Risk Management Committee

We have a risk management committee that doesn't include our security officer, HR or internal audit. Should they be included as regular members?

"We strongly recommend including these three functions in your risk management committee. One significant reason is to secure their support in situations such as internal fraud cases. It becomes particularly important when the identity of the embezzler is unknown. We've observed instances of internal fraud cases where these three departments have clashed over the responsibility for conducting investigations."

First published on 10/15/2023

