Which Holiday Character Best Represents Your Risk Management Work?
Steven Minsky | Dec. 25, 2017
ENTERPRISE RISK MANAGEMENT – RUDOLPH
Santa Claus sat in his sleigh, filled with presents for children around the world, but the fog and snow were so thick that he couldn’t safely take flight. How was he going to guide his sleigh? Not only was the fog blinding vision, but obstacles of rooftops and snowflakes continually came up along the way. Luckily, along came Rudolph with a nose so bright he could lead the way! Rudolph guided the other reindeer and Santa from house to house, always looking for new barriers along the way and avoiding them with ease. As they flew into the night, Santa Claus exclaimed, “Merry Christmas to all, and to all a good night!”
Every organization has its own obstacles to face every day. Enterprise risk management helps identify those obstacles and find the best way to mitigate those risks before they happen. Just as Rudolph provided clarity through a snowy night sky, enterprise risk management provides clarity to the organization and the board of directors. Santa Claus had everything in place to achieve his goals (deliver his gifts!), but it still wouldn’t have been possible without the help of Rudolph! ERM uncovers critical risks across the enterprise and prevents surprises, whether they are a missed vendor contract renewal, a data breach, or a snowy December night sky.
AUDIT MANAGEMENT – MRS. CLAUS

Managing and tracking an audit universe can be a meticulous task in an organization, just like the planning and preparation for Christmas night. Sometimes, it might take a little tweaking (like an extra cup of sugar!) to get it just right. Luckily, ERM is there for the audit management team (or for the North Pole, Mrs. Claus!) to make it all possible through planning, support, and execution! Without audit management and ERM, your organization would not be where it is today, and without Mrs. Claus, Christmas could not be accomplished (and there definitely wouldn’t be delicious cookies on top of that!).
VENDOR MANAGEMENT – SANTA CLAUS

Just like the work of Santa, a big part of work in vendor management is making a list and checking it twice! Santa knows who’s naughty and who’s nice, and vendor management software tells us that it’s not worth the risk to work with a vendor if we can’t be sure they’ll come through when we need them most!
COMPLIANCE MANAGEMENT – THE DREIDEL

Compliance management can often feel like a game of Dreidel. When compliance is not met, it’s like spinning and getting Shin – the company has to put a piece in the pot. But a spin on Gimel means the company is rewarded with everything in the pot! Fortunately, unlike Dreidel, risk-based compliance management isn’t based on luck, so if strong ERM processes are in place, the company will get Gimel every time!
IT GOVERNANCE & SECURITY – THE ELVES

IT governance and security changes every day. There are many levels and complexities to it, just like the toys in Santa’s Shop! Every year, new security threats surface, and companies must be agile and quick to adjust. If the elves don’t learn how to make the new toy quick enough, they won’t have enough in time for Christmas. Increasingly, the majority of products and services have technology embedded in them or rely on technology. If a company doesn’t stay up to date to protect themselves against new threats, they might experience a data breach, ransomware, hacking, or much worse. Luckily, the elves shift their approach and stay ahead of the new circumstances, and IT governance and security does the same.
BUSINESS CONTINUITY & DISASTER RECOVERY – FROSTY THE SNOWMAN

It’s easy for a company to get caught up in all the happy moments when business is going well, but without risk-based business continuity and disaster recovery plans, Frosty would have melted away. Frosty was enjoying playing with the children, and every company likes when business is improving, but when we forget to focus on what’s to come, disaster can strike without warning! Luckily, BC/DR teams are there with ERM plans in place to keep an organization moving forward, like a train to the North Pole.
FINANCIAL REPORTING (SOX, MAR) – DOMINICK THE DONKEY

Financial reporting is complicated, and it takes a certain skillset to accomplish, just like the task of delivering gifts in Italy. Reindeer can’t climb the hills of Italy, but with ERM, Dominick the Donkey can! Through tracking operational activities, financial attestations, and accountability, an organization can navigate its way to success, just like Dominick can navigate his way, delivering gifts on-time and on-budget!
POLICY MANAGEMENT – THE GRINCH

Okay, so the Grinch gets a bad rap, but he wasn’t all bad – he helped everyone remember what’s important about the holiday season! The Grinch knows that by collecting all the toys, he will be able to show what is really significant about that day. Policy management includes maintaining and collecting portfolios of policies, procedures, and documents. Through all this work, important information is revealed about an organization with ERM. Perhaps it was a risk no one saw coming, or it was an opportunity that might have been missed, just like re-discovering the meaning of Christmas!
INCIDENT MANAGEMENT – THE GINGERBREAD MAN
With frosting eyes and buttons made of gumdrops, the Gingerbread Man jumped off the cookie sheet as he was removed from the oven. He ran and ran, dodging all obstacles that came his way. He escaped the old couple, the pig, the cow, and the horse as he continued on his journey.
Risk-based incident management helps you think critically about incidents by reporting, tracking, and identifying the root cause so they never come up again. This agility is crucial to organizational success, just like the Gingerbread Man’s ability to think critically, prioritize threats, and adjust to a changing environment during his escape. He had to be nimble and quick and on top of every move, just like the work in incident management with ERM.
Happy holidays from everyone at LogicManager. We wish you all a bright and happy new year!
