The Strategic Value of Defining Compliance Objectives in Your Organisation
In today's complex regulatory landscape, compliance is no longer just a tick-box exercise — it's a strategic enabler. One of the foundational r...
In today's complex regulatory landscape, compliance is no longer just a tick-box exercise — it's a strategic enabler. One of the foundational r...
In the realm of effective compliance management, few factors weigh as heavily as “Tone at the Topâ€. This principle — embedded in IS...
While "Tone at the Top" sets the vision for compliance, "Tone in the Middle" ensures it is translated into reality. Managers — from department ...
In today's regulatory and ethical landscape, organisations require a robust and adaptable compliance management framework to remain resilient, account...
Over the years of Risk Training, Advisory and Consulting, one specific challenge that stood out for me is that risk registers are not using a methodol...
In the previous articles we have been unpacking various risk-based methodologies, such as the P2ST2 and the Internal Control Methodology. Based on thi...
One of the processes within the Business Continuity Management System (BCMS) is the development of a Business Impact Analysis (BIA). I have experience...
The COVID-19 Pandemic has changed the global business environment. During the various global implementation of managing the pandemic, we were the audi...
ISO 31000:2018 (Risk Management - Guidelines) cannot be internationally certified by a Certification Body (CB). Here's why. ISO 31000:2018 is a guidel...
In the context of combined assurance, the statement emphasizes the importance of evaluating and rating controls within an organization using both inte...
Over the years that I was involved in Risk Management, I have been fortunate to serve on several high-level Risk and Strategy committees, from Governm...
Every time my company, Crest Advisory Africa (Pty) Ltd, are appointed to review the risk process which includes the Risk Management Framework, The Ris...