Preview

Enterprise Risk Management

Powerful Essays
Open Document
Open Document
1617 Words
Grammar
Grammar
Plagiarism
Plagiarism
Writing
Writing
Score
Score
Enterprise Risk Management
Abstract
This paper discusses how a company can successfully implement the Enterprise Risk Management based on COSO guidelines. This paper discusses a step by step process of the implementation plan at Dell Inc, the responsibilities of the workforce and management, the risk mitigation approach and how to monitor the activities successfully.

Enterprise Risk Management
In the wake of all the financial scandals, a variety of laws and regulations have been passed which makes the board of directors solely responsible for the financial results of their company. Sarbanes Oxley Act of 2002 was one of them, but this covers only a part of the total risks that a company faces. A much wider range like strategic, operational and hazardous risks lies outside this. To cover all the aspects of risks that an organization faces, companies are implementing the Enterprise Risk Management program, which means:
Enterprise risk management is a process, effected by an entity 's board of directors, management and other personnel, applied in strategy setting and across the enterprise, designed to identify potential events that may affect the entity, and manage risk to be within its risk appetite, to provide reasonable assurance regarding the achievement of entity objectives. (coso, 2004).
In this paper I will be outlining a plan to implement the enterprise risk management based on COSO recommendations for Dell Computers Inc.
The main step in implementing the ERM plan is to create a framework that will define what the ERM will mean for the company and use this framework to develop a plan that will be tailored to the company 's needs. The company should assemble a team that is motivated to implementing a successful ERM program. The team members can be selected from different departments, where each member represents each unit. The members selected should be committed and motivated towards implementing a successful risk management program. A team leader should be appointed who will

You May Also Find These Documents Helpful

  • Good Essays

    Global’s risk management approach was a key factor in the success of their efforts to protecting their client’s information assets. By utilizing risk management strategies Global was able to detect vulnerabilities where there were the most likelihood of threat and implement controls to detect and/or prevent breaches of the security controls. The risk management process ensured Global addressed security measures at all levels of the…

    • 515 Words
    • 3 Pages
    Good Essays
  • Good Essays

    Acc 544 Internal Control

    • 800 Words
    • 4 Pages

    The purpose of this brief report is to explain the need for the internal control system within the organization. When controls are in place with an insurance and portfolio approach. An internal control system in any organization is a way to regulate, to reduce lost, to minimize risks, and to accomplish the organizational goals and success (McCarthy, 2004). The majority of organizations depend on the insurance approach and the portfolio risk management approach. The company to manage a business risk is currently using these approaches. It is now being recommended that the company make a transition in order to capture the benefits of an internal control system. Explained below are the two types of currently used approaches, insurance and portfolio, that are used within the organization.…

    • 800 Words
    • 4 Pages
    Good Essays
  • Satisfactory Essays

    Use COSO’s eight ERM components – Internal Environment, Objective Setting, Event Identification, Risk Assessment, Risk Response, Control Activities, Information and Communication, and Monitoring ---to evaluate EDS’ risk management processes under Brown. Prepare a report using Simons’ (1999) risk exposure calculator to assess EDS’ internal environment and Simon’s levers of control when discussing their control activities.…

    • 303 Words
    • 2 Pages
    Satisfactory Essays
  • Powerful Essays

    Stoneburner, G., Goguen, A., and Feringa, A. (2002). "Risk Management Guide for Information Technology Systems." NIST.…

    • 1974 Words
    • 8 Pages
    Powerful Essays
  • Satisfactory Essays

    Unit 6 Lab

    • 727 Words
    • 2 Pages

    A big point of focus in your risk assessment should be the service you provide to your customers because without them, your company cannot survive. In this case, your customers purchase electronics parts from you. If your online ordering service goes down, or the systems that build your parts…

    • 727 Words
    • 2 Pages
    Satisfactory Essays
  • Good Essays

    COBIT can be used for a wide range of enterprise needs, including information security, regulatory compliance, risk management and financial processing. In order to meet these needs on a global scale, IT managers and business owners needed a standard set of best practice guidelines. These guidelines need to allow them to respond to the complex and rapidly changing business environments and validate processes…

