SlideShare una empresa de Scribd logo
1 de 13
Descargar para leer sin conexión
Information Risk & Business
   Continuity Management




        Riskpro, India

               1
Who is Riskpro… Why us?


                 ABOUT US                                                    MISSION
   Riskpro is an organisation of member firms
    around India devoted to client service                   Provide integrated risk management
    excellence. Member firms offer wide range                 consulting services to mid-large sized
    of services in the field of risk management.              corporate /financial institutions in India
   Currently it has offices in three major cities           Be the preferred service provider for
    Mumbai, Delhi and Bangalore and alliances                 complete Governance, Risk and Compliance
    in other cities.                                          (GRC) solutions.
   Managed by experienced professionals with
    experiences spanning various industries.




         VALUE PROPOSITION                                            DIFFERENTIATORS
   You get quality advisory, normally delivered
    by large consulting firms, at fee levels                  Risk Management is our main focus
    charged by independent & small firms
                                                              Over 200 years of cumulative experience
   High quality deliverables
                                                              Hybrid Delivery model
   Multi-skilled & multi-disciplined organisation.
                                                              Ability to take on large and complex projects
   Timely completion of any task                              due to delivery capabilities
   Affordable alternative to large firms                     We Hold hands, not shake hands.

                                                      2
Risk Management Advisory Services

           Basel II/III Advisory               Corporate Risks                            Information Security
              Market Risk                        Enterprise Risk Assessment                IS Audit
              Credit Risk                        Fraud Risk                                Information Security
              Operational Risk                   Risk based Internal Audit                 Business Continuity
              ICAAP                              Operations Risk                           IT Assurance
                                                  Forensic services                         IT Governance
SERVICES




           Operational Risk                    Governance                                 Other Risks
              Process reviews                    Corporate Governance                      Business/Strategic Risk
              Policy/ Process Review             Business Strategic risk                   Reputation Risk
              Process Improvement                Fraud Risk                                Outsourcing Risk
              Compliance Risk                    Forensic Accounting                       Contractual Risk




                              Training                                              Recruitment
                      Banking – E Learning                                        Virtual Risk Managers
                      Corporate Training                                          Full Time Risk Professionals
                      Regular Risk Management Training                            Part time Risk Professionals
                      Online Training material                                    Risk Managers on call – free
                      Workshops / Events




                                                            3
Information Risk Governance
BACKGROUND
   In an environment of escalating information security threats, technology outages, data integrity and
    quality issues, corporate governance concerns and privacy regulations, organizations need to be sure
    of the integrity, confidentiality, and availability of their paper & electronic information and
    underlying systems.
   This requires information handling, communication & storage systems that are properly deployed,
    monitored and controlled.
   With increasing regulatory norms being enforced for companies, managing risks affecting
    confidentiality, integrity and availability of vital information assets has become one of the most
    important business drivers as well as a key differentiator from competition.

CHALLENGES
   Mitigation of risks related to information assets requires an organization to think outside of traditional
    IT controls and also look at their non-IT areas for information related risks such as people risks,
    compliance risks, third party/supplier risks, client related risks and physical/environmental risks.
   UK’s Data Protection Act, Indian Information Technology Act, US GLB/HIPAA puts onus on the
    information owners as well as information processor for the protection of the information. Aside from
    fines & penalties, companies should also think of reputation issues & business loss due to a breach.
   High attrition, skills/knowledge loss and valuable intellectual property in people intensive operations
    such as banks, insurance firms, BPO/KPOs can exacerbate threats to information.
   Most companies do not treat information as company assets and therefore there is insufficient
    oversight from board, auditors etc.
                                                          4
Information Security Assessments

                       Dipstick review is a high level look at the significant risks affecting
                       information assets and a quick look at the controls. This review is suitable for
  Dipstick Review
                       a quick and dirty look at the low hanging fruits or for setting context for a
                       bigger review.


                       Based on the global control frameworks such as ISO 27001, COBIT & ITIL,
Information Security   the IS audit service is meant to augment the regular internal audits & provide
                       expertise on information security controls. The audit covers regulatory
      Audits
                       compliances, adherence to internal policies/procedures, second party vendor
                       audits, readiness checks for certifications, and compliances


                       UK’s Data Protection Act of 1998 puts onerous responsibilities on data
                       controllers and data processors. Penalties for noncompliance include
    Review of          personal liability, penalties as well as possible reputation loss. The 7th and
Compliance with UK     8th principals are relevant to data flowing to locations outside of UK and EEA
Data Protection Act    (European Economic Area). We have experts who have dealt with DPA
                       compliances & data export and offer consulting on how a non-EEA company
                       handling UK personal data can comply with DPA principles & requirements.


