Understanding Enterprise Risk Governance, Assurance and Control Frameworks

Understanding Enterprise Risk Governance, Assurance and Control Frameworks

Risk Management Training: Risk, Governance, Assurance, Controls, Applications

|
Platform:
Online
In-class
Date Venue Duration
23 - 27 November 2026 Sandton, Gauteng 5 Days
18 - 22 January 2027 Sandton, Gauteng 5 Days
08 - 12 March 2027 Sandton, Gauteng 5 Days
03 - 07 May 2027 Sandton, Gauteng 5 Days
21 - 25 June 2027 Sandton, Gauteng 5 Days

Course Introduction

This Understanding Enterprise Risk Governance, Assurance and Control Frameworks course provides you with a general overview of all main aspects of risk management, starting from the definition of the term and going through the building blocks of the total integrated Enterprise Risk Management (ERM) model, together with its related risk governance arrangements. It will enable participants to appreciate the need and urgency to revisit their existing risk management framework, with an aim to improve and align it with the overall organisational strategic plan.

 

It will also allow a better understanding and clarity on the functional structures, roles, and responsibilities required to be put in place to ensure effective risk management implementation enterprise-wide.

Course Objectives

By the end of this Understanding Enterprise Risk Governance, Assurance and Control Frameworks course, participants will:
  • Understand the definitions of key terms of risk and risk management
  • Explore the different stages of the risk management process
  • Learn the tools and techniques used for risk assessment
  • Study risk formulation, risk ranking, and risk treatment
  • Learn about risk appetite, risk tolerance, and risk escalation
  • Understand the Enterprise Risk Management model, including current AI governance considerations within COSO ERM and ISO 31000
  • Study the risk governance framework

Who should attend?

  • Risk / Compliance Management Function
  • Executive Management and Directors
  • Governing Body & CEO Level
  • Senior Management and Middle Management
  • Senior Risk Officers
  • Internal Audit Function
  • Internal Control Function
Finance Courses

Training Methodology

Our diverse instructional approaches ensure effective learning:

– Lectures & Presentations: Engage with expert-driven, stimulating content.
– Course Material: Access well-crafted supporting resources.
– Group Work: Collaborate on discussions and case studies for practical insights.
– Workshops & Role-Play: Participate in immersive, scenario-based activities.
– Practical Application: Focus on applying theoretical knowledge in real situations.
– Post-Training Support: Receive extensive support after training for skill implementation.

Training Outline

Day 1: Introduction to Risk Management
Module 1: What is Risk? Definition, Types & Classification
Activity: Risk Mapping Exercise.
Module 2: The Role of Risk Management in Modern Enterprises
Case Study: A Historical Look at Major Corporate Failures.
Module 3: The Risk Management Process – Identification, Assessment, Mitigation & Review
Workshop: Risk Assessment Simulation.
Day 2: Risk Governance & Stakeholders
Module 4: Principles of Risk Governance
Discussion: Board's Role in Risk Oversight.
Module 5: Stakeholder Roles in Risk Governance: CRO, CEO, Board, etc.
Activity: Role-Playing Stakeholder Risk Conversations.
Module 6: Designing a Risk Governance Framework
Workshop: Drafting a Risk Governance Charter.
Day 3: Risk Assurance — Ensuring Risk Oversight
Module 7: Key Risk Indicators (KRIs) and Key Performance Indicators (KPIs)
Exercise: Designing Effective KRIs for a Hypothetical Company.
Module 8: The Role of Internal Audit in Risk Assurance
Case Study: Effective Risk-Based Auditing.
Module 9: Integrating Risk Assurance with Business Strategy
Group Discussion: Best Practices from Industry Leaders.
Day 4: Control Frameworks — Design & Evaluation
Module 10: Introduction to Popular Control Frameworks: COSO ERM (2017) and ISO 31000:2018
  • Both frameworks remain the dominant global standards in 2026, and both now address AI governance through complementary guidance — including the NIST AI Risk Management Framework, which extends similar risk-management thinking specifically to artificial intelligence
Activity: Comparing and Contrasting Different Frameworks.
Module 11: Implementing Control Frameworks: Steps, Challenges & Best Practices
Workshop: Creating a Control Implementation Roadmap.
Module 12: Evaluating the Effectiveness of Control Frameworks
Exercise: Evaluating Control Framework Case Studies.
Day 5: Case Studies & Real-World Applications
Module 13: Analysing Real-World Risk Management Failures
Group Discussion: Lessons Learned and Preventive Measures.
Module 14: Innovations in Risk Management: Digital Tools, AI Governance & the NIST AI RMF
  • AI governance as an emerging risk category in its own right, alongside climate-related financial disclosure and geopolitical supply chain risk
  • How COSO ERM and ISO 31000 are being extended to address AI risk specifically
Presentation: Future of Risk Management Technology.
Module 15: Capstone Activity: Enterprise Risk Management Project
Workshop: Designing a Comprehensive ERM Strategy for a Hypothetical Organisation.

Our Categories

Get a Quote Banner Outline

Request a Call Back

Your submission has been successful

Please check your email for confirmation

Success Stories

Discover how our courses enhance professionals’ effectiveness in their workplaces.

INSETA

The Evolving Role of Executive Assistants and AI Conference

Thank you for offering us the opportunity to attend this course. The Facilitator was very informed, and have learned a lot of AI tools which I will use at my workplace.

FAQs – Understanding Enterprise Risk Governance, Assurance and Control Frameworks

Develop enterprise risk management skills covering governance, assurance, internal controls, risk frameworks, compliance, and effective organisational risk oversight.

What is covered in the Understanding Enterprise Risk, Governance, Assurance and Control Frameworks course?
The course covers enterprise risk management, corporate governance, assurance frameworks, internal controls, risk governance, the Three Lines Model, combined assurance, risk oversight, control effectiveness, and the relationship between risk, governance and assurance.
Who should attend the Enterprise Risk, Governance, Assurance and Control Frameworks training?
The training is suitable for risk managers, internal auditors, compliance professionals, governance practitioners, assurance providers, senior managers, executives, board and committee members, and professionals responsible for risk and control functions.
What is the relationship between risk, governance, assurance and internal controls?
The course explains how governance establishes oversight and accountability, risk management identifies and manages uncertainty, internal controls address risks, and assurance provides confidence that governance, risk and control processes are operating effectively.
Does the course cover the Three Lines Model and combined assurance?
Yes. Participants explore the Three Lines Model, the roles of management and assurance providers, coordination between assurance functions, and how combined assurance can provide a more integrated view of organisational risk and control.
Will I learn how to assess the effectiveness of risk and control frameworks?
Yes. The programme helps participants understand how to evaluate risk and control frameworks, identify gaps and weaknesses, assess control effectiveness, and strengthen governance, risk management and assurance processes.
Can Enterprise Risk, Governance, Assurance and Control Frameworks training be delivered in-house?
Yes. Prospen Africa can provide customised in-house training aligned with an organisation's governance structure, risk profile, assurance model, internal control environment, policies and regulatory requirements.

Related Courses