Is Everything Under Control?” 2017 Global Audit Committee Pulse Survey 56% Expand audit plan on key areas of risk (e.g. cyber, operational, technology) 53% Maintain flexibility in the audit plan 49% Expand the audit plan on effectiveness of risk management processes
  • 7. Patrick Potter @pnpotter1017 Kirk Hogan @KW_Hogan 2. WHY DO THESE CHALLENGES EXIST? •  Industry inertia •  External auditor & regulator expectations •  IA independence challenge •  Heavy regulatory burden
  • 8. Patrick Potter @pnpotter1017 Kirk Hogan @KW_Hogan 3. HOW CAN WE EVOLVE? ü  Integrate IA + GRC ü  Leverage the 2nd Line of Defense ü  Dynamic / Agile risk-driven audit plans ü  Continuous control monitoring ü  Data Analytics
  • 9. Patrick Potter @pnpotter1017 Kirk Hogan @KW_Hogan WHAT IS INTEGRATED GRC? Business Continuity Management Vendor Risk Management Enterprise Legal Management IT Risk Management Corporate Compliance Audit Management Operational Risk Management Integrated risk management… recognizes the interconnected nature of operational risk across an enterprise
  • 10. Patrick Potter @pnpotter1017 Kirk Hogan @KW_Hogan 1st Line of Defense 2nd Line of Defense 3rd Line of Defense LEVERAGE THE 2ND LINE OF DEFENSE Adapted from ECIIA/FERMA Guidance on the 8th EU company Law Directive, article 41 Management Controls Internal Control Measures Internal Audit Financial Control Security Risk Management Quality Inspection Compliance Senior Management Governing Body / Board / Audit Committee ExternalAudit Regulator
  • 11. Patrick Potter @pnpotter1017 Kirk Hogan @KW_Hogan AGILITY (PWC 2017 State of the Internal Audit Profession Study) “To meet business expectation, Internal Audit needs to be able to execute more agile audits. Speed and flexibility are key– getting the work done and reported quickly; less of audits running on for weeks.” –Mike Taylor, Head of Global Internal Audit, Experian plc
  • 12. Patrick Potter @pnpotter1017 Kirk Hogan @KW_Hogan AGILITY Source: CBOK Practitioner Survey, 2015 63% of CAEs update audit plans no more than twice per year 15% have ‘highly flexible’ plans 31% don’t update risk assessments 21% deploy continuous risk assessments
  • 13. Patrick Potter @pnpotter1017 Kirk Hogan @KW_Hogan BENEFITS OF AGILE IA Source: PWC 2017 State of the Internal Audit Profession Study 73% change course and evaluate risk at the speed required by the business 63% have increased the frequency of audit plan development and modification 47% Have increased the use of data mining & data analytics for continuous monitoring of trends and potential impacts of disruption
  • 14. Patrick Potter @pnpotter1017 Kirk Hogan @KW_Hogan VISIBILITY & REPORTING Source: Deloitte’s Global Chief Audit Executive Survey, 2016 Static Word Processing Reports Static Presentations Dynamic Visualization Tools Dynamic Analytics Tools How will you communicate – today vs. future? Today Future
  • 15. Patrick Potter @pnpotter1017 Kirk Hogan @KW_Hogan RECAP: INTERNAL AUDIT CHALLENGES •  Rapidly changing risk environment •  Audit teams are slow, audit plans are static •  Audit engagements are past-looking (vs. forward looking) •  Limited budget & resources •  Compliance-driven vs. risk-driven
  • 16. Patrick Potter @pnpotter1017 Kirk Hogan @KW_Hogan Risk-based audit (prioritization) More efficient audit process Fewer workarounds Visibility & reporting (metrics, stats) Enable “self-serve” Tracking of issues & findings Integrate functions – audit, compliance, risk Address regulator findings re: process A GRC SOLUTION FOR AUDIT
  • 17. Patrick Potter @pnpotter1017 Kirk Hogan @KW_Hogan RSA ARCHER IT and Security Risk Management Third Party Governance Audit Management Regulatory and Corporate Compliance Management Business Resiliency
  • 18. Patrick Potter @pnpotter1017 Kirk Hogan @KW_Hogan BENEFITS OF AUDIT + GRC Cross business lines & organizational boundaries for Collaboration Define & enforce risk ownership through Accountability Automate processes for Efficiencies Consolidate data and enable risk Analytics & Visibility
  • 20. EVOLVE BEYOND THE THIRD LINE THANK YOU! icebergnetworks.com/audit-webinar info@icebergnetworks.com • 855-595-0808 x261