    • 361 Words
    • 2 Pages
    Good Essays
  • Satisfactory Essays

    2. There is a reliable way to track and respond to strategic risk which is an Enterprise Risk Management…

    • 440 Words
    • 2 Pages
    Satisfactory Essays
  • Powerful Essays

    Enterprise risk management (ERM) has become a critical practice in organizations that are dedicated to managing uncertainty and its effect on achieving organizational objectives. ERM helps organizations focus on the most relevant risks to achieving an organization’s goals and objectives, both from an operational, as well as a strategic, perspective. How much risk an organization assumes—either knowingly or unwittingly— plays a large part in whether that uncertain future outcome actually improves or worsens the organization’s position. It is therefore crucial for an organization to define and determine its Risk tolerance levels since it will help the organization make major decisions based on what has determined to be acceptable risk.…

    • 1635 Words
    • 7 Pages
    Powerful Essays
  • Good Essays

    Risk Management

    • 622 Words
    • 3 Pages

    To assess risks and vulnerabilities with the operating IT facilities we must create a mitigation plan. The mitigation plan will ensure what actions or steps to take when a risk were to occur. If the company were to experience risk such as fire, users outages, remote access, opening unknown e-mail attachment or have equipment failure, the mitigation plan will let you know…

    • 622 Words
    • 3 Pages
    Good Essays
  • Powerful Essays

    “Both risk governance and regulatory requirements emphasize the need for an effective risk management plan. And to effectively manage risk, it is important that definitions of the risk management plan objectives are clear from the start, so that the plan can head in the right direction. Risk management of information assets also provides a strong basis for information security activities, such as controlling risk to the confidentiality, integrity, and availability of information aligning mitigation efforts with business objectives, and providing cost-effective solutions after analyzing security risks” (University of Phoenix - Skillsoft®, 2012).…

    • 1234 Words
    • 5 Pages
    Powerful Essays
  • Satisfactory Essays

    All companies are practicing some level of risk management, either on a formal basis, with policies,…

    • 700 Words
    • 3 Pages
    Satisfactory Essays
  • Good Essays

    Risk management

    • 773 Words
    • 3 Pages

    The main purpose of risk management is to prevent, minimize and eliminate unacceptable risks. Risk management consists of analyzing, assessing, controlling and avoiding. In order to properly manage future events, an organization will typically use a combination of risk assumption, risk avoidance, and risk transfer. Risk management is essential any time an event manager analyzes and attempts to assess potential losses in an investment, and then takes the appropriate actions in order to minimize and prevent risks- whether it is losses of capital, to accident prevention.…

    • 773 Words
    • 3 Pages
    Good Essays
  • Satisfactory Essays

    Use the COBIT PO9 controls as a guide to define the scope of risk management for an IT infrastructure…

    • 1165 Words
    • 6 Pages
    Satisfactory Essays
  • Powerful Essays

    To improve the organisation process Committee of Sponsoring Organizations (COSO) provide second control framework it called Enterprise Risk Management – Integrated Framework (ERM). ERM is the procedure of the board of the managers and management that can use the set of the plan, find event that can gave effect the entity, it also provide the equitable the company archive their activity objective and goals company. The basic that can practise is companies are made to make value of the owner, management must make a decision how much that they can accept so that they can create the values. Third is results risk, he negative affects the company’s talent to create or preserve the…

    • 1907 Words
    • 8 Pages
    Powerful Essays
  • Better Essays

    This has led to the formation of policies and procedures by the board. An Audit Risk and Compliance Committee was created to circumvent the potential loss from subsequent risk. This committee was further divided into, the Strategic Risk Committee, responsible for strategic risk and the Audit and Compliance Committee, responsible for complying with risk policies and procedures determined by the board. This group ensures risk management aligns with company strategy and they liaise closely with the Risk Management Department, the Internal Audit Department and the Management Risk Committee. (UTC,…

    • 1904 Words
    • 8 Pages
    Better Essays