 Info Sec Training     Information security awareness training



                                                 5
ISO 27001 Certification Services
    ISO 27001 is a global standard for information security practices. Originating from the British
     standard BS7799, ISO 27001 certification goes beyond traditional IT security & also includes
     other important risk areas such as employee related risks (during hiring, employment, transfers
     & termination), Physical/environmental risks, compliance related risks, business continuity
     risks, senior management commitment, linkage to risk management etc. There are 133
     specific controls across 11 domains & certification is given by the external certification body
     only against demonstrable implementation of controls



                            A pre-certification audit is a high level evaluation indicating where your
    Pre-certification       company currently stands in compliance with ISO 27001 before the main
     assessments            certification audit. This audit is conducted under certification audit conditions
                            and non-conformances are identified for the client’s action. Pre-certification


                            ISO 27001 consulting including gap assessments, policy & procedure design,
ISO 27001 design &          risk assessments, information systems controls design and evaluation. We
  implementation            follow proven methodologies to enable your company get certified to ISO
    consulting              27001 standard and sustain the certification. We can also provide entire
                            lifecycle support to ensure that after certification the client is ready for the
                            periodic surveillance audits.




                                                        6
Business Resiliency (BCP/DR/CM) Consulting
    All organizations should plan for contingencies so that business remains resilient and company
     can provide immediate, accurate and measured response to emergency situations. A resilient
     operations has sufficient planning in place and has implemented backup/recovery strategies
     for its data, people & infrastructure so that Critical Business Process are continued and
     negative impact on Business and revenue is reduced. Regulators & compliances such as
     Basel II require robust BCP/DR/CM programs commensurate with business objectives.

    Business Impact         Identifying process criticalities, recovery priorities, recovery time
     Analysis (BIA)         objectives (RTO), recovery points (RPO) & resource requirement.
                            These form the foundation of BCP planning.

       BCP Crisis
    Management plan         Design and development of BCP and Crisis Management program so
     development &          that BCP/CM strategies & tactics support business objectives even in a
     Implementation         disaster situation. We also provide entire BCP lifecycle support.

                            Testing of various intensities from a walkthrough, desktop scenario to
    Testing services        full BCP test. We can also provide a high intensity & complex scenario
                            for stress testing BCP/CM teams.


                            Various BCP/CM trainings for all employees, crisis management team
    BCP/CM training         or BCP team members.


                                                    7
Riskpro Clients                                                                       Our Clients




Any trademarks or logos used throughout this presentation are the property of their
                               respective owners

                                                          8
Team Experiences                                                                        Our Experiences




           Our team members have worked at world class Companies
  Any trademarks or logos used throughout this presentation are the property of their
                                 respective owners
                                                         9
RESUMES – Our team                                                                     Credentials

                 Founder - Riskpro
                 CA, CPA, MBA-Finance (USA), FRM (GARP)
 Manoj Jain


                 Over 10 years international experience – 6 years in Bahrain and 4 years USA
                 15 years exp in risk consulting and internal audits
                 Sox Compliance project for Fannie Mae, USA ( $900+ Billion Mortgage Company)
                 Specialization in Operational Risk, Basel II, Sox and Control design
                 Led medium to large engagement teams



                 Co- Founder - Riskpro
                 CA (India), MBA (Netherlands), CIA (USA)
 Rahul Bhan




                 Over 15 years of extensive internal and external audit experience in India and
                  abroad.
                 Worked with KPMG United Arab Emirates, PKF South Africa, Ernst and Young
                  Kuwait, Deloitte Netherlands and KPMG India.
                 Worked with clients in a wide variety of industries and countries including trading,
                  retail and consumer goods, NGO, manufacturing and banking and finance. Major
                  clients include banks, investment companies, manufacturing organizations,
                  aviation etc.

                                                      10
RESUMES - Our team                                                                        Credentials

                     Co-Founder - Riskpro
                     B Tech MBA
 Shriram Gokte


                     22 years of audit, risk management, information security & Compliance experience
                     Most recent employment with Paternoster, a UK Insurance company as Directpr Risk
                      & Compliance
                     Worked for Principal Financial Group at their Des Moines USA HO and then Birla Sun
                      Life Insurance as CRO
                     Strong operational process, risks, info sec and internal controls experience
                     Has taken 3 companies through ISO 27001 certifications.


