8.2 Role of governance and compliance within a risk management context Flashcards
An organisation’s risks are managed by its _____________.
employees
Give some examples of common risk management governance and compliance issues.
- health and safety breaches (e.g. not waiting PPE)
- taking excessive financial risk
- non compliance with expenses policies
- fraud and theft of company assets
- diversity and discrimination issues
- breaching financial mandates
- not reporting serious breaches
- hiding control weaknesses
- sharing passwords
- taking data outside the organisation
- no declaring conflicts of interest
- accepting bribes
What forms the “cornerstone” of effective governance and compliance?
Policies and procedures
Why are effective policies and procedures important?
They ensure consistent behaviour across an organisation, aligning decision making.
To support effective governance and compliance, implementation of risk management policies require the following:
- e________ of why they are needed
- clear and unambigious r_____ and r____________
- b_______ support
- communication and t________
- regular r______ and updates
explanation roles responsbilities board training reviews
Why is an effective risk appetite framework important?
To ensure that employees understand the risks that may be taken and those which must not, and the roles of management and committees to take risks as needed.