<?xml version="1.0"?>
<rss version="2.0">
   <channel>
      <title>Questions about Module 4 by Gia Instructor</title>
      <link>https://padlet.com/governanceinstitute/arzuq0jkmi5fbqms</link>
      <description>Risk Governance</description>
      <language>en-us</language>
      <pubDate>2024-12-10 05:33:35 UTC</pubDate>
      <lastBuildDate>2025-12-01 01:21:57 UTC</lastBuildDate>
      <webMaster>hello@padlet.com</webMaster>
      <image>
         <url>https://padlet.net/icons/8.0/png/2754.png</url>
      </image>
      <item>
         <title>Risk management maturity</title>
         <author></author>
         <link>https://padlet.com/governanceinstitute/arzuq0jkmi5fbqms/wish/3325506030</link>
         <description><![CDATA[<p>Am unsure whether I am posting this as a query or comment! But thinking about organisations that don't have this level of maturity. I have certainly seen organisations that wouldn't be ready to implement these tools, as well as some that don't have risk appetite statements. Am thinking about how to best guide those organisations at their level of maturity.</p>]]></description>
         <enclosure url="" />
         <pubDate>2025-02-12 09:20:29 UTC</pubDate>
         <guid>https://padlet.com/governanceinstitute/arzuq0jkmi5fbqms/wish/3325506030</guid>
      </item>
      <item>
         <title>More info on how to tailor risk guidance based on an organisation’s level of maturity</title>
         <author>GiaInstructor</author>
         <link>https://padlet.com/governanceinstitute/arzuq0jkmi5fbqms/wish/3328280009</link>
         <description><![CDATA[]]></description>
         <enclosure url="https://padlet-uploads.storage.googleapis.com/2643933243/00e178d12c3adfa8e8373c4ad50d6659/Risk_Management_Maturity.docx" />
         <pubDate>2025-02-14 02:30:30 UTC</pubDate>
         <guid>https://padlet.com/governanceinstitute/arzuq0jkmi5fbqms/wish/3328280009</guid>
      </item>
      <item>
         <title></title>
         <author></author>
         <link>https://padlet.com/governanceinstitute/arzuq0jkmi5fbqms/wish/3329529970</link>
         <description><![CDATA[<p>Great High Level summary. Have you examples of decision tree and swot analysis that you could share. AM</p>]]></description>
         <enclosure url="" />
         <pubDate>2025-02-15 06:12:45 UTC</pubDate>
         <guid>https://padlet.com/governanceinstitute/arzuq0jkmi5fbqms/wish/3329529970</guid>
      </item>
      <item>
         <title>Decision Tree + SWOT Analysis more info</title>
         <author>GiaInstructor</author>
         <link>https://padlet.com/governanceinstitute/arzuq0jkmi5fbqms/wish/3337136921</link>
         <description><![CDATA[]]></description>
         <enclosure url="https://padlet-uploads.storage.googleapis.com/2643933243/2db59ca83d4f4858de52c5a30e0ae759/Decision_tree___SWOT_Analysis.docx" />
         <pubDate>2025-02-21 03:37:29 UTC</pubDate>
         <guid>https://padlet.com/governanceinstitute/arzuq0jkmi5fbqms/wish/3337136921</guid>
      </item>
      <item>
         <title>Risk sharing and data-driven decisions</title>
         <author></author>
         <link>https://padlet.com/governanceinstitute/arzuq0jkmi5fbqms/wish/3511268702</link>
         <description><![CDATA[<p>Couple thoughts, having read this. </p><p><strong>Risk sharing and risk in relation to others.</strong></p><p>We talk about risk transfer but I did not see too much about risk sharing, for example, through close attendance to the terms of contracts.  In many circumstances especially where there is collaboration with others (funding contracts in international development and financing; PPP´s,  for two), we are talking about risks in the presence of others, i.e., systemic risks.  Arguably no risk exists in isolation of other actors, especially in a strategic context, so understanding how your risk profile fits with (your perception of) the profile of others is often going to be important?  Any guidance you can give on that, or resources?</p><p><br/></p><p><strong>Data-driven decisions</strong></p><p>Maybe a bit pedantic but risk is about the future so it can´t be driven by data which exists after the event.  It can be <em>informed</em>, at best, by similar situations in the past.  Risk management is at least as much about intuition, especially in novel situations where by definition there is no data?  The idea that we manage by attending to what we can already evidence rather argues against the pro-active management of possible uncertain future events?  Curious as to your view.  Might just be a language question.</p><p><br/></p>]]></description>
         <enclosure url="" />
         <pubDate>2025-07-05 22:18:27 UTC</pubDate>
         <guid>https://padlet.com/governanceinstitute/arzuq0jkmi5fbqms/wish/3511268702</guid>
      </item>
      <item>
         <title>Risk Sharing and the Presence of Others</title>
         <author>GiaInstructor</author>
         <link>https://padlet.com/governanceinstitute/arzuq0jkmi5fbqms/wish/3514015024</link>
         <description><![CDATA[<p>Risk management material does typically focus on risk transfer (e.g. through insurance or contracting out) and can sometimes underplay risk sharing, which is more complex, relational, and systemic. This matters in multi-party settings like:</p><ul><li><p>International development programs (e.g., DFAT-funded consortia),</p></li><li><p>Public–Private Partnerships (PPPs),</p></li><li><p>Supply chains,</p></li><li><p>Strategic alliances or ecosystems (especially digital or climate-related).</p></li></ul><p>It is a complex area, but an important one, because:&nbsp;</p><ul><li><p>Interdependent risk: Many risks today are no longer confined to single actors (think cyber, ESG, geopolitical shocks) and so “your” risk is co-produced with others.</p></li><li><p>Relational governance: Contracts may allocate responsibility but don’t eliminate interdependence.</p></li><li><p>Risk perception asymmetry: Your partner may have a very different appetite, tolerance, or even definition of the same risk.</p></li></ul><p>So, risk sharing can occur through (examples, not an exhaustive list):&nbsp;</p><ul><li><p>Contractual mechanisms: indemnities, service-level agreements, performance bonds, etc.</p></li><li><p>Collaborative governance: joint risk registers, mutual contingency planning, transparent escalation protocols.</p></li><li><p>Co-investment in mitigation: e.g., funding joint resilience efforts or capacity-building.</p></li></ul><p>There are some helpful frameworks and resources, these include:</p><ul><li><p>ISO 31000 encourages contextualising risk, but doesn’t deeply engage with inter-organisational or systemic risk sharing.</p></li><li><p>Project finance and infrastructure risk management literature (e.g. Grimsey &amp; Lewis, 2002) provide a practical view of contractual risk allocation and shared responsibility. (<a rel="noopener noreferrer nofollow" href="https://www.sciencedirect.com/science/article/abs/pii/S0263786300000405">https://www.sciencedirect.com/science/article/abs/pii/S0263786300000405</a>)&nbsp;</p></li><li><p>The OECD’s work on systemic risk and the International Risk Governance Council (IRGC) explore risk interdependencies. (<a rel="noopener noreferrer nofollow" href="https://www.oecd.org/en/publications/mapping-emerging-critical-risks_eb642ada-en.html">https://www.oecd.org/en/publications/mapping-emerging-critical-risks_eb642ada-en.html</a>)&nbsp;</p></li><li><p>For more relational models, look at “Risk in Inter-organizational Networks” (Van Wijk, 2010) and Partnership Risk Governance literature.(&nbsp;<a rel="noopener noreferrer nofollow" href="https://www.researchgate.net/publication/4771324_Inter-_and_Intra-Organizational_Knowledge_Transfer_A_Meta-Analytic_Review_and_Assessment_of_Its_Antecedents_and_Consequences">https://www.researchgate.net/publication/4771324_Inter-_and_Intra-Organizational_Knowledge_Transfer_A_Meta-Analytic_Review_and_Assessment_of_Its_Antecedents_and_Consequences</a>)&nbsp;</p></li></ul><p>In strategic settings, developing a risk alignment matrix - mapping your risk posture alongside counterparties - can be a powerful tool to surface blind spots and dependency risks.</p>]]></description>
         <enclosure url="" />
         <pubDate>2025-07-08 22:47:26 UTC</pubDate>
         <guid>https://padlet.com/governanceinstitute/arzuq0jkmi5fbqms/wish/3514015024</guid>
      </item>
      <item>
         <title>Data-Driven Decisions vs Future-Focused Risk</title>
         <author>GiaInstructor</author>
         <link>https://padlet.com/governanceinstitute/arzuq0jkmi5fbqms/wish/3514015683</link>
         <description><![CDATA[<p>You’re exactly right: risk is inherently about the uncertain future, and data is by definition about the known past. In saying that, there is a balance, data-driven risk management is important, but it must be complemented by forward-looking judgment and foresight to avoid becoming purely reactive or anchored in the past.</p><p>This creates tension, because:</p><ul><li><p>Data helps with known–knowns (trends, patterns, forecasting).</p></li><li><p>Novel risks, emerging threats, or black swans are inherently non-data-driven, requiring judgment, imagination, and intuition.</p></li><li><p>Sensemaking, scenario planning, and horizon scanning are better suited to these contexts.</p></li></ul><p>And we know…..</p><ul><li><p>The role of expert intuition (à la Gary Klein’s recognition-primed decision model) is crucial in high-stakes, uncertain environments.</p></li><li><p>Neuroscience also tells us that emotion and gut feeling play a bigger role in risk perception and decision-making than most frameworks admit (cf. Slovic, Kahneman).</p></li><li><p>The most resilient organisations balance evidence with foresight. Data can guide, but it should not blind.</p></li></ul><p>Some further reading that may help is:</p><ul><li><p>Taleb’s “The Black Swan” and “Antifragile” argue forcefully against overreliance on data in risk. (<a rel="noopener noreferrer nofollow" href="https://www.penguin.co.uk/books/56380/the-black-swan-by-nassim-nicholas-taleb/9780141034591">https://www.penguin.co.uk/books/56380/the-black-swan-by-nassim-nicholas-taleb/9780141034591</a>)&nbsp;</p></li><li><p>Gigerenzer’s “Risk Savvy” highlights the strengths of intuitive judgment over statistical analysis in complex environments. (<a rel="noopener noreferrer nofollow" href="https://www.penguin.co.uk/books/181878/risk-savvy-by-gigerenzer-gerd/9780241954614">https://www.penguin.co.uk/books/181878/risk-savvy-by-gigerenzer-gerd/9780241954614</a>)&nbsp;</p></li><li><p>Fraser &amp; Simkins (2016) discuss the limitations of purely quantitative ERM models and the need for qualitative overlay. (<a rel="noopener noreferrer nofollow" href="https://bcs.wiley.com/he-bcs/Books?action=index&amp;bcsId=9202&amp;itemId=1118691962">https://bcs.wiley.com/he-bcs/Books?action=index&amp;bcsId=9202&amp;itemId=1118691962</a>)&nbsp;</p></li><li><p><br/></p></li></ul>]]></description>
         <enclosure url="" />
         <pubDate>2025-07-08 22:49:36 UTC</pubDate>
         <guid>https://padlet.com/governanceinstitute/arzuq0jkmi5fbqms/wish/3514015683</guid>
      </item>
   </channel>
</rss>