                     Co-Founder - Riskpro
 Casper Abraham




                     PGD (Electrical & Electronics & Computer Programming)
                     30 years of experience in Information & Communications Technology (ICT) Solutions
                      for Retail, Garments, Manufacturing, Services Industries.
                     Has created Companies, Divisions, Products, Brands, Teams & Markets.
                     Consulting in Business, Technology, Marketing & Sales & Strategic Planning.
                     Advisory, Training, Workshops & Implementation in Systems Thinking, Systems
                      Modeling & Balanced Scorecard
                     Worked with TIFR, Mahindra, Ambience, Communico-Graphique & Ionidea Inc, USA,


                                                         11
RESUMES - PARTNERSHIPS
                     Specialist Risk Consultant – Business Continuity
Andrew Hiles

                     Founder and 15-year Chairman of Survive, the first international user group for Business
                      Continuity professionals
                     Founding director and first Fellow of the Business Continuity Institute
                     Over 25 years international consulting expertise in Risk, Crisis, Emergency, Incident, and
                      Business Continuity and ICT Disaster Recovery Management
                     Multi-sector experience including Banking, Insurance, Finance, Oil, Gas, Energy,
                      Manufacturing, Retail, Hi-Tech & Telecom
                     Western Press Award for services to business, 1994; BCI/CIR nomination for
                      lifetime achievement in BC, 1999, London; inducted into BC Hall of Fame by CPM magazine,
                      2004, Washington DC.

                     Specialist Risk Consultant – Enterprise Risk Management
Chris E. Mandel




                     Highly skilled risk and insurance professional with 25 years of experience designing,
                      developing and implementing large, global corporate risk management programs for Fortune
                      500 firms.
                     Principal Consultant and Founder - Excellence in Risk Management, LLC. (Texas, USA)
                     Past experiences include USAA, PepsiCo, American National Red Cross ,Verizon




                                                            12
Contacts and Office Locations
Corporate           Mumbai                         Delhi                       Bangalore
                    Manoj Jain                     Rahul Bhan                  Casper Abraham
                    Director                       Director                    Director
                    M- 98337 67114                 M- 99680 05042              M- 98450 61870
  info@riskpro.in
                    manoj.jain@riskpro.in          rahul.bhan@riskpro.in       casper.abraham@riskpro.in
  www.riskpro.in
                    Shriram Gokte                  Raj Sawhney
                    Principal - Information Risk   Principal – Business Risk
                    M- 98209 94063                 M- 99711 03510
                    shriram.gokte@riskpro.in       raj.sawhney@riskpro.in

Ahmedabad           Pune                           Agra
Maulik Manakiwala   M.L. Jain                      Alok Kumar Agarwal
Associate Firm      Principal – Strategy Risk      Associate Firm
M - 91 9825640046   M- 9822011987                  M- 99971 65253
                    mljain@riskpro.in
Gourav Ladha
Sap Risk Advisory
M- 97129 52955




                                                THANKS
                                                      13

Más contenido relacionado

La actualidad más candente

Riskpro Insurance Advisory Services
Riskpro Insurance Advisory ServicesRiskpro Insurance Advisory Services
Riskpro Insurance Advisory Services
Rahul Bhan (CA, CIA, MBA)
 
Sap risk advisory presentation
Sap risk advisory presentationSap risk advisory presentation
Sap risk advisory presentation
Rahul Bhan (CA, CIA, MBA)
 

La actualidad más candente (9)

Riskpro legal and compliance audits 2013
Riskpro legal and compliance audits 2013Riskpro legal and compliance audits 2013
Riskpro legal and compliance audits 2013
 
Legal risk advisory services 2013
Legal risk advisory services 2013Legal risk advisory services 2013
Legal risk advisory services 2013
 
Riskpro security audit
Riskpro security auditRiskpro security audit
Riskpro security audit
 
Riskpro insurance advisory services 2013
Riskpro insurance advisory services 2013Riskpro insurance advisory services 2013
Riskpro insurance advisory services 2013
 
Bi risk services 2013
Bi risk services 2013Bi risk services 2013
Bi risk services 2013
 
Bi risk services 2013
Bi risk services 2013Bi risk services 2013
Bi risk services 2013
 
Sap Risk Advisory Presentation
Sap Risk Advisory PresentationSap Risk Advisory Presentation
Sap Risk Advisory Presentation
 
Riskpro Insurance Advisory Services
Riskpro Insurance Advisory ServicesRiskpro Insurance Advisory Services
Riskpro Insurance Advisory Services
 
Sap risk advisory presentation
Sap risk advisory presentationSap risk advisory presentation
Sap risk advisory presentation
 

Destacado

Accounting payroll outsourcing services 2013
Accounting payroll outsourcing services   2013Accounting payroll outsourcing services   2013
Accounting payroll outsourcing services 2013
Rahul Bhan (CA, CIA, MBA)
 
