Risk Management

Articles on Risk Management from ADVISORI

Less & Faster IRB Model Changes — What Actually Changed (and Why It Matters)

Less & Faster IRB Model Changes — What Actually Changed (and Why It Matters)

How the new IRB rules transform many previously time-consuming model changes into simple notifications—thereby drastically shortening approval times and significantly accelerating implementation

Dr. Helge Thiele's avatar

Dr. Helge Thiele

April 24, 2026

5 min read
ESG Dashboard: Structure, KPIs & Tools for CSRD Sustainability Reporting

ESG Dashboard: Structure, KPIs & Tools for CSRD Sustainability Reporting

An ESG dashboard makes sustainability performance visible and auditable. This guide covers essential environmental, social, and governance KPIs, CSRD/ESRS alignment, data collection strategies, and tool selection for organizations building audit-ready ESG reporting.

Boris Friedrich's avatar

Boris Friedrich

April 20, 2026

12 min read
DORA ICT Risk Management: Requirements and Implementation Guide for Financial Institutions

DORA ICT Risk Management: Requirements and Implementation Guide for Financial Institutions

DORA Articles 5–15 establish the ICT risk management framework that financial institutions must implement. This guide breaks down governance, framework structure, ICT systems management, detection, business continuity, and the learning loop — with a practical implementation roadmap.

Boris Friedrich's avatar

Boris Friedrich

April 16, 2026

16 min read
DPIA-Guide: Data Protection Impact Assessment Under GDPR - Step by Step

DPIA-Guide: Data Protection Impact Assessment Under GDPR - Step by Step

A Data Protection Impact Assessment (DPIA) is mandatory for high-risk data processing under GDPR. This step-by-step guide covers when a DPIA is required, the 6-step methodology, risk evaluation, mitigating measures, and documentation requirements for regulatory compliance.

Boris Friedrich's avatar

Boris Friedrich

April 07, 2026

12 min read
Third-Party Risk Management: The Complete TPRM Guide for 2026

Third-Party Risk Management: The Complete TPRM Guide for 2026

Third-party risk management (TPRM) identifies, assesses, and mitigates risks from vendors and suppliers. This guide covers the full TPRM lifecycle, risk classification, due diligence methods, continuous monitoring, DORA Articles 28–30 requirements, and practical tools for every maturity level.

Boris Friedrich's avatar

Boris Friedrich

April 06, 2026

16 min read
Intelligent ICS automation with RiskGeniusAI: Reduce costs, strengthen compliance, increase audit security

Intelligent ICS automation with RiskGeniusAI: Reduce costs, strengthen compliance, increase audit security

Transform your control processes: With RiskGeniusAI, compliance, efficiency and transparency in the ICS become measurably better.

Angelo Tarda's avatar

Angelo Tarda

October 29, 2025

5 min read
Strategic AI governance in the financial sector: Implementation of the BSI test criteria catalog in practice

Strategic AI governance in the financial sector: Implementation of the BSI test criteria catalog in practice

The new BSI catalog defines test criteria for AI governance in the financial sector. Read how you can strategically implement transparency, fairness and security.

Dr. Helge Thiele's avatar

Dr. Helge Thiele

October 21, 2025

5 min read
New BaFin supervisory notice on DORA: What companies should know and do now

New BaFin supervisory notice on DORA: What companies should know and do now

BaFin creates clarity: New DORA instructions make the switch from BAIT/VAIT practical - less bureaucracy, more resilience.

Boris Friedrich's avatar

Boris Friedrich

August 26, 2025

8 min read
ECB Guide to Internal Models: Strategic Orientation for Banks in the New Regulatory Landscape

ECB Guide to Internal Models: Strategic Orientation for Banks in the New Regulatory Landscape

The July 2025 revision of the ECB guidelines requires banks to strategically realign internal models. Key points: 1) Artificial intelligence and machine learning are permitted, but only in an explainable form and under strict governance. 2) Top management is explicitly responsible for the quality and compliance of all models. 3) CRR3 requirements and climate risks must be proactively integrated into credit, market and counterparty risk models. 4) Approved model changes must be implemented within three months, which requires agile IT architectures and automated validation processes. Institutes that build explainable AI competencies, robust ESG databases and modular systems early on transform the stricter requirements into a sustainable competitive advantage.

Andreas Krekel 's avatar

Andreas Krekel

July 29, 2025

8 min read
Risk management 2025: BaFin guidelines on ESG, climate & geopolitics – strategic decisions for banks

Risk management 2025: BaFin guidelines on ESG, climate & geopolitics – strategic decisions for banks

Risk management 2025: Bank decision-makers pay attention! Find out how you can not only meet BaFin requirements on geopolitics, climate and ESG, but also use them as a strategic lever for resilience and competitiveness. Your exclusive practical guide. | step | Standard approach (fulfillment of obligations) | Strategic approach (competitive advantage) This _MAMSHARES

Andreas Krekel 's avatar

Andreas Krekel

June 10, 2025

5 min read
AI risk: Copilot, ChatGPT & Co. - When external AI turns into internal espionage through MCPs

AI risk: Copilot, ChatGPT & Co. - When external AI turns into internal espionage through MCPs

AI risks such as prompt injection & tool poisoning threaten your company. Protect intellectual property with MCP security architecture. Practical guide for use in your own company.

Boris Friedrich's avatar

Boris Friedrich

June 09, 2025

5 min read
BCBS 239 Principles: From Regulatory Must to Strategic Necessity

BCBS 239 Principles: From Regulatory Must to Strategic Necessity

BCBS 239 Principles: Turn regulatory obligation into a measurable strategic advantage for your bank.

Andreas Krekel 's avatar

Andreas Krekel

June 02, 2025

5 min read

Your strategic success starts here

Our clients trust our expertise in digital transformation, compliance, and risk management

Ready for the next step?

Schedule a strategic consultation with our experts now

30 Minutes • Non-binding • Immediately available

For optimal preparation of your strategy session:

Your strategic goals and challenges
Desired business outcomes and ROI expectations
Current compliance and risk situation
Stakeholders and decision-makers in the project

Prefer direct contact?

Direct hotline for decision-makers

Strategic inquiries via email

Detailed Project Inquiry

For complex inquiries or if you want to provide specific information in advance