Up COSO-Based IA Sarbanes-Oxley Best Practices ERM Soft Controls Operational New Auditor Leadership Relationship Report

 

Implementing Enterprise Risk Management: A Practical Approach
(1-2 days)

What you will gain from this seminar:

bullet

Understand the COSO ERM Framework

bullet

Understand and practice the most current risk management techniques

bullet

Be able to apply current risk management techniques to your organization

bullet

Be prepared to play a leading role in your organization’s management of business risk

Who should attend: Auditors at all experience levels. Business managers interested in risk management.

Course Outline

bulletRisk Management Basics
bulletOrigins and drivers 
bulletWhat control frameworks (COSO/CoCo) say about risk
bulletThe risk management process – basic
bulletThe new understanding of risk
bulletWhy COSO developed this new framework; how it differs from the original

 
bulletERM: Two Real-World Examples
bulletThe Right Way to Implement ERM
bulletRobust ERM at Countrywide Financial
bulletThe minimalist approach at a Fortune 500 manufacturing firm

 
bulletERM: Current Status, Benefits, Benchmarking
bulletResults of 2004 global CEO survey
bulletBenchmark your organization against survey results ― what do you need to get to the next level?

 
bulletInternal Environment
bullet

Risk management factors & issues to consider

bullet

Techniques to foster the desired environment

bullet

A Tool to monitor the internal environment: Ameritech’s entity-wide Self-Assessment Survey

bullet

Entity-wide surveys: keys to success, caveats, things to consider

bullet

Exercise: develop survey statements for internal environment

 

bulletObjective Setting
bullet

Strategic, operational, financial, compliance objectives

bullet

SMART Objectives

bullet

Exercise: set objectives for GROT or your own organization

bullet

Risk appetite and risk tolerance

 

bulletEvent Identification
bullet

Events: risks and opportunities

bullet

Techniques for identifying events

bullet

Event categories: examples

bullet

Exercise: develop event categories

bullet

Exercise: identify events for your objectives

 

bulletRisk Assessment
bullet

Inherent and residual risk

bullet

Qualitative and quantitative risk assessment techniques

bullet

Exercise: select techniques for risks you identified

bullet

Risk maps

bullet

Aggregating risks ― portfolio view
 

 

bulletERM: Real-World Example
bullet

Simple, practical, bottoms-up approach at Texas State Comptroller


 
bulletRisk Response & Control Activities  
bullet

Risk response: avoid, reduce, share, accept

bullet

Exercises: risk response

bullet

Control Activities: Some useful concepts

bullet

Control activities are changing

bullet

COSO, CoCo and soft controls

bullet

“Working inventory” of soft controls

 

bullet Information and Communication; Monitoring
bullet

Enterprise risk & assurance software

bullet

Monitoring risk management techniques: guidelines and tips

bullet

Exercise: Monitoring

bullet

Separate evaluations: Canada Post example

bullet

Continuous monitoring: Fannie Mae example

 

bulletERM: Real-World Example
bullet

The Evolution of ERM at Aquila
 

bulletERM Issues
bullet

ERM architecture

bullet

Sample risk management policy

bullet

Risk management culture, other considerations

bullet

Implementation guidelines and tips

bullet

A diagnostic tool for mature risk management

bullet

Internal audit’s role in ERM

bullet

Link for further information

 

 

COSO-Based IA ] Sarbanes-Oxley ] Best Practices ] [ ERM ] Soft Controls ] Operational ] New Auditor ] Leadership ] Relationship ] Report ]

Copyright © 2006 AuditTrends®. All rights reserved.