Riskpro aml services
Riskpro aml servicesRiskpro aml services
Riskpro aml services
Rahul Bhan (CA, CIA, MBA)
 

Destacado (7)

Riskpro human capital management services 2013
Riskpro human capital management services 2013Riskpro human capital management services 2013
Riskpro human capital management services 2013
 
Riskpro recruitment tc
Riskpro recruitment tcRiskpro recruitment tc
Riskpro recruitment tc
 
Accounting payroll outsourcing services 2013
Accounting payroll outsourcing services   2013Accounting payroll outsourcing services   2013
Accounting payroll outsourcing services 2013
 
Risk pro trainings brochure 2013
Risk pro trainings brochure 2013Risk pro trainings brochure 2013
Risk pro trainings brochure 2013
 
Riskpro aml services
Riskpro aml servicesRiskpro aml services
Riskpro aml services
 
Vc Risk Services Brochure
Vc Risk Services BrochureVc Risk Services Brochure
Vc Risk Services Brochure
 
Outsourcing Services Brochure
Outsourcing  Services BrochureOutsourcing  Services Brochure
Outsourcing Services Brochure
 

Similar a Riskpro information risk management

Similar a Riskpro information risk management (20)

Riskpro information risk management 2013
Riskpro information risk management 2013Riskpro information risk management 2013
Riskpro information risk management 2013
 
Riskpro construction industry
Riskpro construction industryRiskpro construction industry
Riskpro construction industry
 
Riskpro Construction Industry
Riskpro Construction IndustryRiskpro Construction Industry
Riskpro Construction Industry
 
Riskpro construction industry 2013
Riskpro construction industry 2013Riskpro construction industry 2013
Riskpro construction industry 2013
 
Riskpro Business Risk Management
Riskpro Business Risk ManagementRiskpro Business Risk Management
Riskpro Business Risk Management
 
Riskpro Trainings Automotive Industry
Riskpro Trainings Automotive IndustryRiskpro Trainings Automotive Industry
Riskpro Trainings Automotive Industry
 
Riskpro Trainings Automotive Industry
Riskpro Trainings Automotive IndustryRiskpro Trainings Automotive Industry
Riskpro Trainings Automotive Industry
 
Riskpro Trainings Automotive Industry
Riskpro Trainings Automotive IndustryRiskpro Trainings Automotive Industry
Riskpro Trainings Automotive Industry
 
Bi Risk Services
Bi Risk ServicesBi Risk Services
Bi Risk Services
 
Bi Risk Services
Bi Risk ServicesBi Risk Services
Bi Risk Services
 
Bi risk services 2013
Bi risk services 2013Bi risk services 2013
Bi risk services 2013
 
Bi risk services 2013
Bi risk services 2013Bi risk services 2013
Bi risk services 2013
 
Bi risk services 2013
Bi risk services 2013Bi risk services 2013
Bi risk services 2013
 
Riskpro construction industry 2013
Riskpro construction industry 2013Riskpro construction industry 2013
Riskpro construction industry 2013
 
Riskpro construction industry 2013
Riskpro construction industry 2013Riskpro construction industry 2013
Riskpro construction industry 2013
 
Bpo risk management
Bpo risk managementBpo risk management
Bpo risk management
 
Riskpro Legal And Compliance Audits
Riskpro Legal And Compliance AuditsRiskpro Legal And Compliance Audits
Riskpro Legal And Compliance Audits
 
Riskpro Legal And Compliance Audits
Riskpro Legal And Compliance AuditsRiskpro Legal And Compliance Audits
Riskpro Legal And Compliance Audits
 
Riskpro Security Audit
Riskpro Security AuditRiskpro Security Audit
Riskpro Security Audit
 
Riskpro Security Audit
Riskpro Security AuditRiskpro Security Audit
Riskpro Security Audit
 

Más de Rahul Bhan (CA, CIA, MBA)

India and sweden strategy brochure 2013 riskpro
India and sweden strategy brochure 2013 riskproIndia and sweden strategy brochure 2013 riskpro
India and sweden strategy brochure 2013 riskpro
Rahul Bhan (CA, CIA, MBA)
 
Accounting payroll outsourcing services 2013
Accounting payroll outsourcing services   2013Accounting payroll outsourcing services   2013
Accounting payroll outsourcing services 2013
Rahul Bhan (CA, CIA, MBA)
 

Más de Rahul Bhan (CA, CIA, MBA) (20)

