Internal Controls - Calgary 2012
Strategies for Sustaining Your Internal Controls Program
October 16-17, 2012
Optional Workshops: October 18, 2012
CALGARY, ALBERTA
Conference Program Agenda - Day One
Tuesday, October 16, 2012
| 7:30 - 8:30 |
Registration and Continental Breakfast |
7:30 - 8:30 |
8:30 - 8:40
Welcome and Opening Remarks from the Chair
Massood Oroomchi, Executive Partner, FinEx Group
8:40 - 9:40
Opening Keynote Address
Corporate Governance Trends
Richard Leblanc, Associate Professor, Law, Governance and Ethics, York University
- Key trends and issues in corporate governance
- Proper governance of risk management and internal controls
- Assurance and board reporting of internal controls
Dr. Richard Leblanc - top-rated speaker for INFONEX's Internal Controls - Toronto in 2011 and 2012 - is an award-winning teacher and researcher, consultant, lawyer and specialist on boards of directors. He is also a former recipient of Canada's Top 40 Under 40™ award and was recently named to Canadian Who's Who. He was recently named as part of the NACD's D100 "people to watch" for 2011, and received a teaching award as one of the top university teachers in Ontario (OCUFA, 2011). Professor Leblanc's research expertise is in corporate governance, specifically in the effectiveness of boards of directors. The recruitment, education and assessment of individual directors, including their skills, competencies and behaviours, are a feature of Dr. Leblanc's research expertise. Governments, regulators, industry and shareholder associations have drawn on his expertise and work.
9:40 - 10:40
Update on the New COSO Framework
Frank Martens, Director, PricewaterhouseCoopers LLP
- Overview of the update to the COSO Internal Control-Integrated Framework
- Why update a framework that works well today
- Key changes proposed in the updated framework
- Possible impacts on companies using the framework for regulatory reporting
Frank Martens has considerable experience working with the Committee of Sponsoring Organizations of the Treadway Commission (COSO). Frank is part of the team of principal contributors from PwC working with COSO in reviewing and updating the COSO Internal Control - Integrated Framework. He also is one of the Principal Contributors that worked with COSO in 2006 to develop Internal Control over Financial Reporting - Guidance for Smaller Public Companies. Frank is one of the Principal Contributors from PwC that in 2004 developed COSO's Enterprise Risk Management - Integrated Framework. Frank recently authored with the former COSO chair a though leadership publication Understanding and Communicating Risk Appetite, as envisioned in the COSO ERM Enterprise Risk Management - Integrated Framework.
| 10:40 - 11:00 |
Networking Break |
10:40 - 11:00 |
11:00 - 12:00
Optimization of Your Internal Control Program
Massood Oroomchi, Executive Partner, FinEx Group
- How to optimize your internal control program
- How to achieve significant cost savings while remaining compliant
- Integration with daily business activities
- Integration with the internal audit activities
- Leveraging the internal control program for business efficiencies
As a finance executive with 30 years experience, Massood Oroomchi has worked extensively in various senior finance positions in a cross section of industries. As a founding member of FinEx Group, he has developed a comprehensive internal control solution that focuses on the top-level controls and is based on risk, and could easily be customized to any size of firm whether publicly traded, private, pre-IPO, government or not-for-profit.
| 12:00 - 1:15 |
Luncheon Break |
12:00 - 1:15 |
1:15 - 2:10
Integrating Controls Across Your Organization
Maxim Atanassov, Senior Manager, Deloitte
- Designing effective controls
- Coordinating among various risk groups to add efficiency and transparency while reducing redundancy
- Overcoming challenges/resistance to controls
- Embedding controls in EUC environments
- Maintaining robust controls through change
- Changing regulatory environments and the risk and control implications
Maxim Atanassov has more than 11 years of experience in business risk management and business process improvement and specializes in risk and audit transformation services with a focus on helping clients create value from risk and compliance functions for large public and private companies. For the past 4 years, Maxim has worked with companies to rationalize, optimize and improve controls, led streams of co-sourced and outsourced internal audit and Sarbanes-Oxley engagements activities, including performing risk assessments, identifying process improvement opportunities, internal control compliance, and risk remediation.
2:10 - 3:05
Understanding IT Control Rationalization
Jason Clifton, Senior Manager, Ernst & Young LLP
- Setting the stage: how IT control rationalization has been handled to date
- Why IT control rationalization is important: benefits, impacts, and roadblocks
- Approach to IT control rationalization: creating your program
- Next steps implementing an IT control rationalization program at your organization
- Future landscape
Jason E. Clifton has over 11 years experience on both public and non-public clients including direct internal and external audit experience in the energy and utilities sector, technology and communications sector, transportation sector, insurance sector, and retail and manufacturing sector. Jason's experience includes reviewing and assessing business and accounting applications and processes and performing reviews of the supporting IT environment. He has experience in leading, advising, managing, reviewing, and performing advisory and audit type engagements.
| 3:05 - 3:20 |
Networking Break |
3:05 - 3:20 |
3:20 - 4:15
Elements of a Successful Security Management Program
Trac Bo, Partner, Technology Risk Services, MNP LLP
Lionel Cochey, Information Security and Privacy Services Leader, MNP LLP
- Choosing the appropriate information security management program
- Best practices to assess your organisation's exposure to IT security risks
- Selecting cost-effective and proportionate security controls
- Evaluating your information security controls and risk management practices
- Keys to maintaining a strong security posture
Trac Bo, CA, CISA, CGEIT has over 10 years of information systems process, information security, IT governance and risk management experience. Prior to joining MNP, he was a senior practice leader with a Big Four chartered accountancy firm. With an in-depth understanding and application of risk management and control frameworks, Trac has extensive experience assisting clients to implement internal controls, information security solutions and improve business processes. He has worked internationally in the United States and the Cayman Islands and his clients represent the financial services, energy and resources, transportation, manufacturing industries and the public sector.
Lionel Cochey has over 13 years of experience in IT risk management, information security management, IT and security audit, and privacy and security compliance. Prior to joining MNP, Lionel held senior positions within the financial sector and public organizations, including the Canadian Navy, NATO and the French government. In the ever changing environment where organization rely more and more on technology, he has extensive experience assisting clients developing and implementing cost-effective risk management and quality programs to improve their information security posture.
4:15 - 5:00
Securing Management Buy-In for Optimizing Your Internal Controls Program
McDonald Madamombe, Internal Auditor, Alberta-Pacific Forest Industries
- Understanding the business and establishing credibility with the aim of becoming a trusted business adviser
- Leveraging motivating factors that drive management
- Tapping into the organizational culture
- Making use of organization credos such as continuous improvement and focus on excellence
- Value proposition: focus on the key risks that will impact the company's ability to achieve its objectives
- Communicating the value proposition, consistency, persistence and winning advocates
- Delivery techniques: use of tools (CSA) and widely used models (such as combined assurance/integrated risk management and assurance) to streamline internal control programs and related audit approach
McDonald Madamombe is responsible for the internal audit function including the delivery of internal audit solutions and corporate governance advice at Alberta-Pacific Forest Industries Inc. McDonald has over 17 years of diverse international experience in consulting, financial auditing, practical financial management, financial reporting, internal auditing, and taxation. This wide-ranging experience was attained while working for professional services firms and in commerce. This included exposure to publicly traded and privately held entities, as well as public sector government agencies and not-for-profit organizations, while living and working in Australia (Sydney), Canada (Alberta), South Africa (Johannesburg), United States of America (New York) and Zimbabwe.
|