Presentation by: Nasumba Kizito Kwatukha CPA,CIA, CISA,CFE,CISSP,CRMA,CISM,IIK 6 th JULY 2017

Similar documents
BERGRIVIER MUNICIPALITY. Risk Management Risk Appetite Framework

INTERNAL AUDIT AND OPERATIONAL RISK T A C K L I N G T O D A Y S E M E R G I N G R I S K S T O G E T H E R

1st Capacity Building Seminar on Enterprise Risk Management

Critical Reflection of Two State-of-the-Art Risk Management Frameworks (SRM004)

American Academy of Actuaries Webinar: The Practice of ERM in the Insurance Industry. Enterprise Risk Management Committee November 19, 2013

MEMORANDUM. To: From: Metrolinx Board of Directors Robert Siddall Chief Financial Officer Date: September 14, 2017 ERM Policy and Framework

Energize Your Enterprise Risk Management

ENTERPRISE RISK MANAGEMENT Framework

ERM/ORSA Training Thai General Insurance Association (TGIA)

Session 7 Evolution of ERM Across Industries An ERM Practitioner s Perspective. Danielle Harrison, Chief Risk Officer, The Co-operators Group

Enterprise Risk Management (ERM)

Preparing for an Own Risk & Solvency Assessment

RISK MANAGEMENT FRAMEWORK

Three Lines of Defense: Working Together to Enhance Business Performance

Risk management policy

Amex Bank of Canada. Basel III Pillar III Disclosures December 31, AXP Internal Page 1 of 15

Certified Enterprise Risk Professional (CERP) Test Content Outline

Sections of the ORSA Report

ENTERPRISE RISK MANAGEMENT IN HEALTH CARE. April 27, 2017

ENTERPRISE RISK MANAGEMENT (ERM) POLICY Republic Glass Holdings Corporation. Purpose. Goals

Retail and commercial commitments (1) Table 40. Risk management

Risk Report. 42 Introduction 43 Risk and Capital Overview 43 Key Risk Metrics 44 Overall Risk Assessment 44 Risk Profile

Corporate Governance of Federally-Regulated Financial Institutions

Relevance of Operational Risk to the FCA Jill Savager Manager, Operational Risk, Financial Conduct Authority

FIRMA Nashville Tennessee April 21, 2015

Basel II Pillar 3- Qualitative Disclosure

UNITED NATIONS JOINT STAFF PENSION FUND. Enterprise-wide Risk Management Policy

Basel III Pillar 3 Disclosures

Enterprise Risk Management for Water Utilities. Justin Carlton, CMA, MBA Financial Analyst Tualatin Valley Water District

2014 Own Risk and Solvency Assessment (ORSA) Feedback Pilot Project Observations of the Group Solvency Issues (E) Working Group

Enterprise Risk Management

Enterprise Risk Management

RISK APPETITE FRAMEWORK

Applying COSO s Enterprise Risk Management Integrated Framework. September 29, 2004

The Challenges of Solvency II

CERA Module 1 Exam 2015

Guidance Note: Internal Capital Adequacy Assessment Process (ICAAP) Credit Unions with Total Assets Greater than $1 Billion.

CAPITAL MANAGEMENT GUIDELINE

AIA Group Limited. Terms of Reference for the Board Risk Committee

Risk Management at ANZ

Risk Management. Policy No. 14. Document uncontrolled when printed DOCUMENT CONTROL. SSAA Vic

SEPTEMBER 2014 INCORPORATING THE REQUIREMENTS OF THE RESERVE BANK OF INDIA

Summary of Risk Management Policy PT Bank CIMB Niaga Tbk

COMMUNIQUE. Page 1 of 13

Regulatory Capital Pillar 3 Disclosures

REGULATORY GUIDELINE Liquidity Risk Management Principles TABLE OF CONTENTS. I. Introduction II. Purpose and Scope III. Principles...

INTERNATIONAL ASSOCIATION OF INSURANCE SUPERVISORS

Thirty-Second Board Meeting Risk Management Policy

Regulatory Disclosures. September 30, 2016

Applying COSO s Enterprise Risk Management Integrated Framework

Enterprise risk management: How are companies gaining value from their ERM strategies?

Risk Disclosure. Deutsche Bank AG, Colombo Branch. as at 31 December Deutsche Bank

Draft Guideline. Corporate Governance. Category: Sound Business and Financial Practices. I. Purpose and Scope of the Guideline. Date: November 2017

Enterprise Risk Management Integrated Framework

Enterprise Risk Management Policy Adopted by the AMP Limited Board on 2 February 2017

Mission Statement. Build shareholder value through leadership in strategic management of risk. Objectives. Risk Priorities

How we manage risk. Risk philosophy. Risk policy. Risk framework

Risk Appetite. What is risk appetite?

