Session Practice Sharing RM Assurance.pptx

nverliandri 10 views 11 slides Sep 22, 2024
Slide 1
Slide 1 of 11
Slide 1
1
Slide 2
2
Slide 3
3
Slide 4
4
Slide 5
5
Slide 6
6
Slide 7
7
Slide 8
8
Slide 9
9
Slide 10
10
Slide 11
11

About This Presentation

Auditing risk management


Slide Content

ISO31000 series Auditing/Assessing The Risk Management Based on ISO31000 Practice Sharing on Assuring/Auditing the Risk Management Process

List of Contents Assurance on Risk Management Process Environment Types What Independent Assurance Provider Should Do in Planning What Independent Assurance Provider Should Be Aware During Engagement What Independent Assurance Provider Should Be Clear About In Reporting DOs & DON’Ts for Independent Assurance Provider 1

Assurance on Risk Management Process 2 Gap Analysis Maturity Assessment Audit Compare current RM practices to a best practice reference Evaluate current RM practices as part of management system Verify the effectiveness of current RM practices Close the gap Increase maturity level Confidence level on objective achievement WHAT IS IT WHAT TO DO WHAT TO SEEK

Environment Types 3 Automated operations Project-based processes Enterprise-wide Project team Head office Remote area Early stage of RM Fully ERM

What Independent Assurance Provider Should Do in Planning 4

What Independent Assurance Provider Should Do in Planning 5

What Independent Assurance Provider Should Do in Planning 6 Create values and protects value Is an Integral part or organizational processes Part of decision making Explicitly addresses uncertainty Is systematic , structured and timely Is based on the best available information Is tailored Takes human and cultural factors into account Is transparent and inclusive Is dynamic, iterative and responsive to change Facilities continual improvement and enhancement of the organization

What Independent Assurance Provider Should Be Aware During Engagement 7

What Independent Assurance Provider Should Be Clear About In Reporting 8

DOs & DON’Ts for Independent Assurance Provider DOs DON’Ts Prepare yourself before engagement... Not only depend on historical experiences... Be independent and objective... Not foredeeming... Keep up yourself to changes.. Not just staying the same.. Quick-win action plan.. Not comprehensive yet exhausted long-term plan 9

QUESTION ? 10
Tags