Search
Close this search box.
Loading Events

« All Events

Risk Registers Development course (virtual option)

October 15 @ 9:00 am - October 16 @ 3:30 pm

Ksh 10000

THE INSTITUTE OF CERTIFIED PUBLIC ACCOUNTANTS OF KENYA
(Established under the Accountants Act, Laws of Kenya)

Risk Register Development Course (Virtual option)
Theme: From Identification to Action: A Practical Approach to Risk Register Development and Governance
Date: 15th – 16th October 2026
Venue: Virtual Delivery
Time: 09.00am-03.30pm

Overview

Organizations today operate in an increasingly dynamic and uncertain environment characterized by rapid technological advancement, evolving regulatory requirements, cybersecurity threats, economic volatility, environmental and social considerations, and changing stakeholder expectations. These developments have elevated the importance of effective risk management as a critical component of good governance, organizational resilience, and sustainable performance.

At the heart of an effective risk management framework is the risk register, a structured tool that enables organizations to identify, assess, prioritize, monitor, and respond to risks that may affect the achievement of strategic and operational objectives. A well-developed risk register provides management and oversight bodies with a clear view of the organization’s risk landscape, promotes accountability through the assignment of risk ownership, supports informed decision-making, and strengthens organizational resilience.

Modern organizations increasingly recognize risk registers as more than compliance documents. When properly developed and maintained, risk registers become strategic management tools that facilitate proactive risk identification, assessment of risk significance, evaluation of control effectiveness, prioritization of key risks, and monitoring of mitigation actions. Integration of risk registers within broader Enterprise Risk Management (ERM) frameworks further strengthens alignment between risk management activities, organizational strategy, performance objectives, and risk appetite.

Developing an effective risk register requires a systematic process that begins with risk identification and progresses through risk classification, assessment, prioritization, response planning, assignment of ownership, monitoring, reporting, and periodic review. Organizations often face challenges in developing risk registers that accurately capture significant risks, reflect changing business conditions, and support informed decision-making. Consequently, professionals responsible for governance, finance, audit, compliance, and risk management require practical skills to develop, maintain, and utilize risk registers as effective management and governance tools.

Professional accountants play a critical role in governance, internal control, risk management, and organizational accountability. Their involvement in strategic planning, financial stewardship, compliance monitoring, and assurance activities places them in a unique position to contribute to effective risk identification, assessment, monitoring, and reporting processes. Global frameworks such as ISO 31000 and COSO Enterprise Risk Management Framework emphasize the importance of embedding risk-aware thinking throughout organizations to support sustainable value creation and preservation.

In line with its mandate to develop, support, and regulate the accountancy profession while promoting high standards of governance and professional excellence, ICPAK has organized this practical course to equip participants with the knowledge, tools, templates, and hands-on skills required to develop and maintain effective risk registers. Through practical exercises, case studies, and guided workshops, participants will be taken through the complete risk register development process—from risk identification and assessment to mitigation planning, monitoring, reporting, and continuous improvement.

