Flevy Management Insights Q&A
What impact do emerging regulatory changes have on Operational Risk Management practices globally?


This article provides a detailed response to: What impact do emerging regulatory changes have on Operational Risk Management practices globally? For a comprehensive understanding of Operational Risk, we also include relevant case studies for further reading and links to Operational Risk best practice resources.

TLDR Emerging regulatory changes globally necessitate updates in Operational Risk Management, requiring integration of new regulations, leveraging technology for risk management, and promoting a culture of risk awareness.

Reading time: 5 minutes

Before we begin, let's review some important management concepts, as they related to this question.

What does Integration of New Regulatory Requirements mean?
What does Leveraging Technology in ORM mean?
What does Fostering a Culture of Risk Awareness mean?


Emerging regulatory changes are significantly impacting Operational Risk Management (ORM) practices globally. These changes are driven by a variety of factors, including advancements in technology, the aftermath of financial crises, and a heightened awareness of non-financial risks such as cyber threats and climate change. As regulations evolve, organizations are compelled to adapt their ORM frameworks to remain compliant, manage risks effectively, and maintain a competitive edge. This adaptation involves integrating new regulatory requirements into existing risk management practices, leveraging technology to enhance risk detection and mitigation, and fostering a culture of risk awareness throughout the organization.

Integration of New Regulatory Requirements

Regulatory bodies worldwide are continuously updating their frameworks to address emerging risks and ensure the stability of the financial system. For instance, the Basel Committee on Banking Supervision has introduced Basel III, a set of reform measures designed to strengthen the regulation, supervision, and risk management of banks. Organizations are now required to hold more capital for operational risk and to improve their risk management practices. This necessitates a comprehensive review of existing ORM practices to identify gaps and implement the necessary changes to comply with new regulations. Organizations must also stay abreast of regulatory changes in different jurisdictions, especially if they operate globally, adding another layer of complexity to ORM practices.

Moreover, the European Union's General Data Protection Regulation (GDPR) has had a profound impact on how organizations manage their data, with significant implications for operational risk. Non-compliance can result in hefty fines, making it imperative for organizations to incorporate data protection measures into their ORM strategies. This involves conducting data protection impact assessments, implementing stringent data handling practices, and ensuring that third-party vendors also comply with GDPR requirements.

Adapting to these regulatory changes requires organizations to invest in training and development to ensure that their employees understand the new requirements and how they affect their roles. It also necessitates updates to policies and procedures, as well as the deployment of new technologies to facilitate compliance. For example, RegTech solutions can automate compliance processes, making it easier for organizations to adapt to new regulations.

Are you familiar with Flevy? We are you shortcut to immediate value.
Flevy provides business best practices—the same as those produced by top-tier consulting firms and used by Fortune 100 companies. Our best practice business frameworks, financial models, and templates are of the same caliber as those produced by top-tier management consulting firms, like McKinsey, BCG, Bain, Deloitte, and Accenture. Most were developed by seasoned executives and consultants with 20+ years of experience.

Trusted by over 10,000+ Client Organizations
Since 2012, we have provided best practices to over 10,000 businesses and organizations of all sizes, from startups and small businesses to the Fortune 100, in over 130 countries.
AT&T GE Cisco Intel IBM Coke Dell Toyota HP Nike Samsung Microsoft Astrazeneca JP Morgan KPMG Walgreens Walmart 3M Kaiser Oracle SAP Google E&Y Volvo Bosch Merck Fedex Shell Amgen Eli Lilly Roche AIG Abbott Amazon PwC T-Mobile Broadcom Bayer Pearson Titleist ConEd Pfizer NTT Data Schwab

Leveraging Technology in ORM

The advent of digital technologies has transformed the landscape of Operational Risk Management. Technologies such as artificial intelligence (AI), machine learning, and blockchain are being leveraged to enhance the efficiency and effectiveness of ORM practices. For example, AI and machine learning can be used to predict potential operational risks by analyzing large volumes of data and identifying patterns that may indicate a risk event. This allows organizations to proactively manage risks before they materialize, reducing the potential impact on the organization.

Blockchain technology, on the other hand, offers a secure and transparent way to manage transactions, which can significantly reduce the risk of fraud. A report by Accenture highlights the potential of blockchain to enhance the security, transparency, and efficiency of financial transactions, thereby reducing operational risks associated with these activities. Organizations that adopt these technologies can gain a competitive advantage by minimizing losses due to operational failures and enhancing their compliance with regulatory requirements.

However, the implementation of these technologies also introduces new risks, such as cyber risks, which organizations must manage. This requires a holistic approach to ORM that encompasses both traditional risks and those arising from digital transformation. Organizations must also invest in cybersecurity measures and develop a robust incident response plan to manage potential cyber incidents effectively.

Fostering a Culture of Risk Awareness

Regulatory changes and the adoption of new technologies underscore the importance of fostering a culture of risk awareness within organizations. A strong risk culture is characterized by a shared understanding of the importance of risk management and a commitment to integrating risk considerations into decision-making processes. This involves regular training and communication to ensure that employees at all levels are aware of the operational risks facing the organization and their role in managing those risks.

