Skip to content

Risk Management Committee

Answered by: 

Question: 
We have a risk management committee that doesn't include our security officer, HR or internal audit. Should they be included as regular members?
Answer: 

"We strongly recommend including these three functions in your risk management committee. One significant reason is to secure their support in situations such as internal fraud cases. It becomes particularly important when the identity of the embezzler is unknown. We've observed instances of internal fraud cases where these three departments have clashed over the responsibility for conducting investigations."

Learn more about Barry Thompson's The 15 Worst Security Mistakes webinar.

First published on 10/15/2023

Search Topics