• About us
  • Raising the Bar
  • Raising your Game
  • The Extra G - Geopolitical
  • Risk Matters - Roundtables
  • Leadership Team
  • Events
  • Blog
  • Contact
  • Menu

The Risk Coalition

  • About us
  • Raising the Bar
  • Raising your Game
  • The Extra G - Geopolitical
  • Risk Matters - Roundtables
  • Leadership Team
  • Events
  • Blog
  • Contact
woman-in-white-shirt-looking-at-a-painting-of-mona-lisa-with-3957988.jpg

Was 'pandemic' in your key risk list? (Honestly?)

June 01, 2020

I’m guessing that for most organisations it probably wasn’t (full marks if it was – and, particularly, if your mitigations and resulting actions are working well for you). But even if it wasn’t there specifically, it seems quite likely that there were other risks with similar characteristics.

On an assessors tour of Asian countries on behalf of UK export efforts, I encouraged many cities that were on earthquake lines to think beyond the normal ‘office not accessible’ walkthroughs to consider what role they might need to play in society if business-as-usual was no longer relevant.

A good example of this is Vortex IoT assisting the Welsh Government temporarily, with new systems, contact methods and the unusual production of 3D printing masks for short term PPE provision - putting aside their normal business challenges for a limited period.

If the specific risk was not anticipated, a common crisis-management process and task force can be activated with short, medium, and longer-term activities. In this case employment and cash flow issues have been tackled first – in part as these were the most immediate and obvious, but also as the government made potential solutions available that needed to be assessed and adopted.

Examples include the Covid-19 Job Retention Scheme, which encouraged review of any severe staffing consequences over a three-month period, encouraging decisions by end March or early April payroll dates. In parallel finance directors were requested to create various business scenarios that would ‘stress test’ cash flows, considering revenue losses and periods, also options for cash provision such as equity raises or government lending schemes (CCFF or CBILS in this case). Those asked to provide more finance will want to see that the scenarios show risks are reasonable and shared. Some firms have needed to make late decisions to stop dividend payments, payroll additions and other optional cash outflows.

Some risk actions have stopped there but it is becoming increasingly clear that some things have changed that will not revert after. Some distribution channels (including online) have needed to accelerate and grow fast, while others have been closed down with resources moved or hibernated. Supply chains have been stress-tested and many single-supplier or international dependencies have needed to be supplemented in the short term and will likely stay like that after.

Businesses might change shape dramatically. Some will fail while others emerge. Others will be battered and take considerable time to recover. Common factors such as home working, online, cashless and no-touch have responded quickly and are likely to remain as must-haves for business.

A practical assessment of whether your firm’s risk governance, from board to front-line is fit for purpose, might include whether key risks were foreseen, whether they were effectively mitigated, minimised or avoided – and whether other preparations (including crisis management) worked well. The Risk Coalition has just made available its online self-assessment service, GABI (Gap Analysis and Benchmarking Insights), which will enable companies to be aspirational and be the best they can.

Bryan Foss - Risk Coalition

Tags: Bryan Foss
Prev / Next

Blog

Featured
Apr 15, 2025
Vera Cherepanova
The future of ESG: navigating a fragmented landscape
Apr 15, 2025
Vera Cherepanova
Apr 15, 2025
Vera Cherepanova
Mar 6, 2025
Mo Warsame, Gavin Hayes
Internal audit and risk management must work together to navigate uncertainty
Mar 6, 2025
Mo Warsame, Gavin Hayes
Mar 6, 2025
Mo Warsame, Gavin Hayes
Sep 4, 2024
Polly Williams, Mia Harris
Three key threats of phishing to be aware of
Sep 4, 2024
Polly Williams, Mia Harris
Sep 4, 2024
Polly Williams, Mia Harris
Aug 25, 2024
Felix Ritchie
Principles versus rules in data and corporate governance
Aug 25, 2024
Felix Ritchie
Aug 25, 2024
Felix Ritchie
Jul 16, 2024
Jane Hunter, Mia Harris
How can you maintain high standards in your business without suffering burnout?
Jul 16, 2024
Jane Hunter, Mia Harris
Jul 16, 2024
Jane Hunter, Mia Harris
Jun 2, 2024
Afshan Moeed
Enforcement of individual accountability in UK banking: a new boardroom recipe for change or continuity?
Jun 2, 2024
Afshan Moeed
Jun 2, 2024
Afshan Moeed
May 28, 2024
Craig Morris, Mia Harris
Three exciting new developments for AI in 2024 that you need to know about
May 28, 2024
Craig Morris, Mia Harris
May 28, 2024
Craig Morris, Mia Harris
May 24, 2024
Stefan Hunziker
The stuff of nightmares: risk management is shut down, and nobody notices
May 24, 2024
Stefan Hunziker
May 24, 2024
Stefan Hunziker
Mar 20, 2024
Neil Tinegate
What should boards know about digital technology?
Mar 20, 2024
Neil Tinegate
Mar 20, 2024
Neil Tinegate
Mar 15, 2024
Francis Kean
The insolvency risk for company directors - are you swimming naked?
Mar 15, 2024
Francis Kean
Mar 15, 2024
Francis Kean
Feb 29, 2024
Andy Watkins-Child
Are you sitting comfortably?  Cyber risk, board attestations and the implications for NEDs
Feb 29, 2024
Andy Watkins-Child
Feb 29, 2024
Andy Watkins-Child
Oct 24, 2023
Mamun Madaser
Risk management and internal audit should collaborate to navigate the poly-crisis of risk
Oct 24, 2023
Mamun Madaser
Oct 24, 2023
Mamun Madaser
Oct 18, 2023
Jim Watson
How to mitigate the risk of cyber security breaches – part 2
Oct 18, 2023
Jim Watson
Oct 18, 2023
Jim Watson
Oct 13, 2023
Nisha Sanghani
Risk management and internal controls: much (needed) work to do as a result of the proposed changes to the UK Corporate Governance Code
Oct 13, 2023
Nisha Sanghani
Oct 13, 2023
Nisha Sanghani
Oct 9, 2023
Jim Watson
How to mitigate the risk of cyber security breaches – part 1
Oct 9, 2023
Jim Watson
Oct 9, 2023
Jim Watson