Enterprise Risk Management (ERM) Module 3.0 (CERA/FSA)

Risk Management: Principles, Methodologies and Techniques. Peter Getugi Internal Audit Manager ILRI

CITY OF JOHANNESBURG METROPOLITAN MUNICIPALITY GROUP RISK AND ASSURANCE SERVICES GROUP RISK MANAGEMENT POLICY

Deutsche Bank (Malaysia) Berhad

RISK MANAGEMENT FRAMEWORK OVERVIEW

ก ก Tools and Techniques for Enterprise Risk Management (ERM)

Enterprise Risk Management

ERM Benchmark Survey Report A report on PACICC's third ERM benchmarking survey

ERM Concepts and Framework. Paul Duffy

Merrill Lynch Kingdom of Saudi Arabia Company. Pillar 3 Disclosure. As at 31 December 2016

IMPLEMENTATION NOTE. Corporate Governance Oversight at IRB Institutions

Rolling Up Operational Risk

Draft for Consultation FICOM ICAAP Guide

INTEGRATED RISK MANAGEMENT GUIDELINE

Enterprise Risk Management by Many Other Names is Still Enterprise Risk Management David K. Whatley UTH Advisors April 15,2008

INTERNAL CAPITAL ADEQUACY ASSESSMENT PROCESS GUIDELINE. Nepal Rastra Bank Bank Supervision Department. August 2012 (updated July 2013)

SOLID GROUP INC. ENTERPRISE RISK MANAGEMENT POLICY

Delivering Clarity to Credit Unions Through Expertise and Experience

Solvency and Financial Condition Report 20I6

PILLAR 3 DISCLOSURE AS AT 31 DECEMBER 2017

Defined Contribution (DC) Risks PD-10. Canadian Institute of Actuaries June 28, 2007 Vancouver. Minaz Lalani and Ian Genno Towers Perrin

DB USA Corporation. Pillar 3 Report 2017

P I L L A R I I I D I S C L O S U R E

UBS Saudi Arabia (A SAUDI JOINT STOCK COMPANY) Pillar III Disclosure As of 31 December 2017

DRAFT 3/18/14 Financial Analysis Handbook 2014 Annual/2015 Quarterly

The Rating Agency View of Capital Modelling. Simon Harris Team Managing Director European Insurance

ORSA reports: gaps and opportunities

ENTERPRISE RISK AND STRATEGIC DECISION MAKING: COMPLEX INTER-RELATIONSHIPS

Auditing Liquidity Risk. An Overview

Does the ORSA add value? Challenges and initial achievements. Lukas Ziewer Risk Management Perspectives, 18/11/2014

INTERNATIONAL ASSOCIATION OF INSURANCE SUPERVISORS

UBS Saudi Arabia (A SAUDI JOINT STOCK COMPANY) Pillar III Disclosure As of 31 December 2014

Enterprise-Wide Risk Management

Merrill Lynch Kingdom of Saudi Arabia Company. Pillar 3 Disclosure. As at 31 December 2017

Risk Appetite Survey Current state of the Insurance Industry

Subject SP9 Enterprise Risk Management Specialist Principles Syllabus

Understanding Enterprise Risk Management: An Overview

Kidsafe NSW Risk Management Plan. August 2014

Executive Board Annual Session Rome, May 2015 POLICY ISSUES ENTERPRISE RISK For approval MANAGEMENT POLICY WFP/EB.A/2015/5-B

Stress Tests From stressful times to business as usual an updated point of view

Own Risk Solvency Assessment (ORSA) Linking Risk Management, Capital Management and Strategic Planning

What Is Enterprise Risk Management?

Transcription:

ENTERPRISE RISK MANAGEMENT SEMINAR Enterprise Risk Management in case of Financial Institutions Presentation by: Nasumba Kizito Kwatukha CPA,CIA, CISA,CFE,CISSP,CRMA,CISM,IIK 6 th JULY 2017 Uphold public interest

Risk Any event or action that may adversely affect an organization s ability to achieve its objectives and execute its strategies Culture and Risk-Hofstede cultural Theory- organizations are different For quantifiable events, risk is often associated with the volatility of outcomes If you do not know it leave it Non-quantifiable events can also have significant financial costs The object of risk management is not to eliminate risk but to mitigate its effects

Great Depression i. Becoming more and more complex in the financial services sector-our business is risk-lending and insurance i. Cost versus benefit ii. People driven iii. Risk and innovation

Types of Risk in Financial Sector 1. Strategic Risk 2. Liquidity Risks 3. Market Risks 4. Credit Risks 5. Insurance Risk 6. Operational Risk Guideline issued by IRA and CBK(FSA) Emerging risk- Cultural, Fraud, Social media, Governance, I.C.T, business continuity

