RISK MANAGEMENT: Intervention Proposal at the Federal Institute of Education, Science and Technology in Rio Grande do Norte.
Public Governance. Risk management. Risk management process. Risk Management Methodology. Risk Management Policy.
This work aimed to build an improvement plan for risk management within the IFRN. This is an exploratory/descriptive qualitative approach research. The data collection techniques used were the Bibliographical Research (GIL, 2008), the Documental Research (GIL. 2008) and the Focal Group (GIL, 2008); and the data analysis was performed according to the Content Analysis Technique (BARDIN, 2011). The theoretical background addresses the COSO 2 (2007) and ISO 31000 (ABNT, 2009), IIA (2013), IBGC (2017), TCU (2018) reference methodologies, and Resolution 50/2017-CONSUP/IFRN. The development of the work took place in two phases. First phase, the characterisation of the current context of IFRN's risk management, being presented to the governance structure; the institution's risk management elements; and the result of the maturity analysis in risk management in seven dimensions: risk management strategy; risk management governance; risk management policy; risk management process and interaction of the risk management protocol with other management cycles; risk language and assessment methods; systems, data and information models; and culture, communication and training, monitoring and continuous improvement (IBGC, 2017). Second phase: The IFRN Risk Management Improvement Plan has been constructed, comprising the following elements: the current context of the risk management process; the methodology for the risk management process, which is divided into five stages: understanding the context of risk; identification and analysis of risks; assessment, prioritization and risk responses; risk treatment and monitoring; and risk communication. And, at the end of the Plan, the strategies for the dissemination of the risk management culture within the Institution are brought.