Why ERM Often Fails to Add Value to Decision-Making

You are working hard to help your organization build an effective enterprise risk management program. You’ve spoken with all the business units, identified their significant “risks” and assessed them, come up with numerous risk registers, developed detailed risk reports for executives, and so on.

Yet, people still don’t seem to see the value.


Why does it feel like people dread the semi-annual or annual risk conversation?

Why are the risk registers not incorporated into their daily work?

Why do the executives not engage when you present the risk reports to them?

The answer: you have become so focused on the past and the present that the future becomes forgotten.

Are you surprised by that answer?

When you talk to the business, you are asking about the challenges that they are currently facing. What are the risks associated with their processes? What are the weaknesses in what they do day in and day out?

But have you asked them about their future plans? Have you asked about the organization’s strategy and how they plan to support that strategy? Do they have the resources to take action to achieve the goals that management has set forth?

In order to get management, executive leadership and the board engaged and excited about enterprise risk management, you have to think about the future. Otherwise, you are simply focusing on the past and documenting what they already know.

There is no harm in thinking about the past – in fact, there is a common saying, “hindsight is 20/20,” but what does that mean? Reflecting on the past, taking those lessons learned, and applying them toward the future can be incredibly valuable.

When it comes to the present day of the operations of the organization, you can add valuable insights to what is currently going on.

However, the real gem of ERM is found in thinking of the future and providing foresight into the potential of what could go right, what could go wrong, and what is most likely to happen.

That is where scenario analysis comes in. Good scenario analysis means working with management to understand their train of thought:

  • Why did they decide on a specific goal?
  • How do they think that they will achieve that goal?
  • What could be standing in their way?
  • Are they willing to accept risk in order to achieve that goal? If so, what is acceptable?

Having good scenario analysis means that decision making is truly risk-informed.

And that, is the true goal of ERM!

The next question for you is how do you go from focusing on the past and the present to helping management get the foresight for good decision making?

Here are a few easy steps. At least they sound easy but harder to do in practice.

  1. Put aside the risk register.
  2. Stop focusing on operational processes and instead focus on plans for the organization.
  3. Harness the relationships you have throughout the organization for valuable insights into what the future entails.

Are you ready to move from the past and present and focus on valuable insights and foresight for your organization?

I am interested in hearing your thoughts on this topic. Feel free to leave a comment below or join the conversation on LinkedIn.

If you want some tailored guidance on how to get your organization focused on the value-add of the present and future, contact me to discuss your specific situation.

Featured image courtesy of rawpixel.com via Pexels.

Sign Up For Our Newsletter

Sign Up For Our Newsletter


Meet Carol

Helping companies achieve their vision and strategy, and succeeding in today's turbulent world, is something I'm honored to be a part of. Whether you're an occasional blog visitor or a long-term client, thank you for letting us be a part of your journey.

Most Recent Posts

The 12 Days of ERM Christmas

Without a doubt, one of my family’s favorite holidays is Christmas. Part of the fun, especially for our son, is seeing what “Santa” brought, but most importantly, we treasure the spirit of peace and goodwill the season brings. And after what seemed to be a never-ending warm spell, the weather is expected to be good…

Read More

Don’t Let Goals and Initiatives Be Blindsided by External Events

As the end of the year draws near, I think we’d all agree that while it wasn’t without its challenges, this year also wasn’t quite as turbulent as the previous two. While a lot of people are juggling company parties, shopping for friends and family, and special activities for the kids, most companies are putting…

Read More

Going the Distance: Ensuring Successful Execution of Strategic and Annual Initiatives

Strategic planning is a challenge – of all people, I understand… After all the meetings, risk and data analysis, and brainstorming of the preceding months, it’s tempting to think this is the end of the road and you can relax. Contrary to this common perception though, this is exactly not the time to relax, but…

Read More

Avoid Rookie Mistakes and Protect your Internal Reputation

Be honest – have you ever done something that you soon realized was a real rookie mistake? Me raising my hand… Considering the nature of ERM’s role to ask questions and challenge assumptions (often during conversations with executives), it can be argued that, in at least some cases, the expectations bar for risk professionals is…

Read More

ERM at Thanksgiving – An Illustration of Risk Management in Action

On occasion, I like to take some of the concepts we risk professionals think about in our jobs and apply them to different personal situations…take some of the same concepts we use when working with executives to develop corporate strategy and manage risks or uncertainty around that strategy. It’s Thanksgiving week in the U.S. –…

Read More

Why Quantitative Risk Assessment is Not Just the Best But the Only Option – A Conversation

Periodically, I have the pleasure of speaking one-on-one with Hans Læssøe on a variety of topics around ERM, strategic risk, and other issues and trends. As you know from my previous conversations (here, here) and posts featuring his work, Hans was formerly a practitioner at the iconic LEGO Company, but even more notably, is a…

Read More

The Three Lines Model – 3 Reasons Why I Don’t Like It

Everyone likes a clear-cut template that offers an easy way to create or manage something…I mean what’s not to like about a step-by-step process for accomplishing what you want? Sometimes this can work without any issues, such as the case with the Project Management Book of Knowledge (PMBOK), ISO 9001 standard, or a new cooking…

Read More

5 Avenues for Expanding your ERM Knowledge

One thing I was taught to appreciate from a young age was the value of education and knowledge. It didn’t necessarily matter what the subject was, just that I always maintain a learning or growth mindset regardless of my current status in life. This mindset has served me well over the years, and it’s a…

Read More

Storytelling and Risk Management – Developing Skills that Technology Cannot Replace

It’s amazing how technology has developed and changed our working world over time. Imagine trying to run my risk and strategy consulting firm without tools like Zoom, Box, Slack, and other ERM-specific technology tools. There is no way we would be able to serve our clients the way that we do. Just consider how the…

Read More

3 Phases to Creating and Launching an ERM Program Focused on Organizational Success

If you’ve been handed the task of creating an ERM program for your organization, let me first offer my congratulations quickly followed by my empathy for the task ahead of you. I don’t say that to scare you but to provide a small dose of reality. Building, launching, and refining an ERM program that is…

Read More