Business Objectives
specific
measurable
obtainable
relevant
Entity risk management should be led by
centralized coordinator
ultimate responsibility is the CEO
manager device and execute
coso a risk profile is a view of the relationship between
risk and performance
inherent risk
no action from management
the benefit of ERM
Increase opportunity
identify and manage risk entity-wide,
increase positive outcomes
reducing negative surprises,
reduce performance variability,
improve resource deployment, and
enhance enterprise resilience.
Risk Appetite
How much risk the firm is will to take
difference between strategy and business objective
business objective are the steps to achieve strategy