Dealing with IT complexity and innovation: Delivering business resilience and customer outcomes
Tara Cahill
Dealing with IT complexity and innovation: Delivering business resilience and customer outcomes
Foreword
Preface
Introduction
Introduction to Part I: The origins of non-financial risk management
The complete history of operational risk regulation (abridged)
Financial institutions and non-financial risk: Learning from the corporate approach
The painful financial side of NFR
“Risk management is about managing risk” and “It’s all about people”: Psychology might be more important than models
The confusion of Babel: What’s in the name NFR – taxonomy
Introduction to Part II: Governance of non-financial risk management
“It’s the culture, stupid”: Risk culture as the key building block of NFR management – and why some banks have come through the Covid-19 pandemic better than others
Do you know who is who? Three lines of defence in the context of NFR
Herding cats? NFR divisions as truly diverse units
“Just do it!”: Partially self-organising governance structures for NFR frameworks
Introduction to Part III: Tools and instruments for non-financial risk management
A risk by any other name: Identification, classification and agendas
Old but gold? Mastering the RCSA despite Covid-19
Biases in scenario analyses and how to mitigate them
When scenarios are not severe enough: Stress testing for non-financial risk
Ending NFR in NFR: From Excel sheets to professional IT systems for NFR management
Breaking up with risk management: Using the power of controls for good not the prevention of evil
Introduction to Part IV: Focus areas of non-financial risk management
It won’t be over after Covid-19: Pandemics and operational resilience
Dealing with IT complexity and innovation: Delivering business resilience and customer outcomes
Protecting the new gold: Information security
Conduct risk and the impact of Covid-19
From lawsuits to models: Compliance risk and financial crime
Others are doing it cheaper: But can they really? Opportunities and risks in outsourcing
Managing reputation and stakeholders
Introduction to Part V: The future of non-financial risk management
ESG risk as a new (and very important) trigger for NFR
Looking into the crystal ball: What will NFR management look like in 2030?
This time will be different: An alternative future of NFR management
Right time, right place: The drive for change in operational and non-financial risk
Although having worked closely with internationally experienced leaders across technology, cyber, data, cloud, and supplier risk, I still feel far from “technical”. However, technology risk specialists such as myself can add value by asking the right questions, trying to understand what will and could happen, and providing advice on how to reduce the risk and provide a more stable and secure environment. With the gap between “business” and “technology” being increasingly eroded, and technology a key enabler of business strategy, such questions need to be asked more broadly and across organisations. Technology is no longer simply the domain of technologists, and this chapter will offer some practical insights and observations to better enable you to ask those questions.
RESILIENCE AND STABILITY DRIVE BROAD BUSINESS BENEFITS
Following an unprecedented period of disruption, business resilience and adaptability have gained prominence with governments, regulators, boards, management, staff and customers globally. At the core of business resilience is the organisation’s ability to maintain and deliver reliable and secure information technology and security services in both normal
Copyright Infopro Digital Limited. All rights reserved.
As outlined in our terms and conditions, https://www.infopro-digital.com/terms-and-conditions/subscriptions/ (point 2.4), printing is limited to a single copy.
If you would like to purchase additional rights please email info@risk.net
Copyright Infopro Digital Limited. All rights reserved.
You may share this content using our article tools. As outlined in our terms and conditions, https://www.infopro-digital.com/terms-and-conditions/subscriptions/ (clause 2.4), an Authorised User may only make one copy of the materials for their own personal use. You must also comply with the restrictions in clause 2.5.
If you would like to purchase additional rights please email info@risk.net