As Organizational Reliance on Third Parties Increases, Extended Enterprise Risk Management to be a Focus in 2019
"The risk comes from needing to trust that these third parties — and their subcontractors — aren't making mistakes in handling data, ensuring privacy, or doing anything else that would harm the business," said
Overall, organizations are concerned with several extended enterprise risks including financial, regulatory, legal, and strategic that need to be managed centrally. Responses from the question "Who oversees risk governance of your organization's extended enterprise?" illuminate another challenge for extended enterprise risk management (EERM). Twenty-four percent of poll respondents indicated it was the board risk committee's responsibility, while 17 percent pointed to the audit committee, and another 11 percent to the full board, with the remainder to an internal auditor, external stakeholder or just didn't know who managed EERM. A recent Deloitte risk management survey of CEOs and boards found that 62 percent of CEOs fail to hold their extended enterprise to the same risk standards as their own organization, despite leaders seeing information technology providers as posing the greatest threat. A clear line of EERM governance is invaluable to the overall success of the organization. Senior leadership can create an accountable EERM organization to mitigate key risks falling through the cracks of the first, second, or third lines of defense.
Emerging capabilities of technology-driven systems, applications, controls, programs and methodologies can improve and accelerate efficiencies. They also can improve compliance and decrease risks from reputation damage, regulatory missteps, consumer backlash and cyber threats. According to poll respondents, their organizations are likely to invest in such emerging technologies and tools during the next 12 months: cloud computing (31 percent), robotics process automation (RPA) (18 percent), data visualization (12 percent), cognitive technologies (7 percent), blockchain (7 percent) and Internet of Things (IoT) (6 percent) among others.
Examples of leveraging these technologies in the extended enterprise include some insurance companies use data feeds from IoT sensors embedded in cars to adjust owners' risk premiums, awarding lower premiums to drivers with safe records and charging higher premiums to drivers with riskier driving habits. This capability is disrupting the traditional insurance model, which requires specialized third parties to collect data manually to calculate premiums. Many organizations already are using technologies such as RPA and blockchain to improve clarity about risk exposures, and for processing invoices and conducting compliance checks.
Security around third-party ecosystems is a legitimate concern for organizations of all sizes. Thirty-eight percent of those polled specified their organizations' intent to focus on cyber risks in the extended enterprise for ensuing 12 months. To manage the associated risks better, organizations need an approach where they address their cyber risk concerns from the beginning of vendor procurement and include sets of security requirements and controls via contract. By asking some of the following questions, they can begin to evaluate and address the extended enterprise risk posture:
- Do they take a secure-by-design approach?
- Do they use a secure system development life cycle?
- Are their developers trained in the security aspects that you want achieved?
- Do they conduct error testing?
The year 2019Â likely will demonstrate the increasing importance of EERM program maturity to mitigate risks, safeguard compliance and drive business value. Efficiency will also probably improve in the process as third-party ecosystems grow and third parties take on more and more mission-critical, core functions in the organization.
About the online poll
More than 4,050 professionals across industries and positions participated in and responded to poll questions during the Deloitte Dbriefs webcast, "Reestablishing the perimeter: Extending the risk management ecosystem," held
About Deloitte
Deloitte provides industry-leading audit, consulting, tax and advisory services to many of the world's most admired brands, including more than 85 percent of the Fortune 500 and more than 6,000 private and middle market companies. Our people work across more than 20 industry sectors to make an impact that matters — delivering measurable and lasting results that help reinforce public trust in our capital markets, inspire clients to see challenges as opportunities to transform and thrive, and help lead the way toward a stronger economy and a healthy society. Deloitte is proud to be part of the largest global professional services network serving our clients in the markets that are most important to them.Â
Deloitte refers to one or more of
View original content to download multimedia:http://www.prnewswire.com/news-releases/as-organizational-reliance-on-third-parties-increases-extended-enterprise-risk-management-to-be-a-focus-in-2019-300778258.html
SOURCE Deloitte




Centene Corporation Announces Appointments
New York Team With $500 Million In AUM Joins Commonwealth
Advisor News
- Take advantage of the exploding $800B IRA rollover market
- Study finds more households move investable assets across firms
- Could workplace benefits help solve America’s long-term care gap?
- The best way to use a tax refund? Create a holistic plan
- CFP Board appoints K. Dane Snowden as CEO
More Advisor NewsAnnuity News
- Court fines Cutter Financial $100,000, requires client notice of guilty verdict
- KBRA Releases Research – Private Credit: From Acquisitions to Partnerships—Asset Managers’ Growing Role With Life/Annuity Insurers
- $80k surrender charge at stake as Navy vet, Ameritas do battle in court
- Sammons Institutional Group® Launches Summit LadderedSM
- Protective Expands Life & Annuity Distribution with Alfa Insurance
More Annuity NewsHealth/Employee Benefits News
- When health insurance costs more than the mortgage
- Farmers Now Owe a Lot More for Health Insurance
- Health care outlook: Volatility and potential coverage gaps
- Healthcare advocates navigate rising coverage costs after deadline
- Universal health care: The moral cause
More Health/Employee Benefits NewsLife Insurance News
- John Hancock looks to new AI underwriting tool to slash processing time
- AllianzIM Buffered ETF Suite Expands with Launch of International Fund
- Author Sherida Stevens's New Audiobook, “INDEXED UNIVERSAL LIFE INSURANCE IN ACTION: FROM PROTECTION TO PROSPERITY – YOUR PATH TO FINANCIAL SECURITY,” is Released
- AM Best Affirms Credit Ratings of Etiqa General Insurance Berhad
- Life insurance application activity hits record growth in 2025, MIB reports
More Life Insurance News