Skip to main content

Three Lines of Defense

What is the 3 lines of defense model?

3 lines of defense model distinguishes the three interrelated functions of an effective enterprise risk management program. These are:

1) Own and manage
2) Oversee
3) Independent Assurance


What is the role of first line in the 3 lines of defense model?

The first line is responsible for managing risks and maintaining effective internal controls. It is a bottom up approach where risk assessments are performed and include - RCSA - Risk Control Self Assessment, KRI - Key Risk Indicators, Risk Profile and Escalation process.



What is the role of second line in the 3 lines of defense model?

The second line is responsible for design and implementation of risk program. It provides the framework used by the 1st line to assess and manage risks.  The goal is to connect dots by taking a portfolio view of risks across the enterprise. Primarily provides top down view relative to strategy and risk appetite. 


What is the role of third line in the 3 lines of defense model?

The third line is responsible for independent internal audit and assurance. It provides periodic evaluation of the effectiveness of risk management program. It helps an organization accomplish its objectives by bringing a systematic, disciplined approach to evaluate and improve the effectiveness of risk management, control, and governance processes. The scope of
internal audit work can encompass all aspects of an organization’s operations and activities.  Internal auditors do not design or implement controls as part of their normal responsibilities and are not responsible for the organization’s operations.


Interested in learning more?
visit us at www.ermgovernance.com or contact us at info@ermgovernance.com to get your free ERM 3-lines-of-defense Program Evaluation / Assessment.




Comments

Popular posts from this blog

Data for roughly 139 million users has been taken during the breach

Canva is one of Australia's biggest tech companies. Founded in 2012, the Canva website has become a favorite among regular users and large companies who often use it to build quick websites, design logos, or put together eye-catching marketing materials. Since its launch, the site has shot up the Alexa website traffic rank, and has recently entered the Top 200, currently ranked at #170. Three days ago, the company announced it raised $70 million in a Series-D funding round, and is now valued at a whopping $2.5 billion. Canva also recently acquired two of the world's biggest free stock content sites -- Pexels and Pixabay. Details of Pexels and Pixabay users were not included in the data stolen by the hacker. Stolen data included details such as customer usernames, real names, email addresses, and city & country information, where available. For 61 million users, password hashes were also present in the database. The passwords where hashed with the bcrypt algorithm, cu

Risk Leadership 2019 Event

Book Now :    https://ermgovernance.com/Contact-Us

Essential elements of ERM

Essential elements of ERM Create your own and tailored #ERM #framework with ease! We have worked hard to incorporate changes from #COSO and #ISO #31000 so that you can benefit without having to invest a lot of time and resources.  Email us at  info@ermgovernance.com  for more details.