Dubal’s Approach to Risk Management
How DUBAL Enabled a Risk Management Architecture for ERM and Beyond
Exponential growth and change in risks, regulations, globalization, distributed operations, processes, competitive velocity, business relationships, technologies, and business data encumbers organizations of all sizes. Organizations are hindered when aspects of risk are managed in disconnected silos that do not share information and collaborate. Integrated and sustainable risk management improves risk maturity and strengthens decision-making. This cannot be accomplished in silos, but requires a federated approach to risk management supported by a foundational risk information and technology architecture. Dubai Aluminium (DUBAL) was challenged in getting a consistent view of risks across the enterprise with standard definitions, language, and framework. To address the challenge of herding the silos of risk, DUBAL established a structured and systemic approach to risk management by implementing a new Enterprise Risk Management (ERM) framework. To enable this ERM strategy, DUBAL implemented the MetricStream ERM Solution. GRC 20/20 has evaluated and verified the implementation of MetricStream at DUBAL and confirms that this implementation has achieved measurable value across the elements of GRC efficiency, effectiveness, and agility. In this context, GRC 20/20 has recognized MetricStream and DUBAL with a 2014 GRC Value Award in the domain of Risk Management.
- Growing Risk & Regulatory Exposure in Third Party Relationships
- Inevitable Failure of Silos of Third Party Governance
- Adobe: Value Achieved in Third Party Management
- The Challenge Adobe Faced
- Solution to Adobe’s Problem
- Adobe Achieved Value in GRC Efficiency, Effectiveness, and Agility
- GRC Efficiency Value
- GRC Effectiveness Value
- GRC Agility Value
- GRC 20/20’s Final Perspective
- About GRC 20/20 Research, LLC
- Research Methodology
©GRC 20/20 Research, LLC. All Rights Reserved.
No part of this publication may be reproduced, adapted, stored in a retrieval system or transmitted in any form by any means, electronic, mechanical, photocopying, recording or otherwise, without the prior permission of GRC 20/20 Research, LLC. If you are authorized to access this publication, your use of it is subject to the Usage Guidelines established in client contract. The information contained in this publication is believed to be accurate and has been obtained from sources believed to be reliable but cannot be guaranteed and is subject to change. GRC 20/20 accepts no liability whatever for actions taken based on information that may subsequently prove to be incorrect or errors in analysis. This research contains opinions of GRC 20/20 analysts and should not be construed as statements of fact. GRC 20/20 disclaims all warranties as to the accuracy, completeness or adequacy of such information and shall have no liability for errors, omissions or inadequacies in such information. Although GRC 20/20 may include a discussion of related legal issues, GRC 20/20 does not provide legal advice or services and its research should not be construed or used as such.