ERM - COSO Model Flashcards
Reporting
Reliability of reporting e.g. financial statements
Operations
Effective and efficient use of resources at an operation level in a business
Compliance
Compliance with applicable laws and regulations e.g. Health & safety
Strategic
Support the achievement of high-level strategic goals, aligned with and supporting its mission
Information & Communication
Relevant information is identified, captured and communicated in a manner than enables people to carry out their responsibilites
Risk assessment
Risks are analysed and mapped out onto a risk map. This is done on both a gross and net basis.
Control activities
Policies and procedures are established and implemented to help ensure the risk responses are carried out effectively
Internal environement
Sets the tone of an organisation, and the basis for how risk is viewed and addressed. Also known as the “control environment”
Monitoring
The entirety of enterprise risk management is monitored through ongoing management activities and separate evaluations
Objective setting
Objectives are aligned with an entity’s mission and risk appetite must exist before management can identify the risks impacting their achievement
Risk response
Management selects a risk response, developing a set of actions to align risks with the entity’s risk tolerances and risk appetite
Event identification
Identifying internal and external events affecting achievement of an entity’s objective e.g. a competitor’s actions or staff error.