No Result
View All Result
SUBSCRIBE | NO FEES, NO PAYWALLS
MANAGE MY SUBSCRIPTION
NEWSLETTER
Corporate Compliance Insights
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • Artificial Intelligence (AI)
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Research
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
  • Webinars
  • Videos
  • Subscribe
Jump to a Section
  • At the Office
    • Ethics
    • HR Compliance
    • Leadership & Career
    • Well-Being at Work
  • Compliance & Risk
    • Compliance
    • FCPA
    • Fraud
    • Risk
  • Finserv & Audit
    • Financial Services
    • Internal Audit
  • Governance
    • ESG
    • Getting Governance Right
  • Infosec
    • Cybersecurity
    • Data Privacy
  • Opinion
    • Adam Balfour
    • Jim DeLoach
    • Mary Shirley
    • Yan Tougas
No Result
View All Result
Corporate Compliance Insights
Home Risk

Digital Collaboration: Risk Assessment’s Next Chapter

New tools enable broader stakeholder engagement in risk assessment process

by John Rogula
January 20, 2025
in Risk
digital hands reaching out

As risks become increasingly interconnected, traditional assessment methods are struggling to keep pace. John Rogula, risk advisory managing director at Baker Tilly, details how collaboration tools are revolutionizing enterprise risk management through real-time data collection and enhanced stakeholder engagement. 

It’s time to reimagine the risk assessment process.

The ripple effects from technological advancements, climate change, geopolitical shifts, regulatory updates, evolving compliance requirements, social media — and the list goes on — are far-reaching and happening at a dizzying pace. Staying one step ahead is a daunting challenge to say the least.   

Conducting risk assessments has become an essential component of identifying, analyzing and prioritizing risks to avoid strategic missteps, missed opportunities and worst-case loss scenarios. But oftentimes traditional risk assessments fall short. Ensuring that all stakeholders are represented at the right time and that the data gathered is meaningful and actionable within a rapid timeframe is no easy feat.

Effectively leveraging collaborative methodology and tools can address these challenges and enhance the risk assessment process, enabling organizations to proactively mitigate the downsides of risk as well as uncover opportunities for growth, efficiency and competitive differentiation.

Adopt a collaboration approach

Historically, the methodology employed to conduct a risk assessment is similar whether planning for an enterprise risk assessment, an internal audit risk assessment or diving deep into potential information technology (IT) or environmental-related risks. Organizations usually gather risk insights from a wide set of stakeholders while sorting through a vast amount of external risk information. This is often a manual process that relies primarily on interviews and/or surveys and is focused largely on threats, which is not only burdensome but can result in errors and overlooked opportunities that might be presented by risk factors.

Risks are increasingly interconnected today, and as such, it is not practical to think they can be managed in a silo. You cannot look at regulatory changes without considering the compliance impacts, nor would you identify increased cybersecurity threats without preparing data breach mitigation strategies.

Taking a collaborative approach to risk assessment involves bringing together selected stakeholders from across the organization to jointly identify and prioritize risks. This can include group discussions, facilitated sessions or sharing risk information across different areas. The value of collaboration lies in exchanging diverse perspectives and agreeing on the top risks to enhance the organization’s resilience.

Risk analysis and prioritization using a traditional enterprise risk management (ERM) approach is often reliant on two criteria, impact and likelihood of risk, frequently giving equal weighting to both. This provides a limited, short-term perspective on risk that overlooks the organization’s tolerance for the risk as well as its strategic goals, and by averaging impact and likelihood, minimizes Black Swan events. This type of analysis does not inform consensus around the entire enterprise risk profile and often lacks actionable outcomes.

However, taking an enhanced collaborative approach when identifying and assessing risks ensures organizations are taking a holistic view and avoiding any blindspots. In addition to gathering data from both internal and external stakeholders and sources, this approach relies on leveraging historical data and industry benchmarks, continuous monitoring and adaptation of the organization’s risk profile, and collaboration and communication.

A collaborative risk assessment provides a diversity of perspectives, early detection of emerging risks and effective risk prioritization. The result is an overall enhanced risk culture as participants consider not only the risks but the mitigation strategies needed to proactively manage them.

While the concept of discussing different viewpoints and sharing risk information to collectively agree on the top risks facing the organization and improving the organization’s resilience is simple, the execution can prove complicated. Completing risk assessments quickly while ensuring inclusion of up-to-date insights from a broad set of stakeholders and sources can be costly and time-consuming.

plastic punching toy
Risk

Don’t Let Regulators Catch You Off-Guard

by Allison Raley
December 10, 2024

Audits and investigations are inevitable in some industries, but comprehensive compliance can keep your company off the naughty list

Read moreDetails

Leverage technology-enabled collaboration tools

Collaboration tools can provide the benefits of multiple stakeholders’ simultaneous input while minimizing the time and resources invested to gather such data. These tools play a powerful role as part of an enhanced enterprise risk assessment as they enable:

Remote collaboration

Web-based solutions facilitate effective remote collaboration, allowing for easier scheduling and broader stakeholder inclusion across locations and time zones, thereby enriching risk identification with diverse perspectives and more data points.

