ISO 31000 Risk Management Brochure

Page 1

Global Leader in Risk, Compliance and Anti-Bribery Management System Certification and Training

BROCHURE

ISO 31000:2018

RISK MANAGEMENT IMPLEMENTATION & TRAINING Mitigate risks & improve your business continuity. Implementing ISO 31000:2018 or taking training can help organisations and risk professionals increase the likelihood of achieving objectives, improve the identification of opportunities and threats and effectively allocate and use resources for risk treatment


GIVE YOUR BUSINESS A COMPETITIVE ADVANTAGE -WITH ISO WHY GET CERTIFIED TO ISO STANDARDS? ISO stands for International Organisation for Standardisation which talks about system’s basic requirements that should be documented and followed rigorously within the scope of the company. These system can be for Quality/ Environment/ Safety or any other aspects of a company. ISO has developed over 23147 International Standards. When a company implement these systems and applies for certification through an ISO certification body, it needs to clear surveillance audit as well as certification audit. Certification body audits the company’s system and adherence for bare minimum requirements mentioned in ISO. On successfully completion of audit, company got ISO certification from certification body. This cycle is repeated every three year to check sustenance of system along with surveillance audit, every year. At ABAC® we can provide you with training and certification on ISO 37001 Anti-Bribery Management Systems (ABMS), ISO 31000 Risk Management and ISO 19600 Compliance Management System. ABAC® works with clients of all industries, sizes and organisation types to develop robust programs using the latest techniques and best practices that help foster an ethical business culture.

Certification to ISO standards or British standards demonstrates that your organisation works to international or national best practice, demonstrating your credibility and competence to stakeholders and customers. Certifications are legally obligated in some industries, while in other industries they are often included in tender requirements. The guidelines set forth by the standards are applicable to all types and sizes of organisations and aren’t restricted by industry, risk exposure or geographic reach. GET A FREE QUOTE NOW!

ISO CERTIFICATION & TRAINING BENENITS #1 IMPROVE BUSINESS EFFICIENCY

ISO certification implementation enhances functional efficiency of an organisation. ISO certification agency helps you develop SOP’s & work Instructions for all your processes. ISO implementations help to manage the resources effectively, as you become able to utilise all your resources to its maximum extent.

#2 BUILD CREDIBILITY INTERNATIONALLY ISO certification helps your organisation helps credibility to build overseas business.

#3 BETTER CUSTOMER SATISFACTION

ISO standards are designed to enable an organisation to serve their customers better and hence increase customer satisfaction. ISO certification enhances customer satisfaction by meeting customer requirements.

#4 IMPROVE PRODUCT QUALITY

Since product quality matches the international level, this can reduce the risk order rejections which can occur due to the flaw in the product.

#5 GET GOVERNMENT TENDERS ISO certificate is now required in a majority of government tenders.

#6 IMPROVE MARKETABILITY

ISO certification helps to improve the credibility of business with a current & new client which leads to creating niche market for business. LET’S TALK!


INTRODUCING

ISO 31000:2018 RISK MANAGEMENT

ISO 31000:2018 is an international standard published in 2009 that provides principles and guidelines for effective risk management. It outlines a generic approach to risk management, which can be applied to different types of risks (financial, safety, project risks) and used by any type of organisation. The standard provides a uniform vocabulary and concepts for discussing risk management. It provides guidelines and principles that can help to undertake a critical review of your organisation’s risk management process.

THE 31000 STANDARD INNOVATES IN SEVERAL AREAS: It provides a new definition of risk as the effect of uncertainty on the possibility of achieving the organisation’s objectives, highlighting the importance of defining objectives before attempting to control risks, and emphasising the role of uncertainty It introduces the notion of risk appetite, or the level of risk which the organisation accepts to take on in return for expected value It defines a risk management framework with different organisational procedures, roles and responsibilities in the management of risks It outlines a management philosophy where risk management is seen as an integral part of strategic decision-making and the management of change

