#256 – RISK OF RANSOMWARE ATTACKS ON LOCAL GOVERNMENT – JAMES KLINE PHD CERM

Featured

Introduction

In several previous Risk Insights, I discussed the need to view state and local government computer network as part of the national infrastructure.  This was needed because of the importance of the networks in providing and supporting basic services.  Further, by viewing these networks as part of the national infrastructure they become an important part of the overall federal effort to protect and defend the nation’s computer infrastructure.  This issue is so important that another paper is appropriate.  This piece extends the prior two pieces. Continue reading

#255 – NEW SOUTH WALES MANDATES LOCAL GOVERNMENTS ADOPT ERM – JAMES KLINE PH.D. CERM

Featured

In September 2019, the Local Government Department of the Australian State of New South Wales (NSW), issued “A New Risk Management And Internal Audit Framework” (1).  The Minister of Local Government in a forward to the framework states: “Formal risk management and internal audit is a vital part of the NSW Government’s plan to ensure that councils achieve their strategic objectives in the most efficient effective and economical manner.  Continue reading

#248 – CYBER SECURITY AND LONG TERM RISK – PART 1 – JAMES KLINE PH.D.

Featured

Preface

This is the first of two articles on cyber security and long-term risk.  This article discusses the first of two issues that underly the long-term risk. That issue is the need to have a robust Enterprise Risk Management process. It also provides policy recommendations. The second article will discuss the second issue, competition for resources both human and money. It will also present policy recommendations. Continue reading

#242 – AON GLOBAL RISK MANAGEMENT SURVEY – JAMES KLINE PH.D.

Featured

Introduction

In earlier articles for Insights I discussed two risk-oriented surveys.  One conducted at the World Economic Forum was of the world movers and shakers.  The second was conducted by North Carolina State University. It reflected the responses of CEOs and senior managers. This article discusses the results of the Aon “Risk Management Survey” of risk managers.  Continue reading

#239 – WHITHER ISO CERTIFICATION? – JAMES KLINE PH.D.

Featured

In the last issue of CERM Risk Insights #238 Greg Hutchins wrote an article “ISO 31000 Certification: Next Big Thimg”.  In the article he discussed the ISO 31000 certification of Cholamandalam MS General Insurance Company India.  As is noted, there is technically no such certification.

ISO 31000 is an Enterprise Risk Management standard.  ISO has not created a 31000 certification.  What is this all about? Is it the next big thing for ISO and Certification Bodies, or is it a symptom of certification dry rot?  This article explores this question in a little more detail. Continue reading