implementing an effective risk management strategy based upon knowledge peter scott

30
Implementing an effective risk management strategy based upon knowledge Peter Scott

Upload: grace-hodge

Post on 23-Dec-2015

214 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Implementing an effective risk management strategy based upon knowledge Peter Scott

Implementing an effective risk management strategy based

upon knowledge

Peter Scott

Page 2: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

What is Risk?

“Chance of bad consequences”

The concise Oxford Dictionary

Page 3: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

What is Knowledge?

“The sum of what is known”

The concise Oxford Dictionary

Page 4: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Risk

Management

Knowledge

Management

An integrated strategy

Page 5: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Law Firm Risks

Peop

le

Op

eration

alRegulatory

IT

Co

mp

etit

ion

/bu

sin

ess

Eco

no

mic

,p

olit

ical

,fi

scal

Financial

Asset

Reputational

Management

Page 6: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Risk/KM

Risks are inter-related

Failure to manage knowledge

involves widespread risk

KM is an essential part of an

integrated risk management

strategy

Page 7: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Example: Reputational Risk

OperationalPeopleRegulatoryIT Competition & Business MarketsEconomic, Political & FiscalFinancial Assets

Interaction with Knowledge/KM?

Page 8: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Law Firm Risks

Peop

le

Op

eration

alRegulatory

IT

Co

mp

etit

ion

/bu

sin

ess

Eco

no

mic

,p

olit

ical

,fi

scal

Financial

Asset

Reputational

Management

Page 9: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Management Risks

Is your management in control of its knowledge and managing your risk?

Page 10: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Your Risks?

Where does the knowledge relating to your risks reside?

Can you access it?

Can you capture it?

Can you maintain and upgrade it?

Page 11: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Implementing a Risk Strategy

DIAGNOSIS

Identification and assessment

MITIGATION

Control, transfer and avoidance

MONITORING

Tracking and reporting

When a risk crystallises

LIMITATION

Minimising the effect of

crystallised risks

Page 12: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Risk Identification Involves:

Being management drivenBrainstormingFacilitated discussionsQuestionnairesTop down/bottom up

Page 13: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Risk Diagnosis

Assess severity of high-level risks

Identify high level risks

Set criteria for assessing risks

Identify detailed risks

Assess severity of detailed risks

Risk map

Risk summary

Page 14: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Risk Assessment

Incidence - probabilityImpact - severity

Page 15: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Risk Mapping

Page 16: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Risk Mitigation

Designed to:ReduceAvoidAcceptTransfer

Page 17: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Risk mitigationRisk map

Risk summary

Consider impact/probability

correlation

Required controls

summary

Insurance requirements

summary

Contingency plan

requirements

Residual risk

summary

Consider available mitigation techniques

Page 18: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Monitoring involves

Tracking and reportingComparing actual outturns to preset indicatorsConfirming effectiveness of risk responsesReporting compliance and exceptions

Page 19: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Risk monitoringRequired controls

summaryContingency

plan requirements

Insurance requirements

summary

Set risk indicators and methods to monitor them

Annual Risk Management

Report

Page 20: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Limitation involves

Risk crystalisation scenarios Contingency plansLimitation proceduresPost event assessment

Page 21: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Use of IT Use an integrated risk management system to quantify, assess and control risk by :

streamlining diagnosis, mitigation and monitoring

embedding common risk management procedures

providing information access to all who need it

creating and maintaining one central, up to date risk database

Page 22: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Example – Risk Summary – an overview of risks

Page 23: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Example – Detailed Risks

Page 24: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Example - Controls

Page 25: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Example - Questionnaires

Page 26: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Example – Final Evaluation

Page 27: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Advantages of a formal risk management process?

Structured approach focuses on key risksElimination of redundant proceduresComfort / assurance to PI insurersUniversal application to all risk areasContinuous monitoring ensures management of risk is “lived” day to day

Page 28: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Risk/KM

Risk

Management

Knowledge

Management

Page 29: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Implementing a Risk Strategy

DIAGNOSIS

Identification and assessment

MITIGATION

Control, transfer and avoidance

MONITORING

Tracking and reporting

When a risk crystallises

LIMITATION

Minimising the effect of

crystallised risks

Page 30: Implementing an effective risk management strategy based upon knowledge Peter Scott

PETER SCOTT CONSULTING

Any questions?