ERM Governance and Culture Flashcards

1
Q

What is the first principle of governance and culture? What does that intel?

A

1) Exercise Board Risk Oversight
- Accountability and responsibility (Ensure that management is accountable and responsible for ERM)

  • Independence (suggestions on how the board is going to be independent from management and the organization)
  • Organizational bias
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is potential impairment to Exercise Board Risk Oversight?

A
  • Substantial financial interest including substantial donation
  • Employment in “executive capacity”
  • Advises the board
  • Material or contractual business relationship between organization and board member
  • Personal relationship with key stakeholders
  • Membership on a board with potential conflict of interest to this board
  • Holding board position for an extended period of time
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the second principle and what does that intel? What are the influences

A

2) Establishing Operating Structure

Influences on operating structure:

  • Strategy, business objectives, and related risks
  • Nature, size, and geographical distribution of the business
  • Assignment of authority, accountability, and responsibility
  • Reporting lines (direct vs secondary) and communication channels
  • External reporting requirements (financial, tax, regulatory)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are ERM structures for establishing operating structures?

A

1) Board-appointed risk committees

2) Complex organizations may have multiple risk committees

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the one board approach to managing risk?

A

One board- management designs and implements practices to achieve strategy and objectives and the board oversees that

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the dual board approach to managing risk?

A

Supversiroy board that focuses on long-term strategy and oversight

Management board that oversees daily operations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Risk management improves when…?

A

1) Delegates responsibility only as required to achieve objectives
2) identifies transactions that require review and approval
3) identifies and assess new and emerging risks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are internal influences on operating structure (examples)?

A
  • Management judgement
  • The level of autonomy provided to employees, employee and management interactions
  • Physical layout of the workplace
  • Rewards, recognition, and compensation
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are external influences on operating structure include…?

A

Regulatory requirements

Customer and investor expectations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

How do you define the desired culture?

A
  • Organizational units may be more risk seeking or risk averse which impacts the desired culture of the organization
  • may have a aggressive sales units that doesn’t really comply with regulatory compliance (Volswagon went around reg in order to boost sales)

A risk-aware culture may permit both approaches, where both are within risk tolerance and appetite

Risk adverse vs risk-seeking culture

*remember culture evolves over time (start-ups may be more risk-seeking and then become risk adverse)

Good judgement= Thoughtful, rational, decision from available information. One element of good judgement is bias- management is susceptible to bias

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

How does risk-adverse or risk-seeking entity impact resource allocation

A

Risk-averse- May allocate more resources to achieve objectives

Risk-Seeking- Less resources in pursuit of specific objectives

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

How do you demonstrate commitment to core value?

A

The communication of values within an organization = “Tone”

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

A risk-aware culture includes? (Number 4)

A

Strong leadership endorsement of risk awareness and tone

Participative management style that encourages risk discussions

Aligning risk awareness with behaviors and performance evaluation

Encouraging risk awareness across the entity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

How do you attract, develop, and retain capable individuals?

A

Include:

  • Establishing and evaluating competence
  • Attract, develop, and retain individuals
  • Rewarding performance:
  • Consider potential ethical risks
  • Consider non-monetary rewards
  • Address pressure (including “excessive”)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly