Description

CASE STUDY: RISK MANAGEMENT – THE ROLE OF A RISK MANAGER
Since 2020, many incidents and events have caused organisations to adopt a focused
approach towards risk management and the role of risk managers. Examples of these events
are the COVID-19 pandemic and its severe effects on many countries, economies, and
businesses. South Africa was not excluded from the pandemic and was further hampered by
severe power interruptions and inadequate service delivery. These are all risk-related
incidents/events involving risk managers to assist in the management thereof. According to
an article in Enterprise Risk Magazine (2023), uncertainty also boosted the profile and role of
risk managers. Large-scale risks are happening more often, which requires sound risk
management to cope with the increasingly unclear business and physical environments. As
such, it seems imperative that the role of risk managers and appropriate risk management
tools is clear. The classic three lines of defence in the risk governance model endeavour to
demarcate the various roles regarding the management of risks. Although there are many
issues surrounding this model, it provides a foundational guideline for the roles of the main
role-players in risk management.
Regarding the tools for operational risk management, it seems that there are concerns over
the predictive powers of key risk indicators (KRIs), the value of risk and control self-
assessments (RCSAs), and the subjectivity of scenario analysis to manage operational risks
(Enterprise Risk Magazine, 2023). In addition, embedding an operational risk management
framework is becoming essential. However, it appears that there is only a vague
understanding of the exact role of a risk manager. Furthermore, according to Enterprise Risk
Magazine (2023), excessive effort is being expended on issues that generate too little value
when using operational risk management tools. For example, RCSAs are tools that should
provide value to organisations by identifying the primary inherent risks, which can be used for
analysing risk scenarios and determining and managing KRIs. In addition, RCSAs can
determine control weaknesses in managing the residual risks effectively. Enterprise Risk
Magazine (2023) mentioned that organisations should focus their RCSA efforts on the
effectiveness and adequacy of controls in mitigating low-, medium-frequency/medium and
high-impact operational risks. Risks leading to high-frequency and low-impact operational loss
incidents should be managed by means of more real-time monitoring of KRIs. This could
ensure obtaining value from the RCSA activity.
According to the Institute of Risk Management (IRM, 2023), the year 2024 will see certain risk
events escalate, requiring a more “aggressive” and formal approach by risk managers to assist
organisations in coping with these risk events. Some of these risks, specifically for South
Africa, were identified by various risk managers as follows:

future disasters, such as ongoing floods, global warming, and drought

the constant negative influence of the energy crisis on the economy

the slow pace of sustainability and investment projects

poor maintenance and development of infrastructure

increasing cyber risks and cybercrimes

inadequate handling of fraud and corruption
General comments on the above points seem to indicate a lack of effective business continuity
processes and disaster management to manage future disasters. This is true of both the public
and private sectors. Fraud and corruption are creating a negative view of the country, causing
investors to be unwilling to invest in a deteriorating economy. This, in turn, leads to
unemployment, poverty and social inequalities. Technology also needs to be insourced
because of a lack of adequate expertise, which makes the country more vulnerable to cyber
risks. Qualified people are emigrating to other countries because of the uncertainties
surrounding South Africa’s well-being. The energy crisis is also playing a large role in
undermining the country’s economy. Loadshedding is causing businesses to fail and is
hampering service delivery. This, in turn, leads to the poor maintenance of infrastructure and
a shortage of water and sanitation services. Unmaintained infrastructure also affects the
environment, economy, and society, creating a negative impact on sustainability and
investment projects.
Note: For training purposes, some fictitious information has been included in this case study.
Analyse the case study and answer the related questions.

Question 1
(30 marks)
Draw a diagram illustrating the three lines of defence to indicate the roles of risk management.
Explain in detail the differences between the roles of the head of operational risk management
and the third line of defence.

Question 2
(20 marks)
Define “operational risk” and discuss in detail the use of a risk and control self-assessment
(RCSA) as an operational risk management tool.

Reviews

There are no reviews yet.

Only logged in customers who have purchased this product may leave a review.

Description

CASE STUDY: RISK MANAGEMENT – THE ROLE OF A RISK MANAGER
Since 2020, many incidents and events have caused organisations to adopt a focused
approach towards risk management and the role of risk managers. Examples of these events
are the COVID-19 pandemic and its severe effects on many countries, economies, and
businesses. South Africa was not excluded from the pandemic and was further hampered by
severe power interruptions and inadequate service delivery. These are all risk-related
incidents/events involving risk managers to assist in the management thereof. According to
an article in Enterprise Risk Magazine (2023), uncertainty also boosted the profile and role of
risk managers. Large-scale risks are happening more often, which requires sound risk
management to cope with the increasingly unclear business and physical environments. As
such, it seems imperative that the role of risk managers and appropriate risk management
tools is clear. The classic three lines of defence in the risk governance model endeavour to
demarcate the various roles regarding the management of risks. Although there are many
issues surrounding this model, it provides a foundational guideline for the roles of the main
role-players in risk management.
Regarding the tools for operational risk management, it seems that there are concerns over
the predictive powers of key risk indicators (KRIs), the value of risk and control self-
assessments (RCSAs), and the subjectivity of scenario analysis to manage operational risks
(Enterprise Risk Magazine, 2023). In addition, embedding an operational risk management
framework is becoming essential. However, it appears that there is only a vague
understanding of the exact role of a risk manager. Furthermore, according to Enterprise Risk
Magazine (2023), excessive effort is being expended on issues that generate too little value
when using operational risk management tools. For example, RCSAs are tools that should
provide value to organisations by identifying the primary inherent risks, which can be used for
analysing risk scenarios and determining and managing KRIs. In addition, RCSAs can
determine control weaknesses in managing the residual risks effectively. Enterprise Risk
Magazine (2023) mentioned that organisations should focus their RCSA efforts on the
effectiveness and adequacy of controls in mitigating low-, medium-frequency/medium and
high-impact operational risks. Risks leading to high-frequency and low-impact operational loss
incidents should be managed by means of more real-time monitoring of KRIs. This could
ensure obtaining value from the RCSA activity.
According to the Institute of Risk Management (IRM, 2023), the year 2024 will see certain risk
events escalate, requiring a more “aggressive” and formal approach by risk managers to assist
organisations in coping with these risk events. Some of these risks, specifically for South
Africa, were identified by various risk managers as follows:

future disasters, such as ongoing floods, global warming, and drought

the constant negative influence of the energy crisis on the economy

the slow pace of sustainability and investment projects

poor maintenance and development of infrastructure

increasing cyber risks and cybercrimes

inadequate handling of fraud and corruption
General comments on the above points seem to indicate a lack of effective business continuity
processes and disaster management to manage future disasters. This is true of both the public
and private sectors. Fraud and corruption are creating a negative view of the country, causing
investors to be unwilling to invest in a deteriorating economy. This, in turn, leads to
unemployment, poverty and social inequalities. Technology also needs to be insourced
because of a lack of adequate expertise, which makes the country more vulnerable to cyber
risks. Qualified people are emigrating to other countries because of the uncertainties
surrounding South Africa’s well-being. The energy crisis is also playing a large role in
undermining the country’s economy. Loadshedding is causing businesses to fail and is
hampering service delivery. This, in turn, leads to the poor maintenance of infrastructure and
a shortage of water and sanitation services. Unmaintained infrastructure also affects the
environment, economy, and society, creating a negative impact on sustainability and
investment projects.
Note: For training purposes, some fictitious information has been included in this case study.
Analyse the case study and answer the related questions.

Question 1
(30 marks)
Draw a diagram illustrating the three lines of defence to indicate the roles of risk management.
Explain in detail the differences between the roles of the head of operational risk management
and the third line of defence.

Question 2
(20 marks)
Define “operational risk” and discuss in detail the use of a risk and control self-assessment
(RCSA) as an operational risk management tool.

Reviews

There are no reviews yet.

Only logged in customers who have purchased this product may leave a review.

35
    35
    Your Shopping Cart
    EUP1501 Assignment 3 2025 - Due 30 April 2025
    EUP1501 Assignment 3 2025 - Due 30 April 2025
    Seller:

    Unisian

    Price: R50.00
    R50.00
    MAC1501 Exam Pack 2025
    MAC1501 Exam Pack 2025
    Seller:

    Unisian

    Price: R65.00
    R65.00
    HED4806 Assignment 2 Answers
    HED4806 Assignment 2 Due 24 June 2024
    Seller:

    Unisian

    Price: R50.00
    R50.00
    MNO2607 Assignment 2 Semester 2 Memo | Due 11 September 2025
    R100.00
    MFP2601 Assignment 2 2025 | Due July 2025
    MFP2601 Assignment 2 2025 | Due July 2025
    Seller:

    Unisian

    Price: R50.00
    R50.00
    MAT2615 Assignment 1 Memo | Due 15 May 2025
    MAT2615 Assignment 1 Memo | Due 15 May 2025
    Seller:

    Aimark94

    Price: R100.00
    R100.00
    NST2602 Assignment 3 Due 16 July 2024
    NST2602 Assignment 3 Due 16 July 2024
    Seller:

    Unisian

    Price: R50.00
    R50.00
    TAX3701 Assignment
    R100.00
    IRM4720 ASSIGNMENT 2 2025 - FULLY ANSWERED (DUE 15 AUGUST 2025)
    IRM4720 ASSIGNMENT 2 2025 - FULLY ANSWERED (DUE 15 AUGUST 2025)
    Seller:

    The Smart Slacker

    Price: R100.00
    R100.00
    PRGRT02 Assignment 3 Portfolio (July-August 2023)
    PRGRT02 Assignment 3 Portfolio (July-August 2023)
    Seller:

    Unisian

    Price: R120.00
    R120.00
    TMN3702 Exam Pack 2025
    TMN3702 Exam Pack 2025
    Seller:

    Unisian

    Price: R80.00
    R80.00
    LJU4802 Exam Pack 2025
    LJU4802 Exam Pack 2025
    Seller:

    Unisian

    Price: R80.00
    R80.00
    BNU1501 Assignment 3 Due 2 April 2024
    BNU1501 Assignment 3 Due 2 April 2024
    Seller:

    Unisian

    Price: R50.00
    R50.00
    DSC1630 Assignment 4 Due 26 September 2024
    DSC1630 Assignment 4 Due 26 September 2024
    Seller:

    Unisian

    Price: R50.00
    R50.00
    LML4802 Assignment 1 Semester 2 Memo | Due 28 August 2025
    R100.00
    LML4801 Exam Pack 2025
    LML4801 Exam Pack 2025
    Seller:

    Unisian

    Price: R80.00
    R80.00
    EUP1501 Portfolio Semester 2 Memo | Due 24 October 2025
    R50.00
    TMN3705 Assignment 3 (Final) 2025 - Due 22 August 2025
    R50.00
    LJU4801 Assignment 2
    LJU4801 Assignment 2 Semester 1 | Due April 2025
    Seller:

    Aimark94

    Price: R100.00
    R100.00
    OHS2602 ASSIGNMENT 2 SEMESTER 1 2025 - FULLY ANSWERED
    OHS2602 ASSIGNMENT 2 SEMESTER 1 2025 - FULLY ANSWERED
    Seller:

    The Smart Slacker

    Price: R100.00
    R100.00
    PLC2602 Assignment 1 Semester 2 2024 | Due 19 August 2024
    R80.00
    SJD1501 Assignment 7 2025 - Due 22 May 2025
    SJD1501 Assignment 7 2025 - Due 22 May 2025
    Seller:

    Unisian

    Price: R50.00
    R50.00
    APC2601 Assignment 1 Semester 1 Memo | Due March 2025
    R50.00
    LPL4805 Assignment 1 Semester 2 Memo | Due 3 September 2025
    R100.00
    APM3701 Assignment 2 Memo | Due 8 August 2025
    APM3701 Assignment 2 Memo | Due 8 August 2025
    Seller:

    Aimark94

    Price: R100.00
    R100.00
    ENG2603 Assignment 2 2024 | Due 12 July 2024
    ENG2603 Assignment 2 2024 | Due 12 July 2024
    Seller:

    Aimark94

    Price: R50.00
    R50.00
    HMEMS80 Exam Pack 2025
    HMEMS80 Exam Pack 2025
    Seller:

    Unisian

    Price: R80.00
    R80.00
    TLI4801 October/November 2024 | Due 22 October 2024
    TLI4801 October/November 2024 | Due 22 October 2024
    Seller:

    Aimark94

    Price: R100.00
    R100.00
    DPP1501 Assignment 7 Memo | Due 10 September 2025
    DPP1501 Assignment 7 Memo | Due 10 September 2025
    Seller:

    Aimark94

    Price: R100.00
    R100.00
    MNP3702 Assignment 1 Semester 1 Memo | Due 27 March 2025
    R100.00