article thumbnail

Why BCM and ERM Should Be BFFs 

MHA Consulting

Sometimes questions arise about the relationship between the business continuity management (BCM) team and the enterprise risk management (ERM) department. The fact is, both units—as well as the organization—benefit when BCM and ERM are BFFs (or best friends forever, as the kids say). BCM is more tactical and operations-focused.

BCM 88
article thumbnail

Risk Management as a Career: A Guide for BCM Professionals

MHA Consulting

They include process and procedural robustness and integrity; people, skills, and training; insurance and self-insurance; the supply chain, outsourcing, and inherent risk; infrastructure, systems, and telecommunications; and physical and information security. The operational areas that risk management is concerned are broad and varied.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

BCM Basics: The Strategic Side of Crisis Management  

MHA Consulting

This post is part of BCM Basics, a series of occasional, entry-level blogs on some of the key concepts in business continuity management. law enforcement), and your insurance and regulatory communication and notification requirements. Most companies have a pretty good handle on the tactical side of crisis management.

article thumbnail

An Introduction to FFIEC: BCM’s Gold Standard

MHA Consulting

FFIEC is, of course, one of many standards that organizations can adopt and seek to come into alignment with to strengthen their BCM programs. For this reason, it is often referred to as the Gold Standard of BCM standards. The Gold Standard FFIEC is the most aggressive standard in the U.S. marketplace.

BCM 74
article thumbnail

At Risk of Distraction: The Seductive Appeal of RMIS Software

MHA Consulting

Related on MHA Consulting: BCM Software Buyer’s Guide: Five Things to Know Before You Buy Introducing RMIS Recently, we’ve been getting many questions from our consulting clients about whether their organizations should consider investing in an RMIS. Incident Management.

BCM 84
article thumbnail

How to Offload Your Risk to a Third Party

MHA Consulting

There are two main types of risk transference: 1) buying insurance and 2) hiring a third-party vendor to perform an activity and passing on to them the risks associated with that activity. The Promise and Pitfalls of Insurance Insurance is the most frequently used and easiest method of risk transference.

article thumbnail

Healthcare Under Attack: Building Resilience in the Face of an Aggressive Cyber Threat

MHA Consulting

A company called Change Healthcare, which is the largest electronic clearinghouse for medical insurance payments in the country, was struck by hackers who stole patient data and encrypted company files, demanding payment to unlock them. health care system in American history.” Data breaches generally do not affect day-to-day operations.