• Service: Advisory, Risk Consulting, Forensic
  • Type: KPMG information
  • Date: 10/4/2013

Third-party risk management 

Globalization and increasing regulatory pressures require organizations to examine their business relationships in order to assess risk, make informed decisions, and comply with laws. Government agencies are demanding high standards of business integrity. Failure to adequately scrutinize clients, vendors, agents and business partners could expose organizations to reputational damage, operational risk and even criminal liability. Ignorance is no defense – and what you don’t know about your business partners can hurt you.
Third-party risk management
Download Now
PDF files require Adobe Reader to view

KPMG’s recent Global Anti-Bribery and Corruption Survey noted that multinational corporations say that the difficulty in performing effective due diligence on foreign agents/third parties as one of their most challenging anti-bribery and corruption issues. As a result, companies are looking to build processes and programs to manage third-party risk that is efficient, scalable and fits their unique requirements. It also needs to be embedded into their overall compliance program. Many organizations have only just begun to develop processes to on-board new third-party intermediaries (TPIs) and put their existing TPIs through a third-party risk management (TPRM) program.

Typical features of a well designed TPRM process:

  • Centralized, transparent workflow that tracks end-to-end due diligence requests in real-time and tracks handoffs across various roles (client’s business sponsor, TPI representative, client compliance, and other configurable roles)
  • Automates and stores TPI information through a Web front end, available to internal client personnel and external users
  • Enables end-to-end visibility through real-time reporting and configurable dashboard capabilities
  • Facilitates a globally consistent approach to Intermediary Due Diligence across client footprints (configured to multiple languages)
  • Provides the capability to conduct risk analysis based on an established risk model and assigned scores
  • Enables a full featured mobile capability across the user community

KPMG can help clients to identify the appropriate level of due diligence for TPIs, based upon such factors as jurisdictional risk, the nature of the industry and the service provided, the importance of the relationship, etc. KPMG can help create cost-effective, timely, and responsive reporting.



Share this

Share this

Astrus Client Access Site

Astrus Client Access
Get to know more about Astrus

Astrus Insights – KPMG’s analysis of third-party integrity risks

Astrus Insights
KPMG has launched some potentially groundbreaking analysis into the risks companies face when they enter into new business relationships.

Astrus – A Web-enabled integrity due diligence solution

Astrus – due diligence solution
KPMG’s Astrus integrity due diligence solution provides organizations with a strategic, cost-effective, and time-efficient approach.