Corporate Governance for Risk Managers Training Course

5 days Corporate Governance Certificate on completion
Course codeSD-CG-012
Duration5 days
LevelIntermediate
CategoryCorporate Governance
DeliveryClassroom or live online
LanguageEnglish
CertificateCertificate of completion

Course overview

Risk managers are expected to provide boards and executive committees with a clear view of material exposures, control effectiveness and emerging threats. In practice, risk information is often fragmented across registers, assurance reports, incidents and business-unit dashboards. This makes it difficult to distinguish management accountability from board oversight, escalate issues at the right point, or show whether risk appetite is being observed. This course equips risk professionals to make governance mechanisms work as an operating discipline rather than a set of policies and committee terms of reference.

Participants examine the governance structures, decision rights and reporting practices that connect board oversight to day-to-day risk ownership. They learn to map governance responsibilities using RACI and three-lines models; define risk appetite, tolerance and key risk indicators; design risk committee charters and escalation thresholds; assess control and assurance evidence; and produce board-ready risk reporting. The course also addresses governance failures, conflicts of interest, conduct risk, regulatory expectations and the governance implications of strategic change, third parties and digital risk.

Teaching combines instructor-led briefings with governance case analysis, risk committee simulations and practical design workshops. Participants work with a realistic corporate scenario to diagnose weaknesses in an existing governance framework, redesign reporting and escalation routes, and challenge risk information as a board committee would. Each participant leaves with a tailored Corporate Governance and Risk Oversight Action Plan, including a governance map, proposed committee reporting pack, escalation criteria and 90-day implementation priorities.

The course is designed for experienced risk practitioners who need to influence senior leaders, strengthen the interface between risk and governance, and demonstrate the value of risk management in strategic decisions. It is equally valuable for managers sponsoring risk-function improvement who need staff able to convert governance principles into repeatable operating practices.

Course objectives

By the end of this course, participants will be able to:

  • Map board, committee, executive and first-line risk accountabilities using a governance RACI matrix
  • Design a risk appetite statement with measurable tolerances, limits and key risk indicators
  • Construct a board risk committee charter covering mandate, membership, decision rights and reporting cadence
  • Evaluate control effectiveness and assurance evidence using the Three Lines Model and assurance mapping
  • Build a board-ready risk dashboard that distinguishes exposure, trend, limit breaches and management action
  • Define risk escalation thresholds, issue-routing rules and decision logs for material risk events
  • Assess governance weaknesses through root-cause analysis of a corporate failure case
  • Produce a 90-day Corporate Governance and Risk Oversight Action Plan for a live organisational priority

Benefits of attending

For you

  • Gain a defensible method for advising executives on risk appetite breaches and governance gaps
  • Build confidence in presenting concise risk evidence to board and committee audiences
  • Develop a practical portfolio piece: a governance map, escalation design and board-reporting prototype
  • Strengthen credibility when challenging unclear risk ownership or weak management actions
  • Prepare for broader enterprise risk, GRC, risk leadership or board-secretariat responsibilities

For your organisation

  • Creates clearer accountability for risk ownership, oversight and assurance across the three lines
  • Improves the quality and decision usefulness of risk reports presented to senior committees
  • Reduces delayed escalation of material incidents, control failures and appetite breaches
  • Produces more consistent evidence for regulatory reviews, internal audit and external assurance
  • Gives the organisation a prioritised 90-day plan for addressing identified governance weaknesses

Target competencies

Board risk reportingGovernance RACI designRisk appetite settingAssurance mappingEscalation protocol designCommittee effectiveness

Who should attend

  • Risk Managers — who must turn enterprise risk data into decisions that boards and executives can act on
  • Enterprise Risk Managers — who design risk frameworks, appetite statements and reporting across business units
  • Head of Risk and Risk Function Leaders — who need to strengthen board oversight and risk-function credibility
  • Operational Risk Managers — who escalate control failures, incidents and conduct concerns through clear governance routes
  • Internal Audit Managers — who coordinate assurance coverage and communicate independent challenge to audit committees
  • Compliance and GRC Managers — who align regulatory obligations, controls and management accountability

