Enterprise Risk Management (ERM) is a holistic methodology and framework (e.g. COSO) that enable risk management and internal controls from the perspective of the overall organization in a top-down approach.

  •   Internal Control Objectives: Operations, Reporting, Compliance
  •   Five Pillars of Internal Control: Control Environment, Risk            Assessment, Control Activities, Information and            Communication, Monitoring Activities
  •   Application Levels: Entity, Division, Operating Units, Functions


Second Set of Information:
Risk Management Framework
and Its Implementation

  •   Framework Components
  •   Implementation Strategy
  •   Monitoring and Review
  •   Continuous Improvement

Third Set of Information: Risk Assessment and Mitigation Strategies.

  •   Risk Identification Methods
  •   Assessment Techniques
  •   Mitigation Approaches
  •   Implementation Guidelines