08.01.2015 Views

Guidance Paper - The Institute of Risk Management

Guidance Paper - The Institute of Risk Management

Guidance Paper - The Institute of Risk Management

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Contents<br />

Introduction 4<br />

About IRM 5<br />

About the Author 5<br />

Executive Summary 7<br />

Principles and approach 7<br />

<strong>Risk</strong> appetite and performance 8<br />

Putting it into practice 9<br />

Five tests for risk appetite<br />

frameworks 9<br />

Questions for the boardroom 10<br />

I Background 11<br />

<strong>The</strong> UK Corporate<br />

Governance Code 11<br />

<strong>Risk</strong> appetite and risk tolerance 14<br />

A word <strong>of</strong> caution 15<br />

Key terms and phrases 15<br />

Background - questions for<br />

the boardroom 15<br />

II Designing a risk appetite 16<br />

<strong>Risk</strong> capacity 17<br />

<strong>Risk</strong> management maturity 19<br />

Multiple risk appetites 21<br />

<strong>Risk</strong> culture 21<br />

Key terms and phrases 21<br />

Designing a risk appetite -<br />

questions for the boardroom 22<br />

III Constructing a risk appetite 23<br />

Levels <strong>of</strong> risk appetite 23<br />

Strategic 23<br />

<strong>Risk</strong> taxonomies 24<br />

Tactical 25<br />

Project or operational 25<br />

Propensity to take risk 25<br />

Propensity to exercise control 25<br />

Balanced risk 26<br />

<strong>Risk</strong> management clockspeed 26<br />

Control issues 27<br />

Measurement 27<br />

Strategic 29<br />

Tactical and operational 29<br />

Data 29<br />

Constructing a risk appetite -<br />

questions for the boardroom 29<br />

IV Implementing a risk appetite 30<br />

Sketch 31<br />

Stakeholder engagement 31<br />

Develop 32<br />

Approve 32<br />

Implement 32<br />

Report 32<br />

Review 32<br />

Implementing a risk appetite -<br />

questions for the boardroom 32<br />

V Governing a risk appetite 33<br />

Governing risk appetite -<br />

questions for the boardroom 34<br />

VI <strong>The</strong> journey is not over 35<br />

<strong>The</strong> journey is not yet over - final<br />

questions for the boardroom 35<br />

Bibliography 36<br />

Appendix A: Determining the risks<br />

the board is willing to take 37<br />

Responsibilities for risk taking 37<br />

Process for managing risk taking 38<br />

Appendix B: List <strong>of</strong> respondents<br />

to consultation 39<br />

Table <strong>of</strong> Figures<br />

Figure 1 - Performance over time 14<br />

Figure 2 - Possible outcomes 14<br />

Figure 3 - <strong>Risk</strong> Universe 14<br />

Figure 4 - <strong>Risk</strong> Tolerance 14<br />

Figure 5 - <strong>Risk</strong> Appetite 14<br />

Figure 6 - <strong>Risk</strong> Appetite in Context 16<br />

Figure 7 - <strong>Risk</strong> Culture Diagnostic 22<br />

Figure 8 - <strong>Risk</strong> Appetite - Main Issues 23<br />

Figure 9 - Shareholder Value Model (1) 28<br />

Figure 10 - Shareholder Value Model (2) 28<br />

Figure 11 - Shareholder Value Model (3) 28<br />

Figure 12 - Stages <strong>of</strong> Development<br />

<strong>of</strong> <strong>Risk</strong> Appetite 30<br />

Figure 13 - Governing a <strong>Risk</strong> Appetite 33<br />

6

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!