Back to library
Enterprise · Issued by Committee of Sponsoring Organizations

COSO ERM

COSO Enterprise Risk Management — Integrating with Strategy and Performance (2017)

COSOERMGovernanceSOX
Compare COSO ERM with

Connects risk to strategy and performance. The de-facto framework for listed companies and audit committees in the US.

COSO ERM is built around 5 components and 20 principles, linking enterprise risk to value creation and strategic decisions. Heavily used by public companies, internal audit, and Sarbanes-Oxley programs.

At a glance

Complexity
High
Certification
No
Time to implement
6–12 months
Issued by
Committee of Sponsoring Organizations

Fits

Industries
bankinginsurancehealthcaremanufacturinggovernment
Risk types
strategicfinancialcomplianceoperational
Frequently asked

Questions risk leaders ask

A voluntary framework published by COSO that integrates risk management with strategy-setting and performance management across five interrelated components and 20 principles.
Related on RiskPedia

Frameworks & regulations frequently referenced together

See if it fits you

Run the Finder to get a personalised match score for COSO ERM.

Made with Emergent