Skip to main content
Top of Page

ERM Initiative Staff

Sep 11, 2018

Understanding Reputation Risk

Learn how organizations can tackle reputational risk, a key component of brand strategy. Chrystina Howard shares insights on incorporating reputation risk into risk assessments and offers actionable first steps.

Sep 4, 2018

Risk Assessment from COSO’s Perspective

Learn how COSO's risk assessment framework helps organizations manage risks effectively. Explore the key steps: developing assessment criteria, evaluating risk interactions, and prioritizing risks to align with strategic goals and enhance value creation.

David Hughes and Bonnie Hancock

Aug 14, 2018

Conducting Annual Risk Interviews

David Hughes, Assistant Vice President, ERM and Business Continuity Planning at HCA Healthcare talks about how HCA conducts annual risk interviews as part of an ERM process that has been in place for over 15 years.

Jul 19, 2018

Are Boards Focused on the Right Risks?

Learn how boards can shift from traditional risk oversight to a forward-looking approach that integrates risk management with strategy, addressing disruptive innovation and emerging geopolitical challenges.

Rob Gould

Jul 11, 2018

Conducting Black Swan Workshops

Rob Gould, Director, Internal Audit at Harley-Davidson talks about conducting Black Swan workshops. 

Jun 26, 2018

Cyber Risks and Controls Through the COSO Lens

CIOs face evolving priorities as IT stability, cybersecurity, and digital transformation take center stage. Explore operational shifts, challenges in budget planning, and the rising importance of enterprise architecture.

Jun 26, 2018

COSO Releases Draft Guidance on Environmental, Social and Governance-related Risks

Learn how COSO and WBCSD’s supplemental guidance helps organizations address ESG-related risks, from extreme weather to product recalls, integrating these risks into ERM for sustainable success.

Jun 26, 2018

The Relationship between Internal Controls, ERM, and the Business Model

COSO's Improving Organizational Performance and Governance discusses how COSO's Internal Control Integrated Framework and COSO's ERM Integrated Framework relate to the standard business model. The frameworks can contribute to an organization's long-term success. The key takeaway is that good risk management and internal control are necessary for the long term success of all organizations. Improving organizational performance and governance will support this goal.

Jun 26, 2018

The Age of Cloud Computing

Cloud computing delivers benefits like cost savings and scalability but also introduces new risks. Using COSO’s ERM framework, companies can identify and mitigate risks such as lack of transparency, security concerns, and vendor lock-in.

Jun 26, 2018

COSO’s Take on the Three Lines of Defense

As risks begin to threaten the achievement of company objectives, senior management must determine the appropriate way to respond. Responsibilities and duties must be clearly identified so individuals are aware of their roles in addressing these risks and controls. COSO developed the three lines of defense model that addresses how specific duties related to risks and controls could be assigned and coordinated within the organization to alleviate the threat. Ultimately, the model is designed to ensure individuals within each line of defense are aware of their full responsibilities and how these responsibilities fit into the organization's overall risk and control structure.