No Result
View All Result
SUBSCRIBE | NO FEES, NO PAYWALLS
MANAGE MY SUBSCRIPTION
NEWSLETTER
Corporate Compliance Insights
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • Artificial Intelligence (AI)
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Research
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
  • Webinars
  • Videos
  • Subscribe
Jump to a Section
  • At the Office
    • Ethics
    • HR Compliance
    • Leadership & Career
    • Well-Being at Work
  • Compliance & Risk
    • Compliance
    • FCPA
    • Fraud
    • Risk
  • Finserv & Audit
    • Financial Services
    • Internal Audit
  • Governance
    • ESG
    • Getting Governance Right
  • Infosec
    • Cybersecurity
    • Data Privacy
  • Opinion
    • Adam Balfour
    • Jim DeLoach
    • Mary Shirley
    • Yan Tougas
No Result
View All Result
Corporate Compliance Insights
Home GRC Vendor News

IA Launches Global Review of “Three Lines of Defense”

by Corporate Compliance Insights
December 5, 2018
in GRC Vendor News, Internal Audit
view of feet of military men in formation

Study focuses on ensuring widely used model continues to meet needs in a changing organizational climate

Lake Mary, FL (December 5, 2018) – For more than 20 years, organizations around the world have turned to the “Three Lines of Defense” model to navigate ever-evolving business challenges toward achieving and sustaining success.

Read: Does the New Three Lines Model Give Short Shrift to Compliance? — a CCI Exclusive

A widely used concept designating essential roles and duties in governance, risk management and control, the Three Lines of Defense is rooted in financial services but has come to serve a broader range of industries concerned with myriad issues around governance and risk management.

Acknowledging changing stakeholder expectations and increasing complexities of organizations, The Institute of Internal Auditors (IIA), in collaboration with specialists in governance and risk management, launched an extensive review of the Three Lines of Defense, weighing the concept’s strengths, application and usefulness toward ensuring its continued relevance in today’s operational climate.

Key to the study, and an updated position paper planned for release in 2019, is how the Three Lines of Defense model may be adaptable and tailored to organizations of all sizes and sectors, said Jenitha John, CIA, QIAL, Vice Chairman of Professional Certifications and leader of the Three Lines of Defense task force.

“The model must be flexible to allow for a diversity of users, and it must take into account the ever-changing nature of organizations and organizational environments,” John said. “Those charged with governance must be able to engage the Three Lines of Defense model and concept so that they may decide the most appropriate way to establish structure and resources within their organizations. Three Lines is fully capable of serving this need, but it also must address situations that exist where the three distinct lines are not in place.”

The current Three Lines of Defense model is delineated by:

  • Operational management (first line)
  • Risk management and compliance functions (second line); and
  • Internal audit (third line), which provides an organization’s governing body and senior management with comprehensive assurance based on its enterprise-wide independence and objectivity.

The IIA study is considering roles and responsibilities and the need for “horizontal coordination” and communication in the approach to risks and opportunities, John said. “Our focus is around coordination and collaboration, and on alignment and integration of the approach used across the model.”

IIA Global Chairman Naohiro Mouri, CIA, said the model is ideally situated to address a complex world. “There is a shared responsibility and accountability for the execution and assurance of governance, risk management and internal control,” Mouri said. “Our aim is not to replace Three Lines of Defense or invent a new model, but to ensure it can accommodate the nuances and dynamics we see across different organizations, so that they may leverage and learn from each other more effectively and strategically.”

“We also must embrace the concept that risk goes beyond defense,” Mouri said. “Uncertainty creates risks and it creates opportunities. Consideration must be given to both sides in decision making and planning at all levels. Organizations must decide the most appropriate way to allocate and structure resources and responsibilities within their organizations, using the Three Lines of Defense to their advantage.”

Based on input from working and advisory groups engaged by The IIA, an updated position paper will be presented for public comment in the first quarter of 2019. Details of this exposure will be announced in January. The IIA’s existing position paper, “The Three Lines of Defense in Effective Risk Management and Control,” was last updated in 2013.

For further insight on The IIA’s review of the Three Lines of Defense, see IIA President and CEO Richard Chambers’ latest blog post.

Previous Post

Common Pitfalls in Third-Party Due Diligence

Next Post

TRACE: Update – The UK Bribery Act and Enforcement Trends

Corporate Compliance Insights

Corporate Compliance Insights

Corporate Compliance Insights

Related Posts

news roundup data grungy

As Costs Rise & ROI Remains Elusive, Majority of Execs Say AI Agents Are Worth the Risks

by Staff and Wire Reports
July 23, 2026

30% of UK managers get specially trained on sexual harassment; Gartner IDs 5 big changes for legal functions

2 Gurus Talk Compliance

2 Gurus Talk Compliance

by Caitlin Chapman
July 21, 2026

Welcome to the "Great Women in Compliance" podcast, co-hosted by Lisa Fine and Hemma Lomax.

closing laptop

Yes, You Are Allowed to Take Your Vacation

by Vera Cherepanova
July 21, 2026

Why does our culture make a long break feel like an ethical dilemma?

us flags on wall street

A Field Guide to Privacy Law for Companies Entering the US Market

by Kevin Coy and Erin Doyle
July 20, 2026

Businesses wanting to operate in the US have a variety of laws and regulations to consider

Next Post
businessman passing bribe on table

TRACE: Update – The UK Bribery Act and Enforcement Trends

GGR sq
No Result
View All Result

Privacy Policy | AI Policy

Founded in 2010, CCI is the web’s premier global independent news source for compliance, ethics, risk and information security. 

Got a news tip? Get in touch. Want a weekly round-up in your inbox? Sign up for free. No subscription fees, no paywalls. 

Follow Us

Browse Topics:

  • CCI Press
  • Compliance
  • Compliance Podcasts
  • Cybersecurity
  • Data Privacy
  • eBooks Published by CCI
  • Ethics
  • FCPA
  • Featured
  • Financial Services
  • Fraud
  • Governance
  • GRC Vendor News
  • HR Compliance
  • Internal Audit
  • Leadership and Career
  • On Demand Webinars
  • Opinion
  • Research
  • Resource Library
  • Risk
  • Uncategorized
  • Videos
  • Webinars
  • Well-Being
  • Whitepapers

© 2026 Corporate Compliance Insights

No Result
View All Result
  • About
    • About CCI
    • Writing for CCI
    • NEW: CCI Press – Book Publishing
    • Advertise With Us
  • Explore Topics
    • See All Articles
    • Compliance
    • Ethics
    • Risk
    • Artificial Intelligence (AI)
    • FCPA
    • Governance
    • Fraud
    • Internal Audit
    • HR Compliance
    • Cybersecurity
    • Data Privacy
    • Financial Services
    • Well-Being at Work
    • Leadership and Career
    • Opinion
  • Vendor News
  • Downloads
    • Download Whitepapers & Reports
    • Download eBooks
  • Research
  • Books
    • CCI Press
    • New: Bribery Beyond Borders: The Story of the Foreign Corrupt Practices Act by Severin Wirz
    • CCI Press & Compliance Bookshelf
    • The Seven Elements Book Club
  • Podcasts
  • Webinars
  • Videos
  • Subscribe

© 2026 Corporate Compliance Insights