What is Risk Management? Whose responsibility is it in your institution? Mark Weatherley.

Slides:



Advertisements
Similar presentations
Organizational Governance
Advertisements

. . . a step-by-step guide to world-class internal auditing
QAA Research Teaching Linkages: Enhancing Graduate Attributes Theme Linda Juleff, QAA Steering Group Representative.
New IA IA Clinic March 30, Definition of Internal Auditing Internal auditing is an independent, objective assurance and consulting activity designed.
Appendix H: Risk training slides (sample). What is Risk? “ Risk is the effect of uncertainty on objectives ” AS/NZS ISO31000:2009.
PRESENTATION ON MONDAY 7 TH AUGUST, 2006 BY SUDHIR VARMA FCA; CIA(USA) FOR THE INSTITUTE OF INTERNAL AUDITORS – INDIA, DELHI CHAPTER.
Mindari Session Scoutsafe and Risk Management By RL Brian See
Auditing, Assurance and Governance in Local Government
A Consultative Approach to Auditing
Sodexo.com Group Internal Audit. page 2 helps an organization accomplish its objectives by bringing a systematic, disciplined approach to evaluate and.
Welcome! Internal Auditing CHAPTER 1. Definition Internal auditing is an independent, objective, assurance and consulting activity designed to add value.
Chapter 21 Assurance, Attestation, and Internal Auditing Services Copyright © 2012 by The McGraw-Hill Companies, Inc. All rights reserved.McGraw-Hill/Irwin.
Eliot M. Stenzel, CPA,CIA IIA Instructor for many years Risk Based Auditing.
The Australian/New Zealand Standard on Risk Management
Quality evaluation and improvement for Internal Audit
Office of Inspector General (OIG) Internal Audit
Challenge Questions How good is our operational management?
Purpose of the Standards
Board responsibility for internal control and risk management by Kiattisak Jelatianranat Chairman, The Institute of Internal Auditors of Thailand Director,
Internal Auditing and Outsourcing
Internal auditing for credit unions Nuala Comerford, Chair IIA Irish Region Committee Pamela McDonald Council Member IIA Credit Union Summer School Thursday,
Key changes from OHSAS 18001:1999
DAA and GEP Orlando Audit & Compliance or Audit vs. Compliance.

Central Piedmont Community College Internal Audit.
D-1 McGraw-Hill/Irwin ©2005 by the McGraw-Hill Companies, Inc. All rights reserved. Module D Internal, Governmental, and Fraud Audits “I predict that audit.
Internal Auditing & Management Control ACCT 620 Otto Chang Professor of Accounting.
C. P. Mansoor S. Ahmed M. Com, PGDBA.  Not confined to Independent Audit  Systematic Examination of  Records  Procedures  Systems  Operations.
Risk Management Report to Audit Committee 26 September 2006 Lee Harris Assistant Chief Executive.
RISK ASSESSMENT 2010/2011 M.J Ramakgolo. THE PURPOSE The aim of the risk assessment session is to develop the Strategic Risk Profile for the municipality.
Internal Audit Role in Order to Develop an Ethical Corporate Culture as a Competitiveness Factor A.I.I.A. - Internal Auditing body Università degli Studi.
© 2007 KPMG, the Malaysian member firm of KPMG International, a Swiss cooperative. All rights reserved. 1 Differing Roles of Internal Auditor and Risk.
Corporate Governance.  What is risk? ◦ Risks are uncertain future occurrences which, left unchecked, could adversely influence the achievement of a company’s.
Taking the STANDARDS Seriously... what they are and why they are so critically important to internal audit professionalism.
Private & Confidential1 (SIA) 13 Enterprise Risk Management The Standard should be read in the conjunction with the "Preface to the Standards on Internal.
Traditional Audit Report Crutches And Why I Hate Them by Elwood McElhaney Florida Department of Children and Families.
The Connection between Risk Management and Internal Control in Organizations Mag. Norbert Wagner Budapest,
Chapter 21 Internal, Operational, and Compliance Auditing McGraw-Hill/IrwinCopyright © 2014 by The McGraw-Hill Companies, Inc. All rights reserved.
Session 9 & 10. Definition of risk assessment and pre condition for risk assessment Establishment of clear, consistent agency objectives. Risk assessment.
Bank Audit. Internal Audit Internal audit is an independent, objective assurance activity and can give valuable insight in providing assurance that major.
1 Internal Audit. 2 Definition Is an independent activity established by management to examine and evaluate the organization’s risk management processes.
The UNIVERSITY of GREENWICH 1 October 2009 L8a Audit and assurance J. E. Spencer-Wood Auditing and assurance Lecture 8a Internal audit.
Applying a risk model in state internal and external audits.
ICP 8 – Risk Management and Internal Controls Ekrem Sarper Vice Chair, Implementation Committee San Jose, Costa Rica.
INTERNAL AUDIT 2015 ANNUAL REPORT Internal Audit Assurance Independent Objective Collaborative Compliance Controls Efficiency Accountability Transparency.
SOLGM Wanaka Retreat Health and Safety at Work Act 2015 Ready? 4 February 2016 Samantha Turner Partner DDI: Mob:
Copyright © 2015 McGraw-Hill Education. All rights reserved. No reproduction or distribution without the prior written consent of McGraw-Hill Education.
RISK MANAGEMENT FOR COMMUNITY EVENTS. Today’s Session Risk Management – why is it important? Risk Management and Risk Assessment concepts Steps in the.
Internal Audit Section. Authorized in Section , Florida Statutes Section , Florida Statutes (F.S.), authorizes the Inspector General to review.
The Action Planning Process & Template Developing Your International Risk Management Action Plan.
“The Role of CPSB and CASB in the Transformation and Growth of Counties” By CS Peterson Mwangi.
Internal Audit: panacea or distraction? Philip Ratcliffe President 29 January 2009 Managing Partners’ Forum for risk management professionals.
Internal Audit Quality Assessment Guide
Developing Your International Risk Management Action Plan The Action Planning Process & Template.
The International Professional Practices Framework
SADCOPAC Conference Accountability and Transparency in SOEs– opportunities and challenges for the Public Accounts Committees. September 2012.
An Overview on Risk Management
Alia Al-Nujaidi
VALUE OF INTERNAL AUDITING: ASSURANCE, INSIGHT, OBJECTIVITY
HUMAN RESOURCE GOVERNANCE, RISK MANAGEMENT AND COMPLIANCE
Following Up on Internal Audit Reports Workshop on IIA Standard 2500
Planning the Audit Engagement: key ingredients
VALUE OF INTERNAL AUDITING: ASSURANCE, INSIGHT, OBJECTIVITY
Edit Nemeth, Vice Chair of IACOP
Edit Nemeth, Vice Chair of IACOP
Audit mission objectives, audit plan and program
Taking the STANDARDS Seriously
Rating in 2002 for funding from 2003
Internal Audit’s Role in Preventing Fraud and Corruption
Costanza Schivi - 9 April 2019
Presentation transcript:

What is Risk Management? Whose responsibility is it in your institution? Mark Weatherley

What is Risk Management? Whose responsibility is it in your institution?  Am I a Risk Manager?

Risk: What Is It?  The chance that something you don’t want to happen will  Or the likelihood that something you would like to happen doesn’t because you didn’t take the chance  Three main risk categories –Common to all entities –Strategy driven for a particular entity –Industry specific

Risk: Four Choices Available  Transfer risk to another party  Design and apply appropriate internal controls  Avoid engaging in the activity  Accept risk

What is Risk Management?  Risk management is about : 1.Identifying and assessing key risks 2.Designing and implementing processes by which those risks can be managed 3.Maintaining residual risks at a level acceptable to the Board

Whose Responsibility Is It?  Board  Management  Internal Audit  Other specialists

IIA New Definition of the Role of Internal Audit independent  Internal Audit is an independent, objective assurance and consulting activity designed to add value and improve an organisation’s operations.  It helps an organisation accomplish its objectives by bringing a systematic, disciplined approach to evaluate and improve effectiveness of risk management, control and corporate governance processes.

Key Attributes of IA  Independent  Objective  Knowledge of University, its people, systems and process  Skills in risk management, documentation, evaluation and assessment  Provides services to the Board and management

IA Skills in Risk Management  Systematic analysis of business process –IA performs organisation-wide risk assessment involving management See next slide –IA prepares an inventory of processes –IA determines audit priorities based on the risk assessment

McGill University Risk Assessment Overview Likelihood of Exposure Consequence Significant Insignificant LowHigh VP, IST VP, Academic Law Libraries Dentistry Medicine VP, D & AR Agriculture & Environment VP, A & F Arts Continuing Education Engineering Religious Studies Student Services Science Education VP, R & Gs High RiskModerate RiskLow RiskCore Processes Principal Secretariat Music Management

IA Skills in Risk Management (Cont’d)  Objective assessments for process effectiveness –audit projects include: Identification of components, deliverables or processes Risk assessment of the unit involving management Definition of audit priorities based on the risk assessment Assessment of control design Tests on control effectiveness

IA Skills in Risk Management (Cont’d)  Independent reporting and assessment of ways to change or improve processes –Audit reports include recommendations to improve : Control design Control effectiveness

IA Skills in Risk Management (Cont’d)  Ability to spread good practices across the organisation –Design and offer training sessions to management –Provide useful information through the IA web site

How IA Helps the Risk Management Process?  Assessment of the adequacy and effectiveness of risk management processes which includes: –Identification of risks –Prioritization of risks –Design of controls –Control effectiveness –Reporting

How IA Helps the Risk Management Process? (Cont’d)  Assessment of residual risks  Assessment of other specialist units also providing assurance and advice – eg Health and Safety Environment Legal Services Insurance

How IA Helps the Risk Management Process? (Cont’d)  Consultants to assist the Board and management in the development of documented risk management processes –Risk identification and assessment –Development of policies and procedures on risk and control –Mechanisms to review the effectiveness of risk management and internal control

What Internal Audit Does Not Do  Judge the appropriateness of the objectives of the organisation  Judge the Board’s strategies to achieve objectives

Benefits From Effective Risk Management Process  Enhances the ability to achieve the University’s objectives  Defines risk tolerance and acceptance of the Board  Leads to informed decision-making  Directs the effective allocation of resources and management time

Key Reference Source  Risk Management and the value added by Internal Audit, published by the Institute of Chartered Accountants in England & Wales (ICAEW), ISBN