Requirements and prerequisites

Participants should have practical experience of risk management, compliance, internal control, audit, or business assurance in an organisation. They should understand basic concepts including risk registers, inherent and residual risk, controls, risk owners, key risk indicators and management reporting. Familiarity with their own organisation's board or committee structure is useful, as participants will apply the methods to a realistic governance scenario. A laptop with spreadsheet and presentation software is recommended for workshop activities. Prior board-level experience, legal training, audit certification, formal knowledge of corporate law, or prior use of specialist GRC software is not required.

Training methodology

The course uses short instructor-led modules to establish governance principles, followed by applied work on a continuing corporate case. Participants analyse committee papers, challenge weak risk indicators, map decision rights, draft escalation protocols and conduct a simulated risk committee meeting. Small-group workshops compare alternative governance designs for incidents, strategic investments and third-party exposures. The instructor provides structured feedback against recognised governance and risk standards. On the final day, each participant converts course outputs into a focused action plan for an issue or governance improvement relevant to their own organisation.

Course outline

Day 1: Governance architecture and risk accountability

  • Corporate governance purpose, fiduciary oversight and risk-management obligations
  • Board, committee and executive decision rights
  • The Three Lines Model and assurance responsibilities
  • Governance RACI matrices for material risk processes
  • Risk ownership versus control ownership versus oversight
  • Risk committee mandates, membership and meeting cadence
  • Diagnosing governance failures from documented corporate cases

Workshop: Participants analyse a governance failure case and produce a RACI matrix identifying unclear accountabilities and missing challenge points.

Day 2: Risk appetite, controls and assurance

  • Risk appetite, tolerance, capacity and operating limits
  • Translating strategic objectives into measurable risk thresholds
  • Key risk indicators and trigger calibration
  • Control design effectiveness versus operating effectiveness
  • Control self-assessment and evidence standards
  • Assurance mapping across management, compliance and internal audit
  • Residual risk evaluation and treatment decisions

Workshop: Participants develop a risk appetite and KRI set for a strategic business objective, including thresholds and escalation triggers.

Day 3: Board reporting and escalation discipline

  • Board-ready risk report structure and narrative
  • Risk dashboard design using trend, heat-map and limit-breach views
  • Materiality criteria for risk and incident reporting
  • Escalation paths for emerging risks and control failures
  • Management action tracking and overdue-action governance
  • Decision logs, challenge records and audit trails
  • Communicating uncertainty, assumptions and data limitations

Workshop: Participants redesign a weak committee risk pack and produce a one-page dashboard with an escalation recommendation.

Day 4: Governance under scrutiny and change

  • Root-cause analysis of governance breakdowns
  • Conflicts of interest, conduct risk and speak-up arrangements
  • Third-party governance and outsourced-risk oversight
  • Governance of strategic projects, acquisitions and transformation programmes
  • Technology, cyber and data-risk reporting to boards
  • Regulatory expectations for risk governance and board challenge
  • Scenario analysis and reverse stress testing for governance decisions

Workshop: Groups run a risk committee simulation for a major supplier incident and produce the committee decision record, actions and communication route.

Day 5: Embedding an effective risk governance operating model

  • Assessing governance maturity and prioritising remediation
  • Designing risk committee charters and annual agendas
  • Integrating risk reporting with strategy, performance and capital decisions
  • Using RSA Archer workflow concepts for issue and action governance
  • Using Microsoft Power BI concepts for executive risk visualisation
  • Stakeholder engagement with directors, executives and risk owners
  • Ninety-day implementation planning and success measures

Workshop: Participants present a Corporate Governance and Risk Oversight Action Plan containing a governance map, reporting improvements, escalation rules and 90-day milestones.

