APAC CIOOutlook

Advertise

with us

  • Technologies
      • Artificial Intelligence
      • Big Data
      • Blockchain
      • Cloud
      • Digital Transformation
      • Internet of Things
      • Low Code No Code
      • MarTech
      • Mobile Application
      • Security
      • Software Testing
      • Wireless
  • Industries
      • E-Commerce
      • Education
      • Logistics
      • Retail
      • Supply Chain
      • Travel and Hospitality
  • Platforms
      • Microsoft
      • Salesforce
      • SAP
  • Solutions
      • Business Intelligence
      • Cognitive
      • Contact Center
      • CRM
      • Cyber Security
      • Data Center
      • Gamification
      • Procurement
      • Smart City
      • Workflow
  • Home
  • CXO Insights
  • CIO Views
  • Vendors
  • News
  • Conferences
  • Whitepapers
  • Newsletter
  • CXO Awards
Apac
  • Artificial Intelligence

    Big Data

    Blockchain

    Cloud

    Digital Transformation

    Internet of Things

    Low Code No Code

    MarTech

    Mobile Application

    Security

    Software Testing

    Wireless

  • E-Commerce

    Education

    Logistics

    Retail

    Supply Chain

    Travel and Hospitality

  • Microsoft

    Salesforce

    SAP

  • Business Intelligence

    Cognitive

    Contact Center

    CRM

    Cyber Security

    Data Center

    Gamification

    Procurement

    Smart City

    Workflow

Menu
    • Compliance
    • Cyber Security
    • Hotel Management
    • Workflow
    • E-Commerce
    • Business Intelligence
    • MORE
    #

    Apac CIOOutlook Weekly Brief

    ×

    Be first to read the latest tech news, Industry Leader's Insights, and CIO interviews of medium and large enterprises exclusively from Apac CIOOutlook

    Subscribe

    loading

    THANK YOU FOR SUBSCRIBING

    • Home
    Editor's Pick (1 - 4 of 8)
    left
    Welcoming Big Data Technology amidst Changes

    Darren Cockrel, CIO, Coyote Logistics

    Leveraging Compliance to Your Advantage

    Mark Bloom, Global CIO, Aegon

    Demystifying the Role of IT in Millennial Organizations

    Jeff Fithian, VP, Strategic Initiatives and CIO, Dynamic Materials Corporation

    Productivity and Security- Can you ever have both?

    Julie Cullivan, SVP, Business Operations & CIO, Fireeye

    Lessons Learned from a CIO

    John Miller, Vice President and CIO, American Textile Company

    New Hr Capabilities To Face Evolving Technologies

    Anti Deisnasari, Director Of Compliance, Seabank Indonesia

    Strengthening The Compliance Fortress In The Banking Sector

    Chuan Lim Ang, Managing Director And Sg Head Of Compliance, Cimb

    Navigating Legal Challenges By Adapting To Technological Shifts

    Valerie Feria Amante, Chief Legal, Ethics & Compliance Officer, Jollibee Group Of Companies

    right

    What is the point of Enterprise Risk Management?

    Deven Chitaliya, Vice President, Risk Management, Olam International

    Tweet
    content-image

    Deven Chitaliya, Vice President, Risk Management, Olam International

    Thousands of satellites orbit earth, gathering and distributing data, and facilitating effective communications. This is analogous to the mission of boards and management, who seek to gather as much intelligence as possible to effectively manage their organisations.

    All organisations must manage risks effectively to endure and thrive. In fact, all would agree that risk management has to be embedded into business operations. Over the past decade, many have been making the case for an Enterprise Risk Management (ERM) framework. Despite ongoing conversations, confusion remains about what ERM is and how it differs from traditional, tried-and-tested methods of risk management. If businesses are already enforcing risk management, what is the point of ERM?

    Proponents of ERM, including Olam, aren’t suggesting that organisations haven’t been managing risks well. Instead, ERM is about thinking differently – considering risks that don't fall neatly along business lines and can affect the entire organisation. It is a strategic tool that is especially crucial for senior management and boards in tackling risks that may impact long-term, strategic success.