CIA degree
CIA degreeCIA degree
CIA degree
 
MBA Nyenrode degree
MBA Nyenrode degreeMBA Nyenrode degree
MBA Nyenrode degree
 
CA final certificate
CA final certificateCA final certificate
CA final certificate
 
B.Com Degree
B.Com DegreeB.Com Degree
B.Com Degree
 
Code of conduct completion certificate
Code of conduct completion certificateCode of conduct completion certificate
Code of conduct completion certificate
 
Marketing risk advisory brochure 2013
Marketing risk advisory brochure 2013Marketing risk advisory brochure 2013
Marketing risk advisory brochure 2013
 
Legal risk advisory services 2013
Legal risk advisory services 2013Legal risk advisory services 2013
Legal risk advisory services 2013
 
Lean six sigma training services 2013
Lean six sigma training services 2013Lean six sigma training services 2013
Lean six sigma training services 2013
 
It risk advisory brochure 2013
It risk advisory brochure 2013It risk advisory brochure 2013
It risk advisory brochure 2013
 
Insurance fraud risk management service
Insurance fraud risk management serviceInsurance fraud risk management service
Insurance fraud risk management service
 
India entry strategy brochure 2013
India entry strategy brochure 2013India entry strategy brochure 2013
India entry strategy brochure 2013
 
India and sweden strategy brochure 2013 riskpro
India and sweden strategy brochure 2013 riskproIndia and sweden strategy brochure 2013 riskpro
India and sweden strategy brochure 2013 riskpro
 
Independent director sme services 2013
Independent director sme services 2013Independent director sme services 2013
Independent director sme services 2013
 
Fraud risk services 2013
Fraud risk services 2013Fraud risk services 2013
Fraud risk services 2013
 
Fatca compliance brochure riskpro 2013
Fatca compliance brochure riskpro 2013Fatca compliance brochure riskpro 2013
Fatca compliance brochure riskpro 2013
 
Bpo risk management 2013
Bpo risk management 2013Bpo risk management 2013
Bpo risk management 2013
 
Bi risk services 2013
Bi risk services 2013Bi risk services 2013
Bi risk services 2013
 
Aml training
Aml trainingAml training
Aml training
 
Accounting payroll outsourcing services 2013
Accounting payroll outsourcing services   2013Accounting payroll outsourcing services   2013
Accounting payroll outsourcing services 2013
 
Vendor risk management 2013
Vendor risk management 2013Vendor risk management 2013
Vendor risk management 2013
 

Último

unwanted pregnancy Kit [+918133066128] Abortion Pills IN Dubai UAE Abudhabi
unwanted pregnancy Kit [+918133066128] Abortion Pills IN Dubai UAE Abudhabiunwanted pregnancy Kit [+918133066128] Abortion Pills IN Dubai UAE Abudhabi
unwanted pregnancy Kit [+918133066128] Abortion Pills IN Dubai UAE Abudhabi
Abortion pills in Kuwait Cytotec pills in Kuwait
 
Mifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pills
Mifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pillsMifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pills
Mifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pills
Abortion pills in Kuwait Cytotec pills in Kuwait
 
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
dollysharma2066
 
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
lizamodels9
 

Último (20)

B.COM Unit – 4 ( CORPORATE SOCIAL RESPONSIBILITY ( CSR ).pptx
B.COM Unit – 4 ( CORPORATE SOCIAL RESPONSIBILITY ( CSR ).pptxB.COM Unit – 4 ( CORPORATE SOCIAL RESPONSIBILITY ( CSR ).pptx
B.COM Unit – 4 ( CORPORATE SOCIAL RESPONSIBILITY ( CSR ).pptx
 
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service AvailableCall Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
 
7.pdf This presentation captures many uses and the significance of the number...
7.pdf This presentation captures many uses and the significance of the number...7.pdf This presentation captures many uses and the significance of the number...
7.pdf This presentation captures many uses and the significance of the number...
 
unwanted pregnancy Kit [+918133066128] Abortion Pills IN Dubai UAE Abudhabi
unwanted pregnancy Kit [+918133066128] Abortion Pills IN Dubai UAE Abudhabiunwanted pregnancy Kit [+918133066128] Abortion Pills IN Dubai UAE Abudhabi
unwanted pregnancy Kit [+918133066128] Abortion Pills IN Dubai UAE Abudhabi
 
Mifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pills
Mifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pillsMifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pills
Mifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pills
 
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
FULL ENJOY Call Girls In Mahipalpur Delhi Contact Us 8377877756
 
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best Services
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best ServicesMysore Call Girls 8617370543 WhatsApp Number 24x7 Best Services
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best Services
 
Boost the utilization of your HCL environment by reevaluating use cases and f...
Boost the utilization of your HCL environment by reevaluating use cases and f...Boost the utilization of your HCL environment by reevaluating use cases and f...
Boost the utilization of your HCL environment by reevaluating use cases and f...
 