LEVERAGE ISO 31000:2018 TO IMPROVE YOUR BUSINESS CONTINUITY MANAGEMENT PROGRAM... Implementing ISO 31000:2018 standard means that you are protecting your organisation from potential risks that could endanger the operational efficiency, governance, and stakeholders’ confidence. It will help strengthen and achieve the strategic objectives of your organisation by establishing a risk-based system of values whilst ensuring the consistency and the effectiveness of management across all its areas such as IT, HR, compliance, quality, health and safety, business continuity, etc. . Enable your organisation to: Enhance risk management will support achieving goals & objectives

Increase the likelihood of achieving objectives

Create a consistent basis for decision making & planning

Reduce costs through proper risk management

Productively identify the opportunities & threats

Identify & mitigate the risk throughout the organisation

Respond to change effectively & find viable solutions

Gain stakeholder confidence & trust

Create & protect value

GET A FREE QUOTE NOW!


ORGANISATIONS OF ALL TYPES & SIZES FACE INTERNAL & EXTERNAL FACTORS THAT DIRECTLY IMPACT WHETHER AN ORGANISATION CAN ACHIEVE THEIR OBJECTIVES OR NOT. ISO 31000 serves as a guide for the design, implementation and maintenance of risk management, ISO 31000:2018 describes a systematic and logical process, during which organisations manage risk by identifying it, analysing it, and then make a determination as to mitigating the risk treatment in a way that is consistent with their risk appetite. An organisation can implement risk management across the entire company, and it can do so at any time. It can also tailor these controls to specific areas and activities in the business. Trust and reputation are a critical part of the relationship between an organisation and its stakeholders. Simple compliance does not fully meet the expectations most stakeholders have with their organisations, and so it is important that entities demonstrate a fuller commitment to effective risk management. ISO 31000 is a perfect way to show that commitment. More specifically, the implementation and ongoing maintenance of this Standard will enable an organisation to:

Establish a reliable basis for decision making

Improve the identification of opportunities & threats

Improve organisational resilience

Improve organisational effectiveness & efficiency

GET A FREE QUOTE NOW!

Increase the likelihood of achieving objectives


RISK TRAINING BASED ON ‘ISO 31000:2018 RISK MANAGEMENT’ – GUIDELINES ISO 31000 was developed by hundreds of experts in risk mitigation, from 30 countries. This international effort produced a standard that is worldwide & represents best practices & leading operations for risk management. Organisations can trust that they are following a tested, robust standard to increase success.

TRAINING OVERVIEW Our ISO 31000 Risk Management Awareness training course will acquaint delegates with the principles of, and framework for risk management, providing delegates with an awareness of how risk management can be applied effectively to improve the identification of opportunities and threats within the organisation, and make effective use of resources to control risk, to enhance the company’s performance. Risk Management is the process whereby an organisation identifies, assesses and prioritises risks associated with a process, project or product throughout its life-cycle, from project definition, process / product design to project development / manufacture, through to the end user application or use by the customer.

Historically linked to health and safety and financial risk, risk management is being increasingly applied to all organisational operations, no matter what the technical discipline, and has become the cornerstone to ISO 9001:2015. It is explicitly embedded in the Environmental Management System standard ISO 14001 and ISO/IEC 27001, the standard for Information Security Management. It is also included in Annex SL-Proposals for Management Systems Standards which encourages a more holistic approach to managing business risks and opportunities. Although there are a number of general and industry specific standards for risk management, this course is based on ISO 31000:2018, Risk management – Principles and guidelines, which provides a generic foundation of the principles, framework and process for managing risk applicable to all organisations.

This interactive and practical course is designed to provide delegates with a sound knowledge of the principles of risk management and practical application of the risk management process, in order to:

Appreciate & recognise business risk as a whole rather than in isolation & effectively communicate this within the organisation Understand the fundamental components of risk management & how risk management is applied within a management system structure Decide on the most appropriate controls or treatments of risk & identify appropriate risk assessment tools to use within their organisation Effectively apply a risk management process to the management system & project/product life-cycles ENROL NOW HERE!


Business Process Owners Business Finance Managers Project Managers Individuals managing information security or conformity within an organisation Risk managers, consultants & others responsibility for mitigating risk, & looking to help an organisation implement ISO 31000 Regulatory Compliance Managers Auditors & compliance professionals who evaluate the effectiveness of the organisation’s risk management processes ISO 31000 auditors wanting to understand the process of Risk Management implementation CxO & Senior Managers in charge of Risk Management for an enterprise

WHO IS ISO 31000 FOR?

