


![]()



October 14-15 2025
Poll results


• Combining Operational Risk and Technology into one strategic event
• Operational Risk Framework and Tools
• RCSA Quality and Maturity
• Is Alignment a Priority?
• What Risks are we not focusing enough on?
• What are we not doing enough of?
• What topic(s) are of most interest to you?
• Overall, how well are you managing regulatory complexity?

• Is there good cross-functional collaboration in approaching regulatory initiatives?

• What could we do better in approaching regulatory complexity?
• Are you using GenAI in Risk Management?
• What do you believe are the most material GenAI-related risks?
• Have you established GenAI governance?
• How actively are you currently engaged with Quantum computing?
• How is OpRisk collaborating with Tech in understanding and managing risks of emerging technologies?
• Have you achieved the optimum balance between tech innovation and security?
• Word cloud: What do you believe are the core skills of modern Operational risk professionals?
• What background is best to transition into OpRisk roles?
• What do you believe is the right balance between GenAI / Agentic AI autonomy andoversight?
• Do you use one single tool which both monitors and onboards, or are they separate?
• Which part of risk culture is your top constraint today?
• Where will you invest first after this session?
• Describe how you would define data ethics in financial organization’s context


Is vital, as they are now inseparable

Is a good move, which fosters collaboration

Would have preferred two separate conferences: Op Risk and Technology
Multiple-choice poll



Multiple-choice poll




Multiple-choice poll



Yes, already progressing
Yes, considering


No, don’t believe it’s needed
Not sure
Multiple-choice poll



the current environment no longer respects taxonomies
Employee risk
Conduct
Interconnectedness of Risks
Product and process BAU People’s skillset

Change execution Change
Quantum computing

Change management
Data governance People and change
Speed of change

Adjusting framework for 1LoD needs and strategic goals

Linking all information we see together Looking at the big picture
Evolving Integration

Simplicity Forsight
OpRisk staff is completely outdated
Data structuring
Measuring
2LOD no longer an enabler
Learning
Focus on essentials
Too detached from the business Talk on key risks
Data informed testing

Think broad Strategy planning







Multiple-choice poll






risk overlapping focus governance Technology - AI agile


Upskill risk managers with resilience knowledge
adapt new pragmatic may frameworks regulatory appropriate planning teams
able white risk frameworks
Pragmatism management oversees process
Senior ownership
Proactive party right Specialist involve ensure regulation early primary easily jump change approach compare
analysis/teams implementation documented Risk awareness







Advanced cyber attacks
Cost
Deep fakes Model
Jailbreak Human

Integrity loss
Data
Spoofing
Unfair bias Technical detail Blackbox
Prompt Injection

Decionmaking Model bias
Control of sensitive information

Yes, it is established and functioning

Multiple-choice poll



Fully engaged
Somewhat involved in relevant projects


Familiar with the concept but not engaged in practice
Not familiar / not involved
Multiple-choice poll


Full collaboration, clear roles, complimentary skills

Adequate collaboration

Multiple-choice poll


Yes, optimum balance 9%





Adaptability
Approachable
Versatility

Factural
Curious

Influencing
Inquisitive





you
100% oversight, with human in the loop

80% oversight of the most critical tasks / 20% autonomy

50 / 50, allowing autonomy, enabling innovation with select oversight
Multiple-choice poll




Do you use one single tool which both monitors and onboards, or are they separate?
Multiple-choice poll












GDPR/DPA redundant?
