Implementing enterprise risk management in Telekom Malaysia: A way forward

The purpose of this study is to gauge the level of Enterprise Risk Management Maturity in Telekom Malaysia. A set of variables, including Internal Environment, Risk Awareness, Risk Communication and Consultation, Risk Identification, Risk Analysis, Risk Evaluation, Risk Treatment and Risk Monitoring...

Full description

Saved in:
Bibliographic Details
Main Author: Maizaton, Noor Masuan
Format: Thesis
Published: 2013
Subjects:
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:The purpose of this study is to gauge the level of Enterprise Risk Management Maturity in Telekom Malaysia. A set of variables, including Internal Environment, Risk Awareness, Risk Communication and Consultation, Risk Identification, Risk Analysis, Risk Evaluation, Risk Treatment and Risk Monitoring and review, have been established based on past studies and the established Enterprise Risk Management framework. The study hypothesizes that the aforesaid variables have positive relationship in determining the level of ERM Maturity in TM. TM adopts ISO 31000 framework consisting of Risk Assessment, Risk Treatment, Communication and Consultation and Monitoring and Review. This study extends the ISO 31000 model and incorporates additional separate categories, i.e. Risk Awareness and Internal Review in view of its importance in ERM. This Study adopted the Hilson (1997) risk maturity model to categorize the risk maturity level of TM attributable by the simplicity of the application and generality of the tools to be applied at TM. Each Section of the ERM framework, adopted from ISO 31000, is measured in terms of maturity based on a scale of 1 to 5.