ISO 31000 is an effective tool for everyone involved with the business, including:

Directors, owners, managers & everyone responsible for meeting business goals & helping the organisation be successful ENROL NOW HERE

FURTHER DETAILS: Duration: 32 hours Material access: 30 days Level: Foundation Examination: Yes Eligibility: No prior requirements After the Assignment evaluation, the respective certificate will be issued in 5 working days

ISO 31000 RISK MANAGEMENT TRAINING COURSE KEY TOPICS • The Resilient Organisation • Definitions of risk & Risk Management ISO 31000:2018 • The importance of culture, communication and behaviour in seeking an effective Risk Management structure • Risk Management Framework and process • Responsibilities • Accountabilities • Performance measures • Alignment between Risk Management policy and the organisation • Risk attitude – pursue, retain or avoid with respect to risk appetite & tolerance • Barriers to Risk management implementation • Risk reporting and the limitations of risk reporting tools & methodologies ENROL NOW HERE!


MASTER THE IMPLEMENTATION OF RISK MANAGEMENT PROCESS MODEL IN AN ORGANISATION WHILE CONFORMING TO THE ISO 31000 STANDARD!

Get acquainted with the complete life cycle & perform risk assessments effectively so as to detect & manage risks in time. ENROL NOW HERE

BY THE END OF THIS ISO 31000 TRAINING COURSE, DELEGATES WILL BE ABLE TO: Understand the basics of the concepts, approaches, standards, methods and techniques for the effective implementation of Risk Management Develop the necessary presentation & leadership skills enabling you to communicate your Risk Management findings to all levels & all stakeholders Determine your organisation’s appetite& tolerance for risk Understand the basics of how Risk Management relate to crisis management, business continuity & other key business areas The ISO 31000 risk management training course can be held at your premises, a venue of your choice or online on your preferred date. The course includes activities that allow your team to discuss the risks within your organisation and how to mitigate these. For more on a tailored package contact us now! GET A FREE QUOTE NOW!


BENEFITS OF ISO 31000:2018 One of the goals for most organisation is to achieve their business objectives while also protecting their assets. ISO 31000 helps them do just that, by guiding the implementation of an effective risk management strategy. This also helps the entity foster a risk management culture, communicating to employers, stakeholders and others that the organisation is proactive in mitigating risk reducing the incidence of corruption and other negative factors. When implemented and maintained in accordance with this Standard, the management of risk enables all organisations to, for example:

Increased likelihood of achieving objectives

Compliance with all relevant legal & regulatory requirements & international norms

Enhance health & safety performance as well as environmental protection

Enhance the company’s reputation & gain competitive advantage in competitive bidding for commercial tenders

Encouraged proactive management Improve organisational resilience Improved the identification of opportunities & threats

Minimise losses

Improve governance

Improved mandatory & voluntary reporting

Enhance the company’s reputation & gain competitive advantage in competitive bidding for commercial tenders

Improved stakeholder confidence & trust

Effective allocation & use of resources for risk treatment

Improve loss prevention & incident management

Improve organisational learning

Improve operational effectiveness & efficiency

Be aware of the need to identify & treat risk throughout the organisation

Encourage proactive management

Establish a reliable basis for decision making & planning

Guidance for internal or external audit programmers

Increase public confidence in the organisation by demonstrating your management capabilities in protecting the business from internal & external threats

Achieve compatible risk management practices between organisations & nations

Awareness of the need to identify & treat risk throughout the organisation

It is a clear indicator to your customers, & other stakeholders that as an organisation, you are committed to managing risks in every part of your business. GET A FREE QUOTE NOW!

Improve financial reporting

Improved controls


PROVE THAT YOU COMPLY GET CERTIFIED TO ISO STANDARDS Your business, whether public or private should strongly consider ISO certification (ISO 31000, ISO 19600, and/ or ISO 37001). Any of these processes would provide full assurance that you succeeded in establishing, implementing, maintaining, reviewing and improving your Anti-Bribery Management System - ABMS (as per the ISO 37001 standard requirements), your Risk Management (as per the ISO 31000 standard requirements) and your Compliance Management System (as per the ISO 19600 standard requiremets). Any of the standards require organisations to implement procedures on a reasonable and proportionate basis according to the type and size of the organisation, and the nature and extent of risks faced. It applies to small, medium and large organisations in the public and private sector and can be implemented in any country.

