Class Exercise: Identify the network of your top risks and class feedback
Cyber risk is voted top risk for the financial industry for three years in row. This session explains how the same risk management framework can be applied to cyber risk and, more generally, to information security risk assessment. Based on real case studies, it presents a taxonomy for information security risk, essentials of assessment and the key elements of mitigation of cyber and information risk:
Group work: Best and worst controls in the business: Sharing of experience
Highlights of best practice, group discussion and sharing of experience
Project and changes are common place in the financial industry. It is only recently that project risk is explicitly included in the operational risk management scope. Yet, the coordination between the risk function and the project management teams are not always straight-forward. Based on practical successful experiences, this session suggest framework and policy rules to assess and address operational risk on corporate projects.
Group work: Plan your own culture change