Recently, the RiskSpotlight team conducted a detailed analysis of the content within COSO ERM & ISO 31000 documents. Our analysis revealed the following: -
- Neither of them provides guidance on all the risk management topics, risk management practitioners have to consider when developing ERM frameworks for their organisation.
- You cannot build a comprehensive ERM framework based on only one of them.
- There is a significant amount of overlap in guidance between them.
- On some of the topics, the differences are significant.
You can see a video covering the key similarities and differences at the link below.
Replies