How the tool is organised:
- Risk culture
- Risk identification
- Risk assessment
- Articulation of risk appetite
- Risk response
- Risk reporting
- Integration with strategic planning
- Assessment of ERM effectiveness
Find out more
Enterprise Risk Management is a process, effected by the entity’s board of directors, management and other personnel, applied in strategy setting and across the enterprise, designed to identify potential events that may affect the entity, and manage risk to be within the risk appetite, to provide reasonable assurance regarding the achievement of entity objectives.
COSO’s Enterprise Risk Management – Integrated Framework (2004)