A comprehensive, systematic approach for helping organisations, regardless of size or mission, to identify events and measure, prioritise and respond to the risks challeging its most critical objectives and related projects, initiatives and day-to-day operating practices
A process effected by an entity's board of directors, management and other personnel, applied in strategy setting and across the entreprise, designed to identify potential events that may affect the entity, and manage risk to be be within risk appetite, to provide reasonable assurance regarding the achievement of entity objectives. Source: COSO Enterprise Risk Management (ERM)