    Traditionally, organisations assign risk management to business unit leaders within their areas of responsibility. We call this as “silo” or “stove-pipe” risk management. For example, the Chief Technology Officer is responsible for managing risks related to information technology operations; the Treasurer is responsible for managing risks related to financing and cash flow, and so on.

    But risk does not respect organisation charts; it can be anywhere and take any form. Some risks “fall between siloes”, unnoticed by individual leaders. Others can affect different units differently – managers may not know that a decision taken for one silo can cause or escalate risk in another. The upshot is that risk can go unnoticed or not be effectively tackled until a catastrophic event is triggered.

    All Organisations Must Manage Risks Effectively To Endure And Thrive

    Another challenge with traditional risk management is that although most business leaders understand the concept of “risk-and-return”, most struggle to connect risk management to organisational level strategic planning. Risk management is often internally focused and granular – looking within the four walls of the organisation, with minimal focus on risks that may emerge from outside the business.

    Over the last decade, some business leaders have recognised these potential shortcomings and have begun to embrace ERM as a way to further strengthen risk oversight. They realise it is simply too late to wait until a risk event occurs to act.

    Simply put, ERM is a framework to effectively identify and manage risks and seize opportunities to achieve the organisation’s goals. It seeks to build a top-down, enterprise view– hence the name - by creating a basket of all the risks that may impact business viability, whether negatively or positively. The process broadly involves identifying risk events or situations relevant to the organisation's goals, assessing them by likelihood and magnitude of impact, determining an appropriate response strategy, and monitoring progress. Coordination is key, and the output from this process is integrated to provide a clear picture of risk for stakeholders and improve risk management for the organisation.

    Given the goal of ERM, responsibility for setting the tone and implementation rests on senior management and boards. They have the best enterprise view and must take charge of understanding, managing, and monitoring the most significant risks the group faces. But again, as the name suggests, all functions must play their part. For example, the risk department is vital in evaluating risk management processes and advocating continued improvement. Other control functions can help in regular assessments and to develop an engagement plan at various levels that is continually updated.

    By identifying and proactively addressing enterprise risks and opportunities, businesses protect and create value for their stakeholders, including owners, employees, customers, regulators, and society. This is especially crucial in today’s increasingly VUCA (volatile, uncertain, complex, and ambiguous) operating environment. The volume and complexity of organisational risk are growing at an unprecedented pace. The recent crisis caused for hundreds of companies worldwide by the WannaCry and Petya ransomware is just one example among many. At the same time, expectations for more effective risk oversight on management and business leaders have become much higher.

    Because risk constantly emerges and evolves, it is important to understand ERM implementation is an ongoing process. Even though ERM has become more popular, some unfortunately view it as a project with a specific beginning and an end. While the initial launch of an ERM process might require aspects of project management, the benefits can only fully realised when management thinks of it as an active and alive process, with constant updates and improvements.

    As a leading global agri-business operating in 47 product platforms across 70 countries, Olam is firmly committed to ERM as a complementary catalyst for our continued growth and viability, in buttressing our risk management capabilities. We hope more organisations will join in embracing ERM to generate long-term, sustainable value for stakeholders.

    See Also:
    Top Risk Management Solution Companies in Europe
    Top Risk Management Consulting Companies in Europe
    tag

    Information Technology

    Enterprise Risk Management

    Weekly Brief

    loading
    Top 10 Compliance Solutions Providers in APAC - 2025
    ON THE DECK

    I agree We use cookies on this website to enhance your user experience. By clicking any link on this page you are giving your consent for us to set cookies. More info

    Copyright © 2025 APAC CIOOutlook. All rights reserved. Registration on or use of this site constitutes acceptance of our Terms of Use and Privacy and Anti Spam Policy 

    Home |  CXO Insights |   Whitepapers |   Subscribe |   Conferences |   Sitemaps |   About us |   Advertise with us |   Editorial Policy |   Feedback Policy |  

    follow on linkedinfollow on twitter follow on rss
    This content is copyright protected

    However, if you would like to share the information in this article, you may use the link below:

    https://compliance.apacciooutlook.com/views/what-is-the-point-of-enterprise-risk-management-nwid-4393.html