Operational Risk Sa-Dhan S.Ramesh. Risk categories and their importance for MFI Risk categories Rating CreditLoan portfolio riskXXXXX Interbank riskXX.

Slides:



Advertisements
Similar presentations
Operational Risk Questionnaire
Advertisements

Rizwan Chughtai. Risk exposure arising from business activities Need to effectively manage because of Potential business losses Ensure business continuity.
Chapter 14 Fraud Risk Assessment.
Control and Accounting Information Systems
Operational risk. Introduction During the early part of the decade, much of the focus was on techniques for measuring and managing market risk. As the.
Operational Risk ACSDA Leadership Forum ACSDA Leadership Forum New York City, USA - October 8-10, 2007 Diana Downward, DTCC.
Treasury Risk Operations Presented By: Abhinav Arya (08EM-002) Ajay Kant Sehgal (08EM-005) Amandeep Singh Dhanjal (08EM-007)
1 The critical challenge facing banks and regulators under Basel II: improving risk management through implementation of Pillar 2 Simon Topping Hong Kong.
Introduction to Enterprise Risk Management (ERM)
2 1. Client protection principles 2. Principle #1 in practice 3. Causes and effects of over-indebtedness 4. Participant feedback 5. Practitioner lessons.
Investments Institute of Insurance and Risk Management (IIRM) Hyderabad, India 15 November 2005 Arup Chatterjee – Advisor International Association of.
Operational risk management Margaret Guerquin, FSA, FCIA Canadian Institute of Actuaries 2006 General Meeting Chicago Confidential © 2006 Swiss Re All.
Chapter 7 Control and AIS Copyright © 2012 Pearson Education, Inc. publishing as Prentice Hall 7-1.
Risk Management at ANZ Banking Group Jun 18, 2008 Patrick Zhu Head of Retail Risk China Partnerships.
Measuring and Managing Operational Risk. 2 Assessing Operational Risk Exposure Required Process of Continuous Risk Assessment, Monitoring and Reporting.
1 Operational Risk Management Member Education Series Seminar Indian Institute of Banking & Finance Nagpur November 2005.
CORPORATE RISK MANAGEMENT & INSURANCE BY R P BLAH D.G.M. INCHARGE THE ORIENTAL INSURANCE COMPANY LIMITED REGIONAL OFFICE BHUBANESWAR.
Systemise your compliance management Peter Scott Consulting
Operational Risk Chapter 18
Elements of Internal Controls Preventing Fraud, Waste, and Abuse in Urban and Rural Transit Systems.
Irish League of Credit Unions, 2012 W E L O O K A T T H I N G S D I F F E R E N T L Y Risk Management for Credit Unions September 2013 Risk Management.
Vendor Risk: Effective Management is Essential
Chapter 4 Risk Assessment.
Fiduciary Key Risk Indicators
Governance of the Treasury Function CIPFA Scottish Treasury Management Forum Alan George, Regional Director 23rd February 2012.
8 – 12 December 2008 Bruce Le Bransky MAFC / APEC / AFDC Shanghai Conference: Session 7.2: Challenges to Governance Structures.
MicroFinanza Rating: Setting up adequate Internal Control Systems Laura Profiri Regional Manager Central Asia, Russia and Caucaus AMFA conference 4-5 October.
Presented to President’s Cabinet. INTERNAL CONTROLS are the integration of the activities, plans, attitudes, policies and efforts of the people of an.
Enterprise Risk Management (ERM) ABN AMRO Business Unit North America (BU NA) Overview for ERM Committee April 11, 2007.
Copyright © 2006 by The McGraw-Hill Companies, Inc. All rights reserved. McGraw-Hill/Irwin 3-1 Chapter Three Risk Assessment and Materiality Chapter Three.
Introduction to Internal Control Systems
From Findings over KRIs to Process Control
CDS Operational Risk Management - October 28, 2005 Existing Methodologies for Operational Risk Mitigation - CDS’s ERM Program ACSDA Seminar - October 26.
Internal Control in a Financial Statement Audit
Abcd Managing and measuring operational risk in an insurance company John Rowland Tillinghast General Insurance Spring Seminar May 2003 Scarman House.
New Directions in Risk Management
Corporate Governance.  What is risk? ◦ Risks are uncertain future occurrences which, left unchecked, could adversely influence the achievement of a company’s.
Compliance with IOSCO requirements AMEDA Leadership Forum Alexandria Egypt Monday 27 th April 2009 by Dr. Ashraf EL Sharkawy Senior Advisor to the CMA.
Risk Management Through Governance S.Ramesh Managing Director Gaia Advisors Sa-Dhan.
CIA Annual Meeting LOOKING BACK…focused on the future.
Risk Management & Corporate Governance 1. What is Risk?  Risk arises from uncertainty; but all uncertainties do not carry risk.  Possibility of an unfavorable.
RISK MANAGEMENT : JOURNEY OR DESTINATION ?. What is Risk? “ Any uncertain event that could significantly enhance or impede a Company’s ability to achieve.
Managing Market Risk. Board of Directors The Boards defines –Market risk –Management policies –Procedures –Prudential risk limits –Review mechanisms –Reporting.
IT Risks and Controls Revised on Content Internal Control  What is internal control?  Objectives of internal controls  Types of internal controls.
AML Compliance Findings & Observations Wyn Clark U.S. Treasury.
A Guide for Management. Overview Benefits of entity-level controls Nature of entity-level controls Types of entity-level controls, control objectives,
Internal/External Audit and Internal Controls February 23, 2000 David Dudley Federal Reserve Bank of NY.
1  The objective of operational risk management is the same as for credit, market and liquidity risks that is to find out the extent of the financial.
Basel Committee Norms. Basel Framework Basel Committee set up in 1974 Objectives –Supervision must be adequate –No foreign bank should escape supervision.
1 Banking Risks Management Chapter 8 Issues in Bank Management.
Copyright © 2007 Pearson Education Canada 9-1 Chapter 9: Internal Controls and Control Risk.
Deck 5 Accounting Information Systems Romney and Steinbart Linda Batch February 2012.
Dolly Dhamodiwala CEO, Business Beacon Management Consultants
F8: Audit and Assurance. 2 Audit and Assurance Designed to give you knowledge and application of: Section A: Audit Framework and Regulation Section B:
Corliss Whitaker: Portfolio – Instructional Presentation Understanding BASEL II Concepts Author: Korki Whitaker Revised: 02/17/2007.
E-FINANCE CHAPTER 6 RISK AND CHALLENGES Risk and Challenges, V.C joshi (2004), E-finance Log into the future, 2nd Edition, Thousand Oakes, London, E-finance:
Lecture 5 Control and AIS Copyright © 2012 Pearson Education 7-1.
Chapter 6 Internal Control in a Financial Statement Audit McGraw-Hill/IrwinCopyright © 2012 by The McGraw-Hill Companies, Inc. All rights reserved.
SUNY Maritime Internal Control Program. New York State Internal Control Act of 1987 Establish and maintain guidelines for a system of internal controls.
RISK MANAGEMENT SYSTEM
Factors to be considered for the Internal Auditors
ENTERPRISE RISK MANAGEMENT IN THE CASE OF THE FINANCIAL SERVICE SECTOR
COSO and ERM Committee of Sponsoring Organizations (COSO) is an organization dedicated to providing thought leadership and guidance on internal control,
Operational Risk.
Energy Risk Management Credit Rating Perspective
Kuveyt Turk Participation Bank
Neopay Practical Guides #2 PSD2 (Should I be worried?)
Risks in Banking Operations
Internal Control Internal control is the process designed and affected by owners, management, and other personnel. It is implemented to address business.
Operational Risk Management
Presentation transcript:

Operational Risk Sa-Dhan S.Ramesh

Risk categories and their importance for MFI Risk categories Rating CreditLoan portfolio riskXXXXX Interbank riskXX MarketInterest rate riskXXXX Currency risk LiquidityLiquidity riskXXXXX Other riskPerformance riskXXXXX Compliance riskXXXXX Reputation riskXXXX Country risk Operational risk XXXXX

Operational risk is every MFI's greatest fear. Staff Control Failures Compliance Rapid Expansion Legal Multiple Financing Fraud Information Technology Management System Failures Disbursements / Re payments Human Error Premises Business Continuity Credit Risk Market Risk

Circumstances that have been identified and if left unattended may lead to a loss in the future, example : technology Happening or occurrences that are indicative of the underlying risk, they might have resulted in an economic loss, but did not, example : large cash balances; no monetary loss yet Incidents that resulted in a monetary loss Example: Small frauds Operational Risk

 Internal and external fraud  Failure to comply with laws or meet workplace safety standards  Policy breaches  Failure to meet regulatory requirements  Personnel risks  Damage to physical assets  Business disruptions  Transaction processing failures (execution, errors)  Failure of internal controls and corporate governance OR can arise from:

But how do you define, analyze and solve a potential problem before it has even arisen? “ Operational Risk is the risk of loss resulting from inadequate or failed internal processes, people and systems or from external events”  People  Process  Technology  Reputation  Operating Environment

But how do you define, analyze and solve a potential problem before it has even arisen?  Systems  Legal  External Events  Includes legal risk but excludes strategic risk

OR is more than people and technology risk. It encompasses all the hidden dangers that do not come under the umbrella of market or credit risk. People: Positing of Staff in Key Areas Competency of Staff Insufficient training, negligence, integrity, etc. Work Environment Employee Motivation HR initiatives Frequency and impact of staff turnover/rotation Operational risk (OR) – People Risk

Transaction risk: Operational Manual to execute Transaction Frequency of execution of errors in transactions Business volume fluctuation/ concentration Organizational complexity Product complexity, and major changes Operational Control risk Frequency of Violation of operational controls ( exceeding limits, powers) Efficiency of information flows Frequency of operational disruption Operational Control: inadequate segregation of duties lack of management supervision inadequate procedures. Risk due to loose security at operational points ( overnight cash) Operational risk (OR) – Process Risk

