ISO 31000 COSO ERM Integration Playbook for Organization Design in Professional
64 professional files (6 PDFs + 58 Excel workbooks) | 349+ spreadsheet tabs | 2,730+ rows of structured content | 11 organised folders
Enterprise risk management works when it is embedded in how the organisation sets strategy, runs operations, and makes decisions. Too often it sits in a siloed risk function producing heat maps no one reads. A structured ERM programme, grounded in ISO 31000 and proven tools, turns risk management into a source of competitive advantage.
WHAT YOU GET: A THREE-PHASE JOURNEY
Phase 1: Diagnose. Seven domain assessments (30 questions each, 210 total) score your maturity across Risk Governance Framework, Organizational Design for Risk Integration, Risk Identification and Assessment Methods, and related areas. You can complete the Quick Scan diagnostic in under an hour and know exactly where the biggest gaps and opportunities sit.
Phase 2: Set Goals. Five PM template workbooks with roadmaps, RACI matrices, milestone trackers, risk registers, and stakeholder communication plans. These lock in scope, timeline, and accountability before a single line of implementation work starts, which is consistently where programmes succeed or stall.
Phase 3: Implement. Nine operational runbooks and checklists covering incident response, compliance, vendor and third-party handling, and handover and integration. Every runbook is built to be followed by a working team, not read and filed. Pro tips, example rows, and common-mistake callouts give you the benefit of hard-won practitioner experience from the first day.
7 DOMAIN ASSESSMENTS (210 QUESTIONS)
• Risk Governance Framework
• Organizational Design for Risk Integration
• Risk Identification and Assessment Methods
• Risk Evaluation and Prioritization Framework
• Risk Treatment and Control Integration
• Monitoring Review and Continuous Improvement
• Communication Consultation and Stakeholder Engagement
9 OPERATIONAL RUNBOOKS
• End to End Risk Register Operationalization Checklist
• Handoff Protocol Between Operational Units and Risk Team
• Incident Response to Post Mortem Risk Workflow
• Integration Checklist for Risk and Compliance Functions
• Process Map for Risk Informed Decision Making
• Risk Integration Runbook for Strategic Planning
• Role Based Task Guide for Chief Risk Officers
• Supplier Risk Integration Lifecycle Checklist
The full kit also includes a practitioner-grade library of PM forms spanning all five PMBOK process groups, KPI dashboards, risk and compliance registers, and reference cards. Every template comes pre-populated with domain-specific example data so your team can start editing, not staring at blank rows. You get a consistent operating system across diagnostic, planning, delivery, and sustainment, which is how mature programmes compound improvement year over year.
WHO THIS IS FOR: Chief risk officers, enterprise risk managers, internal audit, and risk programme leads.
Aligned with ISO 31000.
Instant download. Start your first assessment within the hour.
Got a question about the product? Email us at support@flevy.com or ask the author directly by using the "Ask the Author a Question" form. If you cannot view the preview above this document description, go here to view the large preview instead.
Source: Best Practices in ISO 31000, COSO Framework Excel: ISO 31000 COSO ERM Integration for Organization Playbook Excel (XLSX) Spreadsheet, Gerard Blokdijk
|
Receive our FREE presentation on Operational Excellence
This 50-slide presentation provides a high-level introduction to the 4 Building Blocks of Operational Excellence. Achieving OpEx requires the implementation of a Business Execution System that integrates these 4 building blocks. |