Anonymous input

Collaboration tools can capture risk information anonymously or with identifiable attributes, allowing organizations to track risk assessments by function or department. In environments where strong personalities or politics may impede data collection, anonymous submissions encourage diverse input and provide a voice to all stakeholders.

Real-time collaboration

Using technology in risk assessments automates repetitive tasks, enabling teams to focus on outcomes. Collaboration tools offer real-time results, highlighting consensus or non-consensus, which fosters deeper discussions and better alignment on key risks. This engagement increases participants’ investment in the process, particularly among organizational leaders, promoting risk ownership and effective responses.

An implementation roadmap

Let’s take a deeper dive into what this means in each of the three phases of an enhanced risk assessment approach.

Data collection

In the data collection phase of an enhanced risk assessment, the focus shifts from merely identifying risks that hinder strategy to informing the strategy itself. This begins by questioning how the organization measures success for both internal and external stakeholders, using these insights to identify significant roadblocks that could impede or accelerate performance objectives and potentially necessitate strategic adjustments. Enhanced assessments encompass all enterprise risks by leveraging a risk universe tool that lists 80 to 100 sector-relevant risks to broaden participants’ perspectives beyond their specific areas.

This technology-driven approach yields richer data by asking participants detailed questions about risk names, scenarios, performance impacts, indicators, current and potential mitigation efforts and necessary responses, moving beyond the basic “what keeps you up at night” inquiries.

Risk analysis and prioritization

The analysis and prioritization phase of an enhanced risk assessment goes beyond evaluating impact and likelihood to include management preparedness and risk velocity — how quickly the effects will be felt once a risk materializes. Taking risk tolerance into consideration, this approach prioritizes responses and emphasizes the significance of high-impact events, including Black Swan events. Instead of positioning risks on a heatmap, the focus shifts to determining the necessary responses to each risk.

Outcome and reporting

When it comes to outcomes and reporting, an enhanced risk analysis strikes a balance between strategic and operational risks as well as internal and external risks, focusing on future uncertainties rather than simply issues at hand. Using technology-enhanced collaboration tools to apply scenarios to the risk, build consensus among stakeholders and quantify impact automates the reporting process resulting in timely, insightful analysis that can inform appropriate response plans and drive strategy.

Tags: Risk Assessment
Previous Post

As SaaS Evolves, Hybrid Models Take Center Stage

Next Post

Inside Regulators’ View of ‘Reasonable Security’

John Rogula

John Rogula

John Rogula is a managing director in the risk advisory practice at Baker Tilly, an assurance, tax and advisory firm. With more than 20 years of experience, John is a versatile, hands-on, highly experienced enterprise risk management executive with a diverse skill set spanning enterprise risk, program and strategy management. He coordinates and streamlines intricate projects to enhance organizational effectiveness and reduce costs. John has a proven track record in designing and implementing enterprise risk management (ERM) solutions, designing and implementing robust enterprise risk and issue management strategies, refining processes and deploying systems aligned with business goals.

Related Posts

hand checking off checklist

10 Questions Every Organization Should Ask a Potential AI Vendor

by Angela Juneau
July 15, 2026

Adopting AI without understanding how it was built and how it handles data can expose an organization to risks that...

manchester uk terrorist attack flowers

Martyn’s Law: What New Anti-Terrorism Guidance Means for Event Organizers

by Liam Lane and Constance Strasser
July 14, 2026

Ahead of the act's expected entry into force next year, the guidance signals a cultural shift: counterterrorism preparedness embedded into...

nist sign building

NIST Database Change Rebalances Burden of Risk

by Nichole Windholz
July 13, 2026

Register of common vulnerabilities and exposures will have less federal context, leaving organizations to decide if a vulnerability warrants quick...

kalshi display nyc mayoral election 2025

Congratulations, You Have a Prediction Market Policy; Now What?

by Jennifer L. Gaskin
June 24, 2026

Ignoring prediction markets and employee temptations to bet on them isn’t going to make these increasingly popular platforms go away....

Next Post
small figurines connecting ethernet cable

Inside Regulators' View of ‘Reasonable Security’

GGR sq
No Result
View All Result

Privacy Policy | AI Policy

Founded in 2010, CCI is the web’s premier global independent news source for compliance, ethics, risk and information security. 

Got a news tip? Get in touch. Want a weekly round-up in your inbox? Sign up for free. No subscription fees, no paywalls. 

Follow Us

Browse Topics:

  • CCI Press
  • Compliance
  • Compliance Podcasts
  • Cybersecurity
  • Data Privacy
  • eBooks Published by CCI
  • Ethics
  • FCPA
  • Featured
  • Financial Services
  • Fraud
  • Governance
  • GRC Vendor News
  • HR Compliance
  • Internal Audit
  • Leadership and Career
  • On Demand Webinars
  • Opinion
  • Research
  • Resource Library
  • Risk
  • Uncategorized
  • Videos
  • Webinars
  • Well-Being
  • Whitepapers

© 2026 Corporate Compliance Insights

No Result
View All Result
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • Artificial Intelligence (AI)
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Research
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
  • Webinars
  • Videos
  • Subscribe

© 2026 Corporate Compliance Insights