Value Proposition canvas- Customer needs and pains
Value Proposition canvas- Customer needs and painsValue Proposition canvas- Customer needs and pains
Value Proposition canvas- Customer needs and pains
 
Organizational Transformation Lead with Culture
Organizational Transformation Lead with CultureOrganizational Transformation Lead with Culture
Organizational Transformation Lead with Culture
 
Regression analysis: Simple Linear Regression Multiple Linear Regression
Regression analysis:  Simple Linear Regression Multiple Linear RegressionRegression analysis:  Simple Linear Regression Multiple Linear Regression
Regression analysis: Simple Linear Regression Multiple Linear Regression
 
VVVIP Call Girls In Greater Kailash ➡️ Delhi ➡️ 9999965857 🚀 No Advance 24HRS...
VVVIP Call Girls In Greater Kailash ➡️ Delhi ➡️ 9999965857 🚀 No Advance 24HRS...VVVIP Call Girls In Greater Kailash ➡️ Delhi ➡️ 9999965857 🚀 No Advance 24HRS...
VVVIP Call Girls In Greater Kailash ➡️ Delhi ➡️ 9999965857 🚀 No Advance 24HRS...
 
RSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors DataRSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors Data
 
Pharma Works Profile of Karan Communications
Pharma Works Profile of Karan CommunicationsPharma Works Profile of Karan Communications
Pharma Works Profile of Karan Communications
 
MONA 98765-12871 CALL GIRLS IN LUDHIANA LUDHIANA CALL GIRL
MONA 98765-12871 CALL GIRLS IN LUDHIANA LUDHIANA CALL GIRLMONA 98765-12871 CALL GIRLS IN LUDHIANA LUDHIANA CALL GIRL
MONA 98765-12871 CALL GIRLS IN LUDHIANA LUDHIANA CALL GIRL
 
The Path to Product Excellence: Avoiding Common Pitfalls and Enhancing Commun...
The Path to Product Excellence: Avoiding Common Pitfalls and Enhancing Commun...The Path to Product Excellence: Avoiding Common Pitfalls and Enhancing Commun...
The Path to Product Excellence: Avoiding Common Pitfalls and Enhancing Commun...
 
Cracking the Cultural Competence Code.pptx
Cracking the Cultural Competence Code.pptxCracking the Cultural Competence Code.pptx
Cracking the Cultural Competence Code.pptx
 
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
Russian Call Girls In Gurgaon ❤️8448577510 ⊹Best Escorts Service In 24/7 Delh...
 
Monte Carlo simulation : Simulation using MCSM
Monte Carlo simulation : Simulation using MCSMMonte Carlo simulation : Simulation using MCSM
Monte Carlo simulation : Simulation using MCSM
 
HONOR Veterans Event Keynote by Michael Hawkins
HONOR Veterans Event Keynote by Michael HawkinsHONOR Veterans Event Keynote by Michael Hawkins
HONOR Veterans Event Keynote by Michael Hawkins
 

