Arc Flash Risk Assessment Template: 2026 Guide for US Facilities
On a Tuesday morning in October 2024, a 38-year-old maintenance electrician at a Midwest … Read more
Enterprise risk management (ERM) is the discipline of identifying, assessing, and treating the full portfolio of risks that could prevent an organization from meeting its strategic objectives — financial, operational, strategic, compliance, and emerging risks alike. Unlike siloed risk functions, ERM gives boards and executives a single, integrated view of exposure so capital, controls, and management attention can be allocated where they move the needle most.
A mature ERM programme rests on three foundations. First, a governance framework — typically ISO 31000 or COSO ERM — that defines roles, escalation paths, and the three lines of defence. Second, a clear risk appetite statement that translates board tolerance into quantitative limits business units can actually manage against. Third, a repeatable risk management lifecycle covering identification, assessment, treatment, monitoring, and reporting.
Operationally, ERM depends on disciplined risk assessment — inherent vs residual scoring, control effectiveness testing, and scenario analysis — to keep the risk register honest. It also connects to sibling disciplines: business continuity management covers how the organisation survives disruption, information security management handles cyber and data risks, and governance, risk, and compliance (GRC) integrates the tooling and reporting that sits above all three.
Use this hub to explore frameworks, practitioner templates, certification guides (CRISC, FRM, PRM), and software comparisons. Whether you’re stood up a new ERM function or maturing an existing one, the resources below cover the methods, metrics, and reporting practices used by risk teams across financial services, healthcare, technology, and the public sector.
On a Tuesday morning in October 2024, a 38-year-old maintenance electrician at a Midwest … Read more
In 2018, a 300-bed hospital in Maryland cut its 30-day chronic obstructive pulmonary disease … Read more
On 10 October 2024, TD Bank agreed to pay approximately $3.09 billion in combined … Read more
Risk assessment dashboards are powerful tools that provide valuable insights into potential risks and … Read more
On 7 May 2021, Colonial Pipeline’s IT network was breached through a single VPN … Read more
The NFPA 99 Risk Assessment Tool ensures healthcare facilities’ safety and security. Developed by … Read more
The necessity to protect buildings and infrastructure from the devastating impacts of lightning strikes … Read more
Risk management is essential to internal audit, ensuring organizations effectively identify and address potential … Read more
On February 21, 2024, Change Healthcare’s systems were locked by BlackCat ransomware, paralyzing the … Read more
CIS Risk Assessment, also known as CIS RAM, is a method utilized by organizations … Read more
Figure 1. ACH network payment volume 2020-2024. Growing volume raises the regulatory bar on … Read more
OT Risk Assessment is an essential process for organizations that operate in the field … Read more