World Economic Forum recommendations enhance FERMA’s work on cyber risk governance

Work by World Economic Forum (WEF) on cyber resilience demonstrates the value of the work now underway by Federation and European Risk Management Associations (FERMA) on governance for cyber risks in European organisations, according to the President of FERMA, Jo Willaert.

WEF Report on cyber resilienceFERMA in association with the European Confederation of Institutes of Internal Auditing (ECIIA) is preparing a set of specific, concrete recommendations on cyber risk governance so they can support their boards and risk committees in meeting the requirements of the two latest European Union cyber laws, the Network Information Security Directive and the Data Protection Regulation.

The WEF report Advancing Cyber Resilience, Principles and Tools for Boards stresses the responsibility of boards as a whole “to take ultimate responsibility for oversight of cyber risk and resilience.” It sets out 10 principles for boards including the appointment of an independent accountable officer, risk appetite and risk assessment and reporting.

At the junction of corporate governance and cyber security, the FERMA-ECIIA report, is due to be published in June. It will include such questions as communication between reporting lines and collaboration between internal audit and risk management. FERMA is in touch with WEF cyber resilience experts to discuss possible collaboration.

Said Jo: “These new governance methodologies that we are drafting will help risk professionals advise their boards and top management on how they can respond to the risks and opportunities of digitisation in the most efficient way while complying with the new EU measures. We are delighted, therefore, that the World Economic Forum report stresses the importance of governance in the creation of cyber resilience. WEF also highlights the need for tools to help boards exercise their role, and our work will be part of that toolkit.

Pascale Vandenbussche, Secretary General of ECIIA, commented: “FERMA and ECIIA created the joint working group because we saw a lack of focus on the risk governance aspect of cyber security in the EU initiatives. The group is looking to develop a general cyber risk management framework and governance model in the digital context with the collaboration of both professions.

Share with others

Subscribe to our newsletter

* indicates required
Interests

By subscribing to our newsletter, you agree that we may process your information in accordance with our Privacy policy.

You can change your mind at any time by clicking the unsubscribe link in the footer of any email you receive from us, or by contacting us at enquiries@ferma.eu.

We use MailChimp as our marketing platform. By subscribing to our newsletter, you acknowledge that your information will be transferred to MailChimp for processing. Learn more about MailChimp’s privacy practices here.

Privacy Overview

This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.

Strictly Necessary Cookies

Strictly Necessary Cookie should be enabled at all times so that we can save your preferences for cookie settings.

If you disable this cookie, we will not be able to save your preferences. This means that every time you visit this website you will need to enable or disable cookies again.

3rd Party Cookies

This website uses Google Analytics to collect anonymous information such as the number of visitors to the site, and the most popular pages.

Keeping this cookie enabled helps us to improve our website.