Inter-risk diversification Risk Types Correspond to a Possible Economic Loss CREDIT RISK Unexpected Loss LIQUIDITY RISK Inability to pay when it falls obligations fall due Earnings Deviation due to variations in Credit Losses, COLLATERALS Earnings Deviation due to inability to repatriate funds - immaterial for insurance RISK Earnings Deviation Total Economic Risk MARKET RISK Value at Risk BUSINESS RISK Residual Earnings Deviation OPERATIONAL RISK Event Loss Deviation Strategic Risk Inability to Monitor and factor performance Measurement in Strategy Earnings Deviation due to changes in the Market Price or Liquidity Earnings Deviation due to changes in Operating Economics (e.g. Volume, Margins or Costs) Deviations due to people, processes and Systems Earnings Deviation due to unexpected changes in Strategy execution 5

ERM at a glance Corporate-wide approach to dealing with risk; Appears defensive but it can be a great resource in running any complex business Increasingly seen as an indicator of sound management as it ensures objectives are achieved Essential for all financial institutions Notion of a Risk and Compliance Department

ERM at a glance Regulators encourage ERM Companies that be able to distinguish between risks that can be mitigated and risks that can be capitalized and self insured get higher return With respect to ERM, there is a commonality of interests between policyholders and depositors, regulators and

Regulatory Aspects of Risk Risk-based capital requirement Risk-based supervision

Why ERM Achieve objectives while optimizing risk profile and protecting value Removes silos in risk management Provide relevant, reliable, and timely information to appropriate stakeholders Enable the measurement of the performance and effectiveness of the system."

The COSO Framework 10

The components of the ERM Framework

Implementing the ERM Financial Institutions have identified and started adapting the Enterprise Risk Management Framework released by COSO as a framework to drive their initiatives in risk management beyond Basel norms and regulatory compliances. The COSO ERM framework has all the components that could help the institutions to stand a chance to derive business value while meeting compliance requirements.

Implementing the ERM Chief Risk Officer (CRO) interacts with Chief Financial Officer Chief Investment Officer Chief Information Officer Chief Actuary Head of Internal Audit Direct reporting to CEO is preferable Often reports to CFO

Implementing the ERM Risk appetite and Universe Risk appetite is established through dialog between RM and the businesses Strategically consider risk-reward tradeoffs Aggregate level risk tolerances are expressed holistically in terms of impact on earnings, volatility of revenues, capital, work force retention and reputation

Implementing the ERM RM is involved at the outset in the budgeting and planning process CRO participates at strategic planning sessions with senior management and/or the board The institution appoints a senior risk managers individuals with significant business experience and who may also have advanced degrees

Implementing the ERM Risk aggregation and quantification In association with business units, managers decide upon appropriate global risk metrics that effectively and accurately assess the organization s risk exposures The company periodically provides senior management with a coherent picture of the risks to which the firm is exposed at any given point in time

Implementing the ERM Risk disclosure Articulate to senior management all risks through clear highquality internal reporting Hold weekly, monthly, quarterly meetings with RM, the business, and senior management to discuss risks Ensure the board is well-engaged with ERM initiatives and is to some degree setting the tone

Challenges in Implementing Risk Mgt Improving efficiency Challenging regulatory environment Keeping pace with business growth and complexity Achieving greater efficiencies in the risk and control processes, improving coordination, unifying and streamlining approaches. Ever changing regulatory demands, high degree of regulatory scrutiny, variation of regulations across jurisdictions, preparing to operationalize / compliance with Basel II Rapid business growth, competitive intensity, M&A activity, global expansion, increasing product complexity, increasing customer expectations. Attracting and retaining talent Managing Change Fear of compliance failures and emerging risks Shortage of good talent in competitive markets, especially in specialized areas or emerging geographies Dealing with people and organizational issues as new processes demand new methods of work Fear of compliance failures despite best efforts, due to human error or unanticipated events; identifying and preparing for future risks.

Implementing Risk Management Technical and quantifiable risks Clear company-wide definitions and classifications Consistent risk-measures Clear limits for risk tolerance Risk-specific criteria

Management of Risk 3-Lines Functions that own and manage risks-1st Line Functions that oversee risks-2nd Line Functions that provide independent assurance-3rd Operational managers develop and implement the organization s control and risk management processes and must be adequately skilled to perform these tasks within their area of operations

3 lines of Defense 21

Management of Risks 1. Training and Mapping to Performance-K.P.I 2. Setting the right goodwill and tone at the top 3. Incidence and Escalation process 4. Involvement at the onset 22

Management of Risks 23

Interactive Session