Anda di halaman 1dari 17

MANAJEMEN RISIKO

KEMENTERIAN
TABLE OF CONTENT

INTRODUCTION
INTEGRATED ERM AS A SYSTEM
RISK MANAGEMENT PRINCIPLES
RISK MANAGEMENT FRAMEWORK
RISK MANAGEMENT PROCESS
DEVELOPING INTEGRATED ERM IMPLEMENTATION PLAN

2
1
INTRODUCTION

3
INTRODUCTION

Penerapan Risk Management adalah suatu hal yang tidak dapat dipisahkan dengan kehidupan dan dinamika sebuah
instansi/perusahaan. Seluruh gerak langkah dinamis instansi/perusahaan sangat terkait dengan risiko. Dalam perspektif ini
manajemen risiko dapat diilustrasikan sebagai jantung atau denyut nadi instansi/perusahaan, karena manajemen risiko
bertanggung jawab terhadap proses penciptaan dan perlindungan nilai instansi/perusahaan.

Penerapan manajemen risiko merupakan suatu system dimana praktek pengelolaan risiko dilaksanakan secara sistematis
mulai dari identifikasi, pengujuran/assessment, kontrol/mitigasi, dan monitoring & evaluasi. Proses yg harus dilaksanakan
secara komprehensif ini hanya akan efektif dan berhasil apabila diterapkan dengan mengacu pada framework yang tepat yang
dilandasi oleh prinsip-prinsip yang benar. Keterpaduan hal tersebut di atas tidak lain merupakan suatu implementasi terpadu
manajemen risiko yang mencakup organisasi secara keseluruhan. Hal ini dikenal sebagai Integrated Enterprise Risk
Management System (Integrated ERM).

Memandang bahwa Integrated ERM adalah sangat penting bagi instansi/perusahaan dalam rangka penciptaan dan
perlindungan nilai instansi/perusahaan maka peningkatan pemahaman tentang konsep Integrated ERM perlu disosialisasikan
ke semua elemen perusahaan yang terkait dengan penerapan manajemen risiko. Sehubungan dengan hal ini maka pelatihan
Integrated ERM sangatlah penting dan perlu dilaksanakan bagi instansi/perusahaan yang ingin membangun rencana
implementasi ERM.

4
2
INTEGRATED ERM
AS A SYSTEM

5
INTEGRATED ERM AS A SYSTEM

01 What is Risk Management

02 What is Enterprise Risk Management (ERM)

03 What is Integrated ERM and Why we need it

04 Important Vocabulary and Concepts in Risk Management and


ERM
6
RISK MANAGEMENT PROCESS ISO 31000: 2018

7
IMPORTANT VOCABULARY AND CONCEPTS IN
RISK MANAGEMENT AND ERM

Risk Apetite, Risk Capacity, Risk Tolerance, Risk Limit,


Risk Likelihood, Risk Impact, Risk Heat Map, Risk
Profile, Risk Control, Residual/Current Risks, Risk
Maturity, etc.)

8
3
RISK MANAGEMENT
PRINCIPLES
9
RISK MANAGEMENT PRINCIPLES

 Value Creation and Protection


 Integrated
 Structured and Comprehensive
 Customized
 Inclusive
 Dynamic
 Best Available Information
 Human and Culture Factors
 Continual Imprivement
10
4
RISK MANAGEMENT
FRAMEWORK

11
RISK MANAGEMENT FRAMEWORK

 ISO 31000: 2018  COSO ERM 2017

 Leadership and Commitment  Internal Environment, Governance &


Culture
 Design
 Strategy & Objective Setting
 Implementation  Performance & Risk Management (Event
Identification, Risk Assessment, Risk
 Evaluation
Responsive & Control Activites)
 Improvement
 Information, Communication & Reporting
 Integration  Monitoring, Riview & Revisio

12
5
RISK MANAGEMENT
PROCESS

13
RISK MANAGEMENT PROCESS

 Value Creation and Protection  Dynamic


 Integrated  Best Available Information
 Structured and Comprehensiv  Human and Culture Factors
 Customized
 Continual Imprivement
 Inclusive

14
6
DEVELOPING
INTEGRATED ERM
IMPLEMENTATION PLAN
15
DEVELOPING INTEGRATED ERM IMPLEMENTATION PLAN

 Organitational diagnostics: Analysing overall organitation/company condition

 ERM Gap Analysis (Identifying and Analysing current/ existing risk management condition &
benchmarking it with best practice
 Building Risk Taxonomy (identification of companies inhern top risks based on risks likely
hood and impacts)
 Developing Risk Heat Map for each inhern top risk

 Composing aggregate/composite inhern risks

 Improvement

 Formulating Risks Framework (risk policy and risk strategy wich include risk appetite, risk tolerance
and risk limit

16
DEVELOPING INTEGRATED ERM IMPLEMENTATION PLAN

 Formulating risk governance wich include adequate risk organitation structure, adequate risk managment oversight from
board of directors and commisionars, three line of defence mechanism/procedure among risk taking units, risk management
unit, and compliance unit & internal audit
 Developing comprehensive risk management process starting from risk identification, risk measurement/assesment/analysis,
risk treatment/control/mitigation, risk monitoring and evaluation
 Preparing risk people (risk awareness, risk capability, risk leadership and risk culture)
 Internal Control and ERM Maturity (Risk Maturity and The Importance of Internal Control in ERM Implementation, ERM and
Three Lines of Defense System, Implementing an Effective ERM Internal Control)
 Preparing Risk Technology and Risk Management Dashboard System
 Putting it all together in integrated ERM implementation plan

17

Anda mungkin juga menyukai