Technology:  Poor technology and Partial /disconnect computerization  Obsolete applications  lack of full automation for consolidation and /or accounts and Operations  MIS complexity, poor design, development and testing.  Systems failure  Volume of transaction Vis-a- Vis level of system development and capacity  Level of Manual intervention required to process transactions  Validity of IT systems  IT related frauds Operational risk (OR) – Technology Risk

Reputation risk Customer perception of the Company/MFI Mostly dependent of Field officer Individual is recognized than the institution by the customer Public /Politicians perception of MFIs Operating Environment Unanticipated changes in external environment Multiple lending Macro Economic Factors like loan waiver, low fund flow to MFIs leading to failure to keep up commitments to customers Operational risk (OR) –

Operational Risk - 7 OP Risk types Internal Fraud External Fraud Employment Practices Professional Practices Loss/Damage to assets Business disruption & system failures Transaction processing risk

Change Complacency Complexity Sources Operational Risk Categories People Process Technology Internal External Interconnection of Operational Risks Dependencies Connectivity of Operational Risk Exposure Likely drivers of Operational Risk associated with each Operational Risk Category

Risk types contd…  Internal fraud: intended to defraud, misappropriate property, employee theft  External fraud: robbery, forgery, Collusion.  Employment practices and workplace safety: workers compensation claims, organized labor activities likely  Business disruptions and system failures: hw. and sw. failure.  Execution, delivery and process management: data entry errors, incomplete legal documentation, unapproved access given to client accounts.

How can we addressing Operational Risk?  Transfer the risk to another party (e.g. through insurance)  Accept and manage the risk through effective management monitoring and control  Put appropriate fall-back plans in place to reduce the impact in case of an operational failure.  Least- Avoid the risk by withdrawing from a business activity

OR Management Risk Management systems-adequacy, demarcation of responsibilities, day-to-day supervision Areas- Cash management, internal control & housekeeping, AML controls Robust internal control- Effective internal Inspection/Audit KYC & AML measures-emphasis

ORM Practices should be based on policy duly approved at the board level that describes the processes involved in controlling OR.  Clear strategies and oversight by the Board: Board of Directors should approve and review the MFIs ORM framework.  Internal Control System: ORM framework is subject to effective internal audit by operationally independent and competent staff.  Strong Operational Risk Culture: ORF should be implemented throughout the whole organization, all levels of staff should understand their responsibilities.  Contingency Planning: MFIs should have contingency and business continuity plans to operate on an ongoing basis and limit losses.  Effective internal reporting: Senior management have responsibility for developing policies, processes and procedures for managing OR.

Risk Monitoring and Control Practices should be implemented.  Collection of Operational Risk Data (incident reporting framework)  Regular monitoring and feedback mechanism in place for monitoring any deterioration in OR profile.  Collation of incident reporting data to assess frequency and probability of occurrence of OR events.  Monitoring and control of management of large exposures to states/areas/branches. The modalities to be prescribed in the Loan Policy.

Issues in ORM  Qualitative vs Quantitative approach  Mapping of existing business lines to the standard business lines  Data collection  Proper identification of key risk indicators  Monitoring of databases  Gathering loss data  Estimating frequency/severity of loss  Quality of data  Cost/technology implications  Overlap with Credit and Market Risk

Distribution of Operational Losses Magnitude of loss Like- lihood of Loss Expected Loss-Loss Prov. Absorbed Unexpected Loss -Op. Risk Capital Catastrophic Loss -Risk financing using Core Capital

Expected Loss  Expected Loss (EL) - likelihood of failure and likely loss severity given that a failure occurs  Exposure Indicator (EI) - proxy for the size of a particular business line’s OR exposure  Probability of loss Event (PE) - probability of occurrence of loss event  Loss Given that event (LGE) - proportion of transaction or exposure that would be expressed as loss, given the default EL = EI X PE X LGE

The integrated operational risk management framework 5.Op risk management Action plans by business and risk management, including business continuity plans and insurance programmes 4. Op risk capital Risk based Operational economic and regulatory capital is attributed to every business 3.Op risk analysis and monitoring and reporting Operational risk limit 1.Op risk identification Assessment of risks !Business activity !Exposure to risk types !Business environment !Control environment 2.Op risk measurement !Internal loss experience !Scenario analysis !Stress Scenarios All businesses All new products All new initiatives

 Measurement should not be ignored rather focus should be shifted to internal controls.  The internal control measures & measurements given by Pilar II are not close to adequate, regulatory capital would be an incentive for banks to develop own internal measurement techniques.  Accurate measurement of OR cannot be the main focus of regulators given the current constraints in data collection and availability, a thought process has been definitely put in place across the banking industry. Conclusion

CONCLUSION- ISSUES IN OR MANAGEMENT DEFINE MONITOR MEASURE MITIGATE

Thanks!!!