Leadership plays a critical role in fostering a risk-aware culture. Senior management must demonstrate a commitment to risk management and lead by example. This includes allocating the necessary resources for ORM initiatives, setting clear risk management objectives, and holding individuals accountable for their role in managing risk. A report by Deloitte highlights the importance of leadership in embedding risk management into the organizational culture, noting that organizations with strong risk cultures tend to perform better in managing operational risks.

In conclusion, emerging regulatory changes are driving significant transformations in Operational Risk Management practices globally. Organizations must integrate new regulatory requirements into their ORM frameworks, leverage technology to enhance risk management, and foster a culture of risk awareness to navigate these changes successfully. By doing so, they can not only comply with regulatory requirements but also gain a competitive edge by managing operational risks more effectively.

Best Practices in Operational Risk

Here are best practices relevant to Operational Risk from the Flevy Marketplace. View all our Operational Risk materials here.

Did you know?
The average daily rate of a McKinsey consultant is $6,625 (not including expenses). The average price of a Flevy document is $65.

Explore all of our best practices in: Operational Risk

Operational Risk Case Studies

For a practical understanding of Operational Risk, take a look at these case studies.

Operational Risk Management for Ecommerce Platform in Competitive Digital Market

Scenario: A large ecommerce platform specializing in consumer electronics has recently been facing significant operational risks including data breaches, supply chain disruptions, and compliance issues.

Read Full Case Study

Operational Risk Management for High-End Fitness Facilities

Scenario: A high-end fitness facility chain in the competitive North American market is facing significant challenges in managing operational risks.

Read Full Case Study

Operational Risk Mitigation for Maritime Transport Firm in High-Compliance Zone

Scenario: A maritime transport firm operating in a high-compliance regulatory environment is grappling with increased operational risks.

Read Full Case Study

Operational Risk Overhaul in E-commerce

Scenario: The organization, a mid-sized e-commerce platform specializing in bespoke home goods, has encountered significant operational risks that threaten its market position and profitability.

Read Full Case Study

Operational Risk Management for Luxury Watch Manufacturer in Europe

Scenario: A European luxury watch manufacturer faces challenges in maintaining operational consistency and risk mitigation across its supply chain and production facilities.

Read Full Case Study

Operational Risk Enhancement in Semiconductor Industry

Scenario: The organization, a leader in the semiconductor industry, faces significant Operational Risk challenges due to rapid technological advancements and the complexity of global supply chain dependencies.

Read Full Case Study

Explore all Flevy Management Case Studies

Related Questions

Here are our additional questions you may be interested in.

What are the challenges and solutions for embedding Operational Risk Management into the organizational culture effectively?
Overcome challenges in embedding Operational Risk Management into organizational culture with Leadership Commitment, Strategic Integration, and a Positive Risk Culture for enhanced Decision-Making and Resilience. [Read full explanation]
How are companies adapting their Operational Risk Management approaches in response to the increasing threat of cybercrime?
Companies are updating their Operational Risk Management by integrating advanced technologies, improving Human Capital Management, and shifting Organizational Culture to address the growing cybercrime threat. [Read full explanation]
What role does data analytics play in enhancing Operational Risk Management practices, and how can companies leverage this?
Data Analytics enhances Operational Risk Management by enabling predictive risk assessment, optimizing mitigation efforts, and fostering a data-driven culture for Operational Excellence. [Read full explanation]
How can companies measure the ROI of their Operational Risk Management initiatives to justify continued investment?
Measuring the ROI of Operational Risk Management involves establishing relevant KPIs, leveraging technology like AI, and integrating ORM with Strategic Planning and Performance Management to justify investment and improve business resilience. [Read full explanation]
What role does corporate governance play in mitigating operational risk, and what are the best practices?
Corporate Governance is pivotal in mitigating operational risk by establishing robust frameworks for accountability, transparency, and risk management, aligned with Strategic Planning and Operational Excellence. [Read full explanation]
What are the implications of blockchain technology on operational risk management?
Blockchain technology enhances Operational Risk Management by increasing transparency, improving compliance and auditability, and boosting operational efficiency through decentralized, immutable transaction records. [Read full explanation]

Source: Executive Q&A: Operational Risk Questions, Flevy Management Insights, 2024


Flevy is the world's largest knowledge base of best practices.


Leverage the Experience of Experts.

Find documents of the same caliber as those used by top-tier consulting firms, like McKinsey, BCG, Bain, Deloitte, Accenture.

Download Immediately and Use.

Our PowerPoint presentations, Excel workbooks, and Word documents are completely customizable, including rebrandable.

Save Time, Effort, and Money.

Save yourself and your employees countless hours. Use that time to work on more value-added and fulfilling activities.




Read Customer Testimonials



Receive our FREE Primer on Change Management

This deck explains a "practical" approach to Change Management, as developed by Ron Leeman, winner of the Change Leader award by the HRD Congress in 2012.