Riskpro information risk management

  • 1. Information Risk & Business Continuity Management Riskpro, India 1
  • 2. Who is Riskpro… Why us? ABOUT US MISSION  Riskpro is an organisation of member firms around India devoted to client service  Provide integrated risk management excellence. Member firms offer wide range consulting services to mid-large sized of services in the field of risk management. corporate /financial institutions in India  Currently it has offices in three major cities  Be the preferred service provider for Mumbai, Delhi and Bangalore and alliances complete Governance, Risk and Compliance in other cities. (GRC) solutions.  Managed by experienced professionals with experiences spanning various industries. VALUE PROPOSITION DIFFERENTIATORS  You get quality advisory, normally delivered by large consulting firms, at fee levels  Risk Management is our main focus charged by independent & small firms  Over 200 years of cumulative experience  High quality deliverables  Hybrid Delivery model  Multi-skilled & multi-disciplined organisation.  Ability to take on large and complex projects  Timely completion of any task due to delivery capabilities  Affordable alternative to large firms  We Hold hands, not shake hands. 2
  • 3. Risk Management Advisory Services Basel II/III Advisory Corporate Risks Information Security  Market Risk  Enterprise Risk Assessment  IS Audit  Credit Risk  Fraud Risk  Information Security  Operational Risk  Risk based Internal Audit  Business Continuity  ICAAP  Operations Risk  IT Assurance  Forensic services  IT Governance SERVICES Operational Risk Governance Other Risks  Process reviews  Corporate Governance  Business/Strategic Risk  Policy/ Process Review  Business Strategic risk  Reputation Risk  Process Improvement  Fraud Risk  Outsourcing Risk  Compliance Risk  Forensic Accounting  Contractual Risk Training Recruitment  Banking – E Learning  Virtual Risk Managers  Corporate Training  Full Time Risk Professionals  Regular Risk Management Training  Part time Risk Professionals  Online Training material  Risk Managers on call – free  Workshops / Events 3
  • 4. Information Risk Governance BACKGROUND  In an environment of escalating information security threats, technology outages, data integrity and quality issues, corporate governance concerns and privacy regulations, organizations need to be sure of the integrity, confidentiality, and availability of their paper & electronic information and underlying systems.  This requires information handling, communication & storage systems that are properly deployed, monitored and controlled.  With increasing regulatory norms being enforced for companies, managing risks affecting confidentiality, integrity and availability of vital information assets has become one of the most important business drivers as well as a key differentiator from competition. CHALLENGES  Mitigation of risks related to information assets requires an organization to think outside of traditional IT controls and also look at their non-IT areas for information related risks such as people risks, compliance risks, third party/supplier risks, client related risks and physical/environmental risks.  UK’s Data Protection Act, Indian Information Technology Act, US GLB/HIPAA puts onus on the information owners as well as information processor for the protection of the information. Aside from fines & penalties, companies should also think of reputation issues & business loss due to a breach.  High attrition, skills/knowledge loss and valuable intellectual property in people intensive operations such as banks, insurance firms, BPO/KPOs can exacerbate threats to information.  Most companies do not treat information as company assets and therefore there is insufficient oversight from board, auditors etc. 4
  • 5. Information Security Assessments Dipstick review is a high level look at the significant risks affecting information assets and a quick look at the controls. This review is suitable for Dipstick Review a quick and dirty look at the low hanging fruits or for setting context for a bigger review. Based on the global control frameworks such as ISO 27001, COBIT & ITIL, Information Security the IS audit service is meant to augment the regular internal audits & provide expertise on information security controls. The audit covers regulatory Audits compliances, adherence to internal policies/procedures, second party vendor audits, readiness checks for certifications, and compliances UK’s Data Protection Act of 1998 puts onerous responsibilities on data controllers and data processors. Penalties for noncompliance include Review of personal liability, penalties as well as possible reputation loss. The 7th and Compliance with UK 8th principals are relevant to data flowing to locations outside of UK and EEA Data Protection Act (European Economic Area). We have experts who have dealt with DPA compliances & data export and offer consulting on how a non-EEA company handling UK personal data can comply with DPA principles & requirements. Info Sec Training Information security awareness training 5
  • 6. ISO 27001 Certification Services  ISO 27001 is a global standard for information security practices. Originating from the British standard BS7799, ISO 27001 certification goes beyond traditional IT security & also includes other important risk areas such as employee related risks (during hiring, employment, transfers & termination), Physical/environmental risks, compliance related risks, business continuity risks, senior management commitment, linkage to risk management etc. There are 133 specific controls across 11 domains & certification is given by the external certification body only against demonstrable implementation of controls A pre-certification audit is a high level evaluation indicating where your Pre-certification company currently stands in compliance with ISO 27001 before the main assessments certification audit. This audit is conducted under certification audit conditions and non-conformances are identified for the client’s action. Pre-certification ISO 27001 consulting including gap assessments, policy & procedure design, ISO 27001 design & risk assessments, information systems controls design and evaluation. We implementation follow proven methodologies to enable your company get certified to ISO consulting 27001 standard and sustain the certification. We can also provide entire lifecycle support to ensure that after certification the client is ready for the periodic surveillance audits. 6
