Paper CQP 303
Enterprise Risk Management
The main learning objective of this subject is to inculcate in the learners ‘best-in-class’ Enterprise Risk Management (ERM) knowledge with practical examples and contemporary cases to firmly cement the skills. The learner is expected to be a discerning expert with dynamic perspectives and ability to promote excellence and professionalism in developing resilient processes insulated from systemic risk after going through this subject.
On completion, a candidate should be able to
- To develop a solid understanding of ERM and contemporary environment.
- Develop sound theoretical knowledge on ERM.
- Prescribe effective Enterprise Risk Management (ERM) interventions.
- Design an ERM and conduct ERM audits
- Formulate risk management strategies.
Content
- 1
Introduction to Enterprise Risk Management
should internalize the foundations of Risk management
Evolution of ERM
Fundamental definitions of risk
Characteristics of risk
Aims of Risk Management
Risk concepts
Enterprise Risk Management
Strategic relevance of ERM
- 2
Typology of Risk Exposures
By the end of this topic, the learner should attain expert ability in the application of risk analysis tools
Introduction – Approaches to classifying risks
Internal forces shaping the risk environment
External environment
ISO Standards on ERM
Major risk types
Evolution of risk exposures
Basel standards for risk management
- 3
Designing an enterprise risk management (ERM) program
By the end of this topic, the learner should be Capable to design/ develop an ERM program
Principles of risk management
Enterprise risk management framework
Designing an ERM Program
Quality assurance of an ERM program
Evolution of ERM programs
- 4
Risk Analytics
By the end of this topic, the learner should expertly undertake quantitative analysis of risk
Introduction to risk analytics
Significance of risk analytics
Tools for quantifying risk
Sensitivities, scenario analysis and stress testing
Risk appetite metrics
Risk reporting, data aggregation and data quality
Qualitative Risk Analysis
- 5
Risk architecture and structure
By the end of this topic, the learner should have Proficiency in the review/ monitoring of an ERM framework
Risk governance framework
Risk type frameworks
ERM integration
Three lines of defence (3LoD) model
Effectiveness review & quality implementation
Evaluation of ERM
- 6
Regulation and Compliance
By the end of this topic, the learner should be able to devise a Regulatory/ compliance management strategy/ framework
Regulation & Compliance – Definitions & differences
Regulatory framework
Compliance risk management
Policies & procedures
Compliance assurance
Current regulatory developments (Local/ international)
- 7
Risk Culture & Awareness
By the end of this topic, the learner should be able to cultivate cultural change skills
Culture: fundamental definitions
Risk Maturity models
Role of organization culture in ERM implementation
Types of organization culture
Organization culture alignment
Role of training & awareness
Alignment of ERM and Corporate Governance
- 8
Assurance
By the end of this topic, the learner should acquire quality assurance expertise
Rationale of ERM audits
Role of audits in ERM implementation
Types of ERM audits
Audit reporting
Audit socialization
Auditing - Software solutions
- 9
ERM Case Studies
By the end of this topic, the learner should have capacity to formulate risk management strategies
Contemporary cross-industry cases on ERM implementation.
Sectors in scope: a) Financial services, b) Retail management, c) Industrial sector, d) Government (state corporations), and e) Non-governmental
rganizations (NGOs).
- 10
Trends in Risk Management
B y the end of this topic, the learner should acquire leadership skill relevant for driving innovation efforts in an ERM context
The technology revolution & ERM
Changing risk landscape (Emerging risks)
Risk trends
Data-driven ERM
Machine learning, artificial intelligence, Internet of things (IOT) and ERM
Evolving regulatory oversight
Convergence of risk oversight with strategic planning