Tools & standards covered

COSO Enterprise Risk Management Framework, ISO 31000:2018 Risk Management Guidelines, RSA Archer, Microsoft Power BI

A typical training day

08:30 – 10:30First session
10:30 – 10:45Refreshment break
10:45 – 12:30Second session
12:30 – 13:30Lunch and networking
13:30 – 15:00Third session
15:00 – 15:15Refreshment break
15:15 – 16:30Workshop and daily review

Live online deliveries follow the same structure in the East Africa Time zone, with shorter screen blocks and longer breaks.

What the fee includes

  • Instruction by a practitioner facilitator
  • Full course workbook and materials
  • Exercise files, templates and case studies
  • Certificate of completion
  • Refreshments and lunch (classroom deliveries)
  • Post-course application plan
  • Facilitator follow-up on request
  • Group rates from five participants

How you can take this course

Classroom

Scheduled sessions in Nairobi, Mombasa, Kigali, Dar es Salaam, Dubai and Cape Town.

Live online

The same facilitator and materials, delivered live for distributed teams and individuals.

In-house

Delivered privately for your team, at your offices or a venue of your choice, tailored to your context. Request a proposal.

Certification

Participants who complete the full five days receive the Skillset Development Certificate of Completion, stating the course title, course code, dates and delivery format — suitable for professional-development records and employer reimbursement.

Frequently asked questions

You should already work with risk, controls, compliance, assurance or audit and understand basic risk-register terminology. The course builds from that foundation into board oversight, committee practice and governance design; it does not assume prior boardroom experience.

A laptop with spreadsheet and presentation software is recommended for the dashboard and action-planning workshops. You do not need access to RSA Archer, Power BI or any other GRC platform; examples are demonstrated and methods can be applied using your organisation's existing tools.

It is best suited to risk managers, enterprise risk practitioners, operational risk managers, compliance managers and assurance professionals who report to senior leaders. It is particularly relevant where risk information reaches committees but does not consistently drive clear decisions or actions.

This course is built around the risk manager's operating role: risk appetite, control evidence, escalation, assurance mapping and board reporting. It does not focus on director induction, company-law detail or general board etiquette; participants practise the artefacts risk teams must create and maintain.

You can use the governance RACI, escalation thresholds, committee charter structure and dashboard design to review an existing risk process or reporting cycle. The final action plan is designed around an issue in your own organisation, making the first implementation steps explicit.

You will leave with a Corporate Governance and Risk Oversight Action Plan, a governance accountability map, risk appetite and KRI design notes, and a board-reporting prototype. These materials can be refined with internal stakeholders after the course and used to support a governance improvement proposal.

Upcoming sessions

  • 28 Sep – 02 Oct 2026
    Live Online · USD 1,500
    Book
  • 05 – 09 Oct 2026
    Nairobi · USD 3,000
    Book
  • 05 – 09 Oct 2026
    Live Online · USD 1,500
    Book
  • 05 – 09 Oct 2026
    Kigali · USD 3,500
    Book
  • 19 – 23 Oct 2026
    Live Online · USD 1,500
    Book
  • 19 – 23 Oct 2026
    Dubai · USD 4,500
    Book
  • 26 – 30 Oct 2026
    Nairobi · USD 3,000
    Book
  • 02 – 06 Nov 2026
    Live Online · USD 1,500
    Book

49 more dates — ask us.


Group of 5+?

Request in-house delivery or group rates →

Related courses in Corporate Governance

5 Days Certificate

King IV Corporate Governance Principles Implementation Training Course

Boards and governance teams are expected to show more than policy compliance: they must demonstrate how governance arrangements create value…

5 Days Certificate

Diligent Entities Entity Management for Corporate Governance Training Course

Corporate secretaries, governance teams and legal operations professionals are often expected to provide an accurate, board-ready view of a …

5 Days Certificate

ISO 37000 Governance of Organizations Implementation Training Course

Boards and executive teams are increasingly expected to show that governance is more than a set of meeting schedules, delegations and compli…

5 Days Certificate

Board Intelligence Board Portal Administration for Governance Training Course

Board and committee administrators are expected to deliver secure, accurate papers under tight reporting timetables while protecting confide…