  • 7. Business Resiliency (BCP/DR/CM) Consulting  All organizations should plan for contingencies so that business remains resilient and company can provide immediate, accurate and measured response to emergency situations. A resilient operations has sufficient planning in place and has implemented backup/recovery strategies for its data, people & infrastructure so that Critical Business Process are continued and negative impact on Business and revenue is reduced. Regulators & compliances such as Basel II require robust BCP/DR/CM programs commensurate with business objectives. Business Impact Identifying process criticalities, recovery priorities, recovery time Analysis (BIA) objectives (RTO), recovery points (RPO) & resource requirement. These form the foundation of BCP planning. BCP Crisis Management plan Design and development of BCP and Crisis Management program so development & that BCP/CM strategies & tactics support business objectives even in a Implementation disaster situation. We also provide entire BCP lifecycle support. Testing of various intensities from a walkthrough, desktop scenario to Testing services full BCP test. We can also provide a high intensity & complex scenario for stress testing BCP/CM teams. Various BCP/CM trainings for all employees, crisis management team BCP/CM training or BCP team members. 7
  • 8. Riskpro Clients Our Clients Any trademarks or logos used throughout this presentation are the property of their respective owners 8
  • 9. Team Experiences Our Experiences Our team members have worked at world class Companies Any trademarks or logos used throughout this presentation are the property of their respective owners 9
  • 10. RESUMES – Our team Credentials  Founder - Riskpro  CA, CPA, MBA-Finance (USA), FRM (GARP) Manoj Jain  Over 10 years international experience – 6 years in Bahrain and 4 years USA  15 years exp in risk consulting and internal audits  Sox Compliance project for Fannie Mae, USA ( $900+ Billion Mortgage Company)  Specialization in Operational Risk, Basel II, Sox and Control design  Led medium to large engagement teams  Co- Founder - Riskpro  CA (India), MBA (Netherlands), CIA (USA) Rahul Bhan  Over 15 years of extensive internal and external audit experience in India and abroad.  Worked with KPMG United Arab Emirates, PKF South Africa, Ernst and Young Kuwait, Deloitte Netherlands and KPMG India.  Worked with clients in a wide variety of industries and countries including trading, retail and consumer goods, NGO, manufacturing and banking and finance. Major clients include banks, investment companies, manufacturing organizations, aviation etc. 10
  • 11. RESUMES - Our team Credentials  Co-Founder - Riskpro  B Tech MBA Shriram Gokte  22 years of audit, risk management, information security & Compliance experience  Most recent employment with Paternoster, a UK Insurance company as Directpr Risk & Compliance  Worked for Principal Financial Group at their Des Moines USA HO and then Birla Sun Life Insurance as CRO  Strong operational process, risks, info sec and internal controls experience  Has taken 3 companies through ISO 27001 certifications.  Co-Founder - Riskpro Casper Abraham  PGD (Electrical & Electronics & Computer Programming)  30 years of experience in Information & Communications Technology (ICT) Solutions for Retail, Garments, Manufacturing, Services Industries.  Has created Companies, Divisions, Products, Brands, Teams & Markets.  Consulting in Business, Technology, Marketing & Sales & Strategic Planning.  Advisory, Training, Workshops & Implementation in Systems Thinking, Systems Modeling & Balanced Scorecard  Worked with TIFR, Mahindra, Ambience, Communico-Graphique & Ionidea Inc, USA, 11
  • 12. RESUMES - PARTNERSHIPS  Specialist Risk Consultant – Business Continuity Andrew Hiles  Founder and 15-year Chairman of Survive, the first international user group for Business Continuity professionals  Founding director and first Fellow of the Business Continuity Institute  Over 25 years international consulting expertise in Risk, Crisis, Emergency, Incident, and Business Continuity and ICT Disaster Recovery Management  Multi-sector experience including Banking, Insurance, Finance, Oil, Gas, Energy, Manufacturing, Retail, Hi-Tech & Telecom  Western Press Award for services to business, 1994; BCI/CIR nomination for lifetime achievement in BC, 1999, London; inducted into BC Hall of Fame by CPM magazine, 2004, Washington DC.  Specialist Risk Consultant – Enterprise Risk Management Chris E. Mandel  Highly skilled risk and insurance professional with 25 years of experience designing, developing and implementing large, global corporate risk management programs for Fortune 500 firms.  Principal Consultant and Founder - Excellence in Risk Management, LLC. (Texas, USA)  Past experiences include USAA, PepsiCo, American National Red Cross ,Verizon 12
  • 13. Contacts and Office Locations Corporate Mumbai Delhi Bangalore Manoj Jain Rahul Bhan Casper Abraham Director Director Director M- 98337 67114 M- 99680 05042 M- 98450 61870 info@riskpro.in manoj.jain@riskpro.in rahul.bhan@riskpro.in casper.abraham@riskpro.in www.riskpro.in Shriram Gokte Raj Sawhney Principal - Information Risk Principal – Business Risk M- 98209 94063 M- 99711 03510 shriram.gokte@riskpro.in raj.sawhney@riskpro.in Ahmedabad Pune Agra Maulik Manakiwala M.L. Jain Alok Kumar Agarwal Associate Firm Principal – Strategy Risk Associate Firm M - 91 9825640046 M- 9822011987 M- 99971 65253 mljain@riskpro.in Gourav Ladha Sap Risk Advisory M- 97129 52955 THANKS 13