The course is designed to cover the following topics:
1. Foundations of Risk Management and Risk Registers
• Understanding risk and its relevance to organizational performance and sustainability
• Overview of Enterprise Risk Management (ERM) frameworks
• Introduction to ISO 31000 and COSO ERM
• The role of risk registers in governance, accountability, and resilience
• Linking risks to organizational objectives and strategy
2. Risk Identification and Classification
• Risk identification methodologies and techniques
• SWOT Analysis, PESTLE Analysis, brainstorming, interviews, and workshops
• Process mapping and document reviews
• Stakeholder engagement in risk identification
• Classification of risks: strategic, operational, financial, compliance, reputational, and emerging risks
• Linking risks to organizational objectives and processes
3. Risk Assessment and Prioritization
• Principles of risk assessment
• Qualitative and quantitative risk assessment approaches
• Likelihood and impact assessment
• Inherent risk versus residual risk
• Risk scoring methodologies
• Development and interpretation of risk matrices and heat maps
• Risk appetite and risk tolerance
• Prioritizing key organizational risks
4. Risk Response and Risk Register Development
• Risk treatment strategies:
• Avoid
• Reduce
• Transfer
• Accept
• Evaluating existing controls and control effectiveness
• Developing mitigation action plans
• Assigning risk ownership and responsibilities
• Structuring and documenting a risk register
• Developing a complete risk register template
5. Practical Workshop – Developing a Risk Register
• Step-by-step development of a risk register
• Risk identification and documentation exercises
• Risk scoring and prioritization exercises
• Developing mitigation actions and assigning ownership
• Group case studies and practical applications
• Peer review and facilitator feedback
6. Monitoring, Reporting, and Dynamic Risk Registers
• Monitoring and updating risk registers
• Key Risk Indicators (KRIs)
• Risk reporting to management and boards
• Integration with internal controls and audit processes
• Technology-enabled risk registers and Governance, Risk and Compliance (GRC) tools
• Emerging risks and continuous improvement

The course is designed to cover the following topics:

  1. Foundations of Risk Management and Risk Registers
  • Understanding risk and its relevance to organizational performance and sustainability
  • Overview of Enterprise Risk Management (ERM) frameworks
  • Introduction to ISO 31000 and COSO ERM
  • The role of risk registers in governance, accountability, and resilience
  • Linking risks to organizational objectives and strategy
  1. Risk Identification and Classification
  • Risk identification methodologies and techniques
  • SWOT Analysis, PESTLE Analysis, brainstorming, interviews, and workshops
  • Process mapping and document reviews
  • Stakeholder engagement in risk identification
  • Classification of risks: strategic, operational, financial, compliance, reputational, and emerging risks
  • Linking risks to organizational objectives and processes
  1. Risk Assessment and Prioritization
  • Principles of risk assessment
  • Qualitative and quantitative risk assessment approaches
  • Likelihood and impact assessment
  • Inherent risk versus residual risk
  • Risk scoring methodologies
  • Development and interpretation of risk matrices and heat maps
  • Risk appetite and risk tolerance
  • Prioritizing key organizational risks
  1. Risk Response and Risk Register Development
  • Risk treatment strategies:
  • Avoid
  • Reduce
  • Transfer
  • Accept

Target Audience:

Risk Managers and Compliance Officers, Risk Champions, CFOs, Accountants and other interested professionals

Continuous Professional Development Units (CPD Units):

Members of ICPAK and reciprocating professional bodies will be awarded 10 CPD Units upon successfully attending each of the sessions.

Cost:
Charges for the training will be Kes 10,000/= which will cover course fees, materials, and e-certificates of attendance.

Online Booking:
We call on Seminar participants to note that booking for is available only online at www.icpak.com/events and will close two hours before the training session. Delegates are reminded to note that online booking for training sessions is mandatory. This is available either online at www.icpak.com/events or on the ICPAK Live – A smart phone-based application that is available from google store.

National Industrial Training Authority (NITA) Reimbursement:
The Institute is registered as a trainer with National Industrial Training Authority. The Institute’s registration number is DIT/TRN/47. Participants who are registered levy contributors should apply to NITA for reimbursement of their fees. Please note that this is applicable for Kenyan citizens only and subject to NITA regulations. Remember that to qualify you should apply to NITA for approval prior to the date of the conference. Further details can be obtained from their website (www.nita.go.ke)

Further requests can be channeled to us via telephone calls on +254 719 074 100, or via email at marketing@icpak.com.

We encourage members to regularly visit www.icpak.com  for updates.

Details

Start:
October 15 @ 9:00 am
End:
October 16 @ 3:30 pm
Cost:
Ksh 10000
Event Categories:
,

Other

CPD Hours
10
Associates Member Cost
10000
Full Member Cost
10000
Non Member Cost
10000