Katie Yurkewicz Community Advisory Board 24 September 2015 Enterprise Risk Management.

Slides:



Advertisements
Similar presentations
Museum Presentation Intermuseum Conservation Association.
Advertisements

Risky Business: Understanding Risks and Responsibilities in Planning Student Events October 3, 2009 Ken Banks- A. J. Gallagher Diane Sweeney- USF.
Risk and Resilience Delivered by Alba
Enterprise Risk with Local Government. Enterprise Risk a process, effected by an entity's board of directors, management and other personnel, applied.
MODULE “PROJECT MANAGEMENT AND CONTROL” EMERGENCY PLANNING SAFE DECOMMISSIONING OF NUCLEAR POWER PLANTS Project BG/04/B/F/PP , Programme “Leonardo.
Business Services Emergency Preparedness. Agenda Emergencies Emergencies Business Continuation Business Continuation University Plan University Plan Building.
Session 141 Vulnerability to a natural hazard can be defined as to the extent to which people will experience harm and property will be damaged from that.
Sanjay Goel, School of Business/Center for Information Forensics and Assurance University at Albany Proprietary Information 1 Unit Outline Information.
SOX & ISO Protect your data and be ready to be audited!!!
DELIVERING SAFE & RELIABLE OPERATION
Business Risk Marketing Co-op.  Communication  What is communication?  Types of communication  Online  Telephone  Nonverbal Previously.
LYDIA MARTIN SARAH MCALLISTER STEPHANIE SEDMAK TYPES OF BUSINESS RISKS.
Care Home Forum 19 th May 2015 Sarah Chittock – Merton Civil Contingencies Officer Taryn Milton – Emergency Planning Manager – Epsom St. Helier.
Incident Reporting Procedure
RBTC: Business Continuity 101 July 18, What is Business Continuity? Scenario Part 1 Why is BC important? What types of plans are needed? How do.
Network Security Policy Anna Nash MBA 737. Agenda Overview Goals Components Success Factors Common Barriers Importance Questions.
Copyright © The OWASP Foundation Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation.
Business Crisis and Continuity Management (BCCM) Class Session
Basics of OHSAS Occupational Health & Safety Management System
Navigating a Corporate Crisis © 2012 Fox Rothschild LLP Navigating a Corporate Crisis Pre-Crisis Phase September 20, 2012 Presented by Dori K. Stibolt.
Risk Management - the process of identifying and controlling hazards to protect the force.  It’s five steps represent a logical thought process from.
Building a Corporate Risk Culture Shane Troyer, CPA, CIA, CFE, CISSP Principal Operational Advisory Joost Houwen, CISA,
Insurance Institute for Business & Home Safety Even if the worst happens, be prepared to stay.
1. Objectives  Describe the responsibilities and procedures for reporting and investigating ◦ incidents / near-miss incidents ◦ spills, releases, ◦ injuries,
ISO27001 Introduction to Information Security. Who has day-to-day responsibility? All of us! Why Information Security? Control risk, limit liability What.
Project Management By: Dr Madhu Fernando Project Risk Management
Chapter 6 CRISIS MANAGEMENT. Introduction - Crisis: ◦is a situation that specifically involves a pharmaceutical product, medical device or activity with.
Conducting Compliance Assessments and Building Internal Controls In Pharmaceutical R&D Third Annual Medical Research Summit – Session 2.01 Michael Swiatocha.
Risk & Opportunity Management Putting theory into Practice Susy Austin MQM Business Consultant.
Programme Performance Criteria. Regulatory Authority Objectives To identify criteria against which the status of each element of the regulatory programme.
Project Management IV1021Fö5 Risk Management. Agenda Project Risk Project Risk Management The Risk Management Process Goal: get an understanding of basic.
RISK MANAGEMENT : JOURNEY OR DESTINATION ?. What is Risk? “ Any uncertain event that could significantly enhance or impede a Company’s ability to achieve.
 Is the process of conducting an exhaustive physical examination and thorough inspection of all operational systems and procedures of a facility.
Jacques Vanier ICAO EUR/NAT Regional Officer Almaty, 5 to 9 September 2005 SAFETY MANAGEMENT SYSTEMS RISK VERSUS SAFETY.
EGEE04 Pisa 27 Oct Planning for emergencies Grid security, just another case for emergency preparation? Pål S. Anderssen CERN - IT.
Section Topics Risk and control terminology Risk elements
Health Emergency Risk Management Pir Mohammad Paya MD, MPH,DCBHD Senior Technical Specialist Public Health in Emergencies Asian Disaster Preparedness Center.
Risk Management for Small & Medium Sized Enterprises
Proposed Management Systems May 25, 2010 Bob Grant 1.
Erman Taşkın. Information security aspects of business continuity management Objective: To counteract interruptions to business activities and to protect.
Procedures to followNumbers you need Information to know Your Farm Name Here Public Relations Plan Communicate to all (employees and press) that only a.
Swedish Risk Management System Internal management and control Aiming to Transport Administration with reasonable certainty to.
Session 12 Information management and security. 1 Contents Part 1: Introduction Part 2: Legal and regulatory responsibilities Part 3: Our Procedures Part.
Utilities and Crisis Management June 13, 2015 Carolyn Bermudez Vice President and General Manager, Operations.
Business Continuity Disaster Planning
General Liability Insurance Tammy Hicks. Part 1: Liability Insurance Overview  What is Liability Insurance?  Who is covered under the Board’s Insurance.
Safety Management Standards. Introduction Health and Safety Procedures (which identify the risks, hazards and ways of mitigating these) are weak in that.
CBIZ RISK & ADVISORY SERVICES BUSINESS CONTINUITY PLANNING Developing a Readiness Strategy that Mitigates Risk and is Actionable and Easy to Implement.
RISK MANAGEMENT FOR COMMUNITY EVENTS. Today’s Session Risk Management – why is it important? Risk Management and Risk Assessment concepts Steps in the.
Enterprise Risk Management Lucas Taylor Fermilab Strategic Planning Workshop 4 – 5 November 2015.
Trinity Industries, Inc. FEI Presentation May 31, 2012.
Organization and Implementation of a National Regulatory Program for the Control of Radiation Sources Program Performance Criteria.
RISK & ITS MANAGEMENT. Risk A crisis situation involves : - a threat to resource & people, - a loss of control, - visible and / or invisible effects on.
INTERNAL AUDIT BRIEFING Business Objectives Business Objectives: What are they and how are they used?
Risk Assessment: A Practical Guide to Assessing Operational Risk
Risk Management “Better Safe than Sorry” Kathrin Delutis, CEO, Festivals and Events Ontario.
Introduction to Enterprise Risk Management (“ERM”)
Organization and Implementation of a National Regulatory Program for the Control of Radiation Sources Need for a Regulatory program.
Technical External Management Requirements Technology Complexity Interfaces Reliability / Performance Quality Planning Controlling Funding / Resources.
Module 18 National Preparedness. Postmaster, Levels Module 18Slide - 2 Facility, Personal & Vehicle Security Workroom Floor Access Keys Arrow Keys.
Module 8 Risk Management. Manager, Customer Services Module 8Slide - 2 Objective The learner will be able to: –Develop an understanding of Security Responsibility.
Draft - Enterprise Risk Management Risk Universe
Information Security Program
Approaches to Defining Risk
Business Risk Marketing Co-op.
سیستم مدیریت ایمنی، بهداشت و محیط زیست
Neopay Practical Guides #2 PSD2 (Should I be worried?)
Risk Articulation Articulation Translation to Risk Register
RISK RATING GUIDE APPENDIX C LIKELIHOOD RATING Rating Description
Presentation transcript:

Katie Yurkewicz Community Advisory Board 24 September 2015 Enterprise Risk Management

We are updating our set of identified risks to the laboratory that are serious enough to impact the lab’s science mission or possibly shut down the lab. We want to include risks identified by the CAB, and involve the CAB in discussing the impact of risks. Enterprise risk at Fermilab 9/24/15Katie Yurkewicz | Enterprise Risk Management2 Terminology:  Risk: effect of uncertainty on objectives  Enterprise Risk: effect of uncertainty on strategic objectives of an organization  Enterprise Risk Management (ERM): processes to identify, analyze, mitigate and respond to top-level risks that may impact the strategic objectives of an organization

Examples of risk events in enterprise risk register The Enterprise Risk Register constitutes a concise summary of top risks to the laboratory. Example 1: “Major accident at Lab…” Enterprise risk register contains a summary of potential accidents, their estimated probabilities and impacts, and has references to detailed ES&H mitigations and responses, safety standards, training programs, crisis response plans, etc. Example 2: “Government shutdown…” Summary of scenarios, probabilities, impacts, with links to plans for ensuring “business continuity” Example 3: “Major Project fails…” Summary of major project risks that could impact the lab’s science mission. 9/24/15Katie Yurkewicz | Enterprise Risk Management 3

Risk questions for the CAB What is the greatest risk to the lab’s reputation? (Local community, legal, scientific…) What is the greatest risk to people? (Safety, security…) What is the greatest risk to the lab’s assets? (Environment, buildings, accelerators, data…) What is the greatest political or external risk to the lab? (Government, international, geopolitics, markets…) 9/24/15Katie Yurkewicz | Enterprise Risk Management 4

9/24/15Katie Yurkewicz | Enterprise Risk Management 5

Discussion of risk impact (1 of 2) What is the impact to the lab for the following risk events? Radiation incident – accident or failure to follow radiation control procedures causes a member of the public, lab user, or employee to be overexposed with radiation Safety incident underground – accident causes death or serious injury in an underground area (on- or off-site) managed by Fermilab Security breach – computer security incident causes a loss of science data or personally identifiable information Cover up – failure to communicate or lack of transparency related to a significant negative lab event damages the lab’s reputation with the local and national public Environmental incident – an accident causes environmental damage Security posture – a change in the lab’s security posture (e.g. restricting access to members of the public) causes mistrust in the local community 9/24/15Katie Yurkewicz | Enterprise Risk Management 6

Discussion of risk impact (2 of 2) What is the impact to the lab for the following risk events? Theft – theft of high-value government property and/or radioactive material damages the lab’s reputation Infrastructure failure – failure of lab infrastructure or physical plant due to aging facilities shuts down the lab’s science program Labor action – labor union action against the lab results in adverse publicity and/or lawsuit that interferes with the lab’s ability to meet contractual obligations Funding shortage Government shutdown 9/24/15Katie Yurkewicz | Enterprise Risk Management 7