Enterprise Risk Management in DHHS

Slides:



Advertisements
Similar presentations
The Department of Energy Enterprise Risk Management Model
Advertisements

AASHTO Internal Audit Conference 2012 – Phoenix Daniel Fodera, CMQ/OE Program Management Improvement Team Federal Highway Administration.
Rob Kella - Chief Risk Officer
Risk The chance of something happening that will have an impact on objectives. A risk is often specified in terms of an event or circumstance and the consequences.
Pursuing Effective Governance in Canada’s National Sport Community June 2011.
Auditing Governance Functions
Lisanne Sison Director ERM Bickmore
IMFO Audit & Risk Indaba June 2012
Primary Benefit Types Value Discipline Benefits – Operating Excellence Reduce Cost Reduce Risk – Product Leadership Increase Revenue – Customer Intimacy.
Queensland Treasury Department Role and Function of Treasury Financial Framework Charter of Fiscal and Social Responsibility and Priorities in Progress.
Development of internal control: methodology and responsibility
It’s Time to Talk About Risk and Control
Executive Insight through Enhanced Enterprise Risk Management Leverage Value From Your Risk Management Investment.
AUDIT COMMITTEE FORUM TM ACF Roundtable IT Governance – what does it mean to you as an audit committee member July 2010 The AUDIT COMMITTEE FORUM TM is.
6/2/20151 Enterprise Risk & Assurance Management in Zurich North America Brian Selby MA (Audit), FIIA, QiCA, MBCS, CISA.
Contractor Assurance Discussion Forrestal Building Washington, D.C. December 14, 2011.
Viewpoint Consulting – Committed to your success.
Applying COSO’s Enterprise Risk Management — Integrated Framework
Victorian Managed Insurance Authority APCO Presentation – Risk Management in the VPS Jonathon Masom – Risk Management Adviser.
PAINTING THE FULL PICTURE
How can projects be controlled?
Opportunities & Implications for Turkish Organisations & Projects
Project Human Resource Management
Organisational Change Management Services: Insight and Capabilities
Amanda Bennett FairPlay Enterprises Ltd Workshop 3 Standards, Systems and Controls.
Good Governance Diagnostic Bridgend County Borough Council Key messages Jeremy Saunders & John Dwight November 2009.
From Conformance to Performance: Using Integrated Risk Management to achieve Organisational Health Ms Stacie Hall Comcover National Manager.
The role of internal audit in enterprise-wide risk management (ERM)
Global Risk Management Solutions Risk Management and the Board of Director: Moving Beyond Concepts to Execution Anton VAN WYK Partner, Global Risk Management.
Lockton Companies International Limited. Authorised and regulated by the Financial Services Authority. A Lloyd’s Broker. Insurance Practitioners’ Association.
Carl Wirdak Occidental Petroleum Corporation GEMI Survey EHS / SR Governance – A Snapshot October 2003.
1 Enterprise Risk Management (ERM) Program PNM Resources, Inc. March 29, 2007 Presentation to American Public Power Association March 2007 Austin, Texas.
Risk Management, Culture & Governance. Agenda  What is risk management?  A framework for risk management  Establishing a good risk culture  Getting.
IT Risk Management, Planning and Mitigation TCOM 5253 / MSIS 4253
West Impl 1© The Delos Partnership 2005 Integrated Enterprise Leadership Implementation.
“ Heightened Expectations” for Corporate Governance AIBA 2 nd Annual Compliance Seminar June 14, 2012 Lester Miller, Senior International Advisor International.
Enterprise Risk Management (ERM) ABN AMRO Business Unit North America (BU NA) Overview for ERM Committee April 11, 2007.
Certificate IV in Project Management Introduction to Project Management Course Number Qualification Code BSB41507.
IRS Enterprise Risk Management (ERM)
ItSMF-Australia Deakin University “Where’s My Dinner?” Darren Burgess Program Director, Service Improvement Program Business Services Manager Information.
ERM or COLLEGE WIDE RISK MANAGEMENT - MADE EASY Financial Management Institute – June 6 th, 2007 Peter Lockie, Chief Financial Officer Camosun College.
MaineHousing Organizational Assessment Strategic Plan engaged our external partners, stakeholders, and staff and set broad goals for the agency Organizational.
Dolina Dowling December 2010 Presentations 2, 3 1
Measuring the Board’s Performance Presented by Paul Geyer GAICD Thursday 19 June 2014.
©2008 RightFit Consulting Overview of Services. ©2010 RightFit Consulting About RightFit Consulting Providing consulting services to businesses across.
1 Introducing Enterprise Risk Management (ERM) - The KOC Experience November 2012 Khaled Al-Awadhi Risk Management Team Kuwait Oil Company.
School of something FACULTY OF OTHER Consolidation Workshop Roles of University Leaders; opportunities and challenges; support Michael Arthur, Vice Chancellor.
RCA Consulting Thoughts on Post Merger Integration.
Practical Investment Assurance Framework PIAF Copyright © 2009 Group Joy Pty. Ltd. All rights reserved. Recommended for C- Level Executives.
Risk Management - “Local Government Pitfalls.” IMFO – Sustainability Workshop Risk Management 30 March
TREASURY REGULATIONS’ CHANGES AND POTENTIAL IMPACT
Enterprise Risk Management Dr. Doug Webster, CGFM, PMP Financial Management in Challenging Times May 13, 2009.
Kathy Corbiere Service Delivery and Performance Commission
12-CRS-0106 REVISED 8 FEB 2013 APO (Align, Plan and Organise)
2014 NPMA Spring Seminar Value Through Professional Asset Management Implementing ISO Contracts Jim Dieter.
Managing Uncertainty, Creating Opportunity Enterprise Risk Management J. Brown, CEO.
PIC EU-28 Conference Paris, 26 – 27 November 2015 PIC An EU Approach Assurance Maps An Introductory workshop Nathan Paget United Kingdom.
Implementing Program Management Standards at Duke Energy.
1 COSO ERM Framework Update Our Next Challenge and Opportunity September 2015.
Five Risk Management Best Practices Scott Moss, CIS P/C Trust Director ERM – ISO
Introduction to Enterprise Risk Management (“ERM”)
Agenda 1) ERM Principles and Practice by Mike Mahaffey (45 minutes)
JMFIP Financial Management Conference
Defining a World-Class Finance Organization
Asset Management Accountability Framework
Project Human Resource Management
With current ethical challenges, is it safe to say Risk Management processes are responsive to an accountable government? CIGFARO- AUDIT &RISK INDABA.
COSO and ERM Committee of Sponsoring Organizations (COSO) is an organization dedicated to providing thought leadership and guidance on internal control,
Operational Risk Management
Presentation transcript:

Enterprise Risk Management in DHHS Erin Baker Director Human Resources and Workplace Safety

Risk in DHHS: My roles and responsibilities Leader: Risk Project Steering Group Member of Departmental Executive: oversight of DHHS enterprise risk management framework and strategic level risk register; ownership of some strategic risks Manager: oversight of business unit risk register Mentor: through Risk Network – building a culture of risk management

In DHHS we manage risk to: Increase likelihood of achieving objectives Improve quality of services Protect staff, assets, property and reputation Improve performance consistent with values Support better decision making Apply our resources more effectively

Where did it all start? Frank discussions about how much risk the organisation wished to pursue Having the difficult conversations Senior executives stepping outside of their own portfolio and thinking strategically across the organisation.

DHHS – a journey to risk maturity What is an enterprise risk management system? Why did we choose it? How did we do it? What are the learnings?

Enterprise risk management (ERM) ERM supports the achievement of an organisation’s objectives by addressing the full spectrum of its risks and managing the combined impact of those risks as an interrelated risk profile.

Principles of ERM The same framework applies across, up and down the organisation The framework is tailored to the organisation, owned by its leaders and integrated into planning, policy and systems We know the risks that could impact on achieving our objectives Senior management and governance committees have ‘line of sight’ to those risks

DHHS ERM Governance Structure Audit and Risk Committee Secretary Departmental Executive Performance, Finance and Risk Committee Groups Business Units

Why ERM for DHHS? A ‘mixed business’ with a broad mandate National health reforms Framework no longer matched the organisation Changes to the external environment Improve our performance

How did we do it? Established a project - clear objectives, tight timeframe, plan, governance, sponsor, dedicated project manager, access to resources Gained high level support by engaging leaders to: develop and endorse the risk framework assess strategic risks achieve a common language know our risks

Project Objectives Know our risk profile Validate and communicate our risk profile Establish a risk governance system Develop a risk management culture Integrate risk management with systems

Objective 1: Knowing our risks DHHS needed an up-to-date risk profile Criteria linked to strategic objectives Risk assessment by executive Produced an initial risk profile – top risks

Objective 2: Communicate and Consult Risk assessment workshops for senior management Produced a strategic risk profile and group profiles Value of communicating and consulting: Shared understanding Shared language Enhanced decision making

Objective 3: Governance System Policy, Handbook, Tools Reporting and escalation Risk Activity Management Plan Risk Network Risk Appetite Statement

Objective 4: Build a Culture of Risk Management Senior management buy-in Communicate the value of ERM Managers are key stakeholders Risk Network – support, mentor, consult

Objective 5: Integrate Risk Management Align with business planning cycle Integrate policies and processes

What does it look like? Risk assessment criteria tailored to our organisation and linked to our strategic objectives Reporting system linked to our ‘risk tolerance’ Escalation of ‘high’ and ‘extreme’ risks for treatment and oversight

What are the outcomes? Less surprises Better planning Better communication Better decisions

What are the learnings? IT systems always take longer than you think Know your requirements before you start Its OK to start with something simple

What are the next steps? Rolling out framework to business units, with support of Risk Network Setting the risk appetite Rolling out risk treatment plans Automated risk register First year of full cycle – business planning, budget, performance management It’s a journey!

Questions?