STEP

01

No hidden fees such as expenses or management fees Friendly, experienced auditors who work efficiently to minimise downtime & write reports in plain language Friendly, experienced auditors who work efficiently to minimise downtime & write reports in plain language

02

STEP

03

MORE ON ISO CERTIFICATION

STEP

06

Your organisation can opt to perform a pre-assessment audit. This pre-audit identifies any possible gaps of your current framework or processes to meet the requirements of the standard. This increases your chance of successfully passing Stage 2 Audit.

STAGE 1 AUDIT

At Stage 1 Audit, we conduct a documentation review - i.e. your existing policies and procedureswhich will produce a detailed audit report. The report will confirm whether you successfully pass to Stage 2.

STEP

07

STEP

08

STAGE 2 AUDIT STEP

04

30 years of experience with offices worldwide ​ ave time & money with our multiS standard auditors

At least three months before the commencement of Stage 1 Audit, our Client Account Manager will send an Audit Agenda. This agenda contains dates and details of the audit plan for confirmation from your side.

PRE-ASSESSMENT AUDIT (OPTIONAL) STEP

WHY ABAC® CERTIFICATION? We are a UKAS and EIAC accredited certification body (ISO 37001 ABMS)

RECOMMENDATION FOR CERTIFICATION

AUDIT CONFIRMATION

Stage 2 Audit is conducted on-site. The objective is to evaluate your management system implementation and its effectiveness across the business. If you successfully meet the audit requirements, you will move to Step 6.

STEP

09

FOLLOW-UP AUDIT STEP

05

A follow-up audit will be conducted if major non-conformities are raised during Stage 2. To correct any major non-conformities our auditors will provide a Corrective Action Plan. If you were unsuccessful to complete this Plan, you will move to Step 3. This follow-up audit can be conducted whenever it is required.

STEP

10

If the organisation is compliant with the Standard requirements, a recommendation for certification is made. For minor non-conformities, if a Corrective Action Plan is place, this will not delay the certificate.

CERTIFICATION DECISION

Certification Committee will issue the respective Standard certificate.

AWARDING CERTIFICATE

The awarded certificate will have a unique certificate number and seal. The status of given certification can be verified by emailing info@ABACgroup.com or online abacgroup.com/verify-certificate/.

CONTINUAL IMPROVEMENT & SURVEILLANCE

An audit surveillance is planned over a three-year period and will ensure that the organisation still complies with the standard - the registration period is three years from the date of the certificate.

RE-CERTIFICATION AUDIT

After the initial registration period is completed, the renewing of our ABAC certification is seamless. For more information regarding re-certification please contact info@ABACgroup.com LET’S TALK!


HELPING YOU MAKE INFORMED, SOUND DECISIONS Risk management is a full-time, ongoing endeavor for organisations in today’s business world, and it poses constant challenges. Unfortunately, fraud, bribery and corruption are major factors affecting businesses and agencies of all sizes and industries. Being proactive against these risks can mean the difference between success and ruin. The Risk Management and ABMS Playbook provides tools, checklists, case studies, FAQs and other resources to help you lead your organisation into better preparedness and compliance. Our experts share their own plays to help you reduce risk, thereby preventing and detecting more fraud. The first section address risk management directly: proper third-party due diligence and critical background screening take center stage for this game plan. Section two tackles bribery and corruption, with tried-and-true measures you can implement to stay better protected and in compliance with strict laws and regulations. DOWNLOAD EBOOK NOW


Certification and training to ISO standards demonstrates that your organisation works to international or national best practice, demonstrating your credibility and competence to stakeholders and customers. Certifications are legally obligated in some industries, while in other industries they are often included in tender requirements. At ABAC® we can provide you with training and certification for the following:

ISO 37001:2016 ANTI-BRIBERY MANAGEMENT SYSTEMS

Designed to help your organisation implement an antibribery management system (ABMS), and/or enhance the controls you currently have. ISO 37001 helps to reduce the risk of bribery occurring and can demonstrate to your stakeholders that you have put in place internationally recognised good-practice anti-bribery controls. READ MORE

ISO 31000:2018 RISK MANAGEMENT SYSTEM

ISO 31000 is an international standard published in 2009, and updated in 2018, that provides principles and guidelines for effective risk management. It outlines a generic approach to risk management, which can be applied to different types of risks (financial, safety, project risks) and used by any type of organisation. It provides guidelines and principles that can help to undertake a critical review of your organisation’s risk management process. READ MORE

ISO 19600:2014 COMPLIANCE MANAGEMENT SYSTEM

ISO 19600 is a widely-accepted standard that provides guidance for establishing, developing, implementing, evaluating, maintaining and improving an organisation’s compliance management program. It covers all compliance-related issues including anti-trust, fraud, misconduct, export control, anti-money laundering, and other unexpected risks which might affect your business. READ MORE

ISO 37002 WHISTLEBLOWING MANAGEMENT SYSTEM

Under Development... LET’S TALK

ISO 37000 GUIDANCE FOR THE GOVERNANCE OF ORGANISATIONS

Building TRUST. Ensuring COMPLIANCETM. Since 1990, Corporate Research and Investigations Limited “CRI® Group” has safeguarded businesses from fraud and corruption, providing insurance fraud investigations, employee background screening, investigative due diligence, third-party risk management, compliance and other professional investigative research services. MEMBERSHIPS, CERTIFICATIONS & AWARDS CRI® Group always seeks the highest level accreditations, certifications, and maintains relationships with leading global organisations in the fields of due diligence, fraud investigation, forensic accounting and more to ensure the best quality of the services.

Under Development... LET’S TALK

In 2016, CRI® Group launched Anti-Bribery Anti-Corruption (ABAC®) Center of Excellence - an independent certification body established for ISO 37001:2016 Anti-Bribery Management Systems, ISO 19600:2014 Compliance Management Systems and ISO 31000:2018 Risk Management, providing certification. ABAC® operates through its global network of certified ethics and compliance professionals, qualified auditors and other certified professionals. The ABAC® holds the following accreditations, certifications, memberships and awards:

11 Partners in Corporate Governance


HEADQUARTERS

ABAC Center of Excellence Limited 2nd Floor, 5 Harbour Exchange Square South Quay, London E14 9GE UK t: +44 207 868 1575 | e: info@ABACgroup.com

LET’S TALK!

ABAC® Center of Excellence Huma Khalid, Scheme Manager e: huma.k@ABACgroup.com | t: +44 777 652 4355, +971 521 042 433 Huma, as Scheme Manager, is responsible for leading ABAC® and specifically, how ABAC® delivers on its commitment to counter bribery and corruption. Huma’s responsibilities include planning and overseeing all aspects of the ABAC® program, which include Certification and Training. Additionally, Huma is overseeing the Compliance Department for the implementation, management and internal audit of CRI Group’s and ABAC® compliance programs. These programs are consistent with regulatory requirements and executive management’s commitment to maintaining an ethical culture and a high standard of compliance.

Zafar I. Anjum, Group Chief Executive Officer e: zanjum@CRIgroup.com | t: +44 758 8454959, +971 50 9038184 Zafar, Group CEO at CRI Group and ABAC® has been building a 30 years’ career in the areas of anti-corruption, fraud prevention, protective integrity, security, and compliance. Possessing both industry expertise and an extensive educational background (MS, MSc, CFE, CII, CIS, MICA, Int. Dip. (Fin. Crime), CII, MIPI, MABI), Zafar Anjum is often the first certified global investigator on the scene when multi-national EMEA corporations seek to close compliance or security gaps.


ABAC_ISO31000_Brochure_v.12.2.21

Ask us about compliance in depth:

abacgroup.com info@abacgroup.com

Building TRUST. Ensuring COMPLIANCE.TM

Powered by:


Turn static files into dynamic content formats.

Create a flipbook
Issuu converts static files into: digital portfolios, online yearbooks, online catalogs, digital photo albums and more. Sign up and create your flipbook.