SARS Tax compliance – is the tide turning?

6 April 2022

The South African Revenue Service (SARS) seems to be stepping up a gear with an increasing number of successful prosecutions of tax dodgers. Only a …



22 November 2021

The complete Data Analytic and GRC solution doesn’t exist? Think again! With the extremely powerful Data Analytic capabilities of Arbutus Analyzer, fully integrated with BarnOwl’s …


Covid-19: risks of working from home

15 October 2021

The desire to work from home has been quite high up on the wish list of many employees for a number of years, so when …


Is your risk team the slowest cog in the machine?

16 August 2021

Written by Prince Shonhiwa and his team Principle Specialist: New Business Risk Vodacom South Africa Change is always a constant that businesses must contend …


Forecasting at your own risk

8 July 2021

We call them forecasts or budgets but aren’t they really predictions based on data? Forecasting is considered a sub-discipline of Prediction and is usually done …


Are the world’s canals at risk?

14 April 2021

During March 2021 the Ever Given became the most notorious ship in the world and highlighted the lack of preparedness by the Suez Canal authorities. …



16 February 2021

Why are SA businesses not realising ROI from their GRC initiatives? In order for an organisation to realise a ROI on GRC, the GRC process …


Please don’t kill the goose that lays the Golden egg

1 December 2020

Written by: Jonathan Crisp, Director, BarnOwl GRC software solutions It has been an extremely tough year for everyone and for most businesses and countries worldwide. …


Cyber risks associated with disruptive / transformative technologies

27 October 2020

Written by: Jonathan Crisp, Director, BarnOwl GRC software solutions and Chandu Kashiram, Principal Associate, Lucidum (Pty) Ltd. (Governance | Risk | Compliance | Ethics) Chandu …


Lookout! It’s a risk blindspot

14 August 2020

Are risk professionals seeing more than what has been ingrained in them? Have all risks been identified and documented? The likelihood of this is NO! …


Integrated BCM (Business Continuity Management) and Risk Management explained

12 August 2020

BarnOwl Info Sharing session: 30 July 2020 Presented by Steve Simmonds, Director, SynergyGRC and Jonathan Crisp, Director, BarnOwl Thank you very much Steve for presenting …


The Protection of Personal Information Act (POPIA) is here!

3 July 2020

Written by Karus Prinsloo, 30 June 2020 1 July 2020: the effective date for the bulk of POPIA’s requirements.  POPIA provides for a window period …


Elevating Audit through Risk-based Auditing with Continuous Monitoring

25 June 2020

RSM / BarnOwl Info Sharing session: 17 June 2020 Presented by Anton Bouwer, Director, RSM South Africa and Jonathan Crisp, Director, BarnOwl Thank you very …


Now is the time to focus more on Risk Management

8 May 2020

“We will re-look at that when things return to normal?” This or a similar statement is commonly heard these days and clearly indicates that many …


The imperative to fast track the 4IR in the wake of Covid-19

1 April 2020

The Bad: No one can deny the tragic consequences of the Covid-19 pandemic which is wreaking havoc across the world, not only in terms personal …


BarnOwl’s Response to Covid-19

23 March 2020

Dear Valued Client, In order to protect our staff, clients and the wider community during this difficult time we have implemented the following policies for …


Is the Deepfake phenomenon your number one cyber risk?

19 February 2020

What is a deepfake? Deepfake is a linguistic blend of “deep learning” and “fake” and is described as a synthetic medium in which a person …


All of the best of the year that was 2019

27 November 2019

As 2019 comes to a close we get a chance to reflect on a year that has delivered copious uncertainty, a frustrating lack of tangible …


GDPR – how well are we doing so far

11 October 2019

Quick recap – what is the GDPR? The General Data Protection Regulation (GDPR) is a regulation in EU law on data protection and privacy for all individuals within the European Union and the European Economic Area. …


Human beings aren’t going anywhere

27 August 2019

A lot has been made and will continue to be made of the impact of the fourth industrial revolution on every single aspect of our …


Key elements to developing and maintaining a Risk Culture

25 July 2019

The strength of organisational culture determines how a company responds to risk. Risk culture is an invaluable aid in moving from a “have to do” …


Harnessing the potential of the rise of the machines

3 June 2019

Much has been written about the disruptive effect of artificial intelligence (AI) and robotics. The fears range from widespread job losses on the sensible side …


Are we paying enough attention to political risk when purchasing technology?

12 April 2019

I would like to pose the question: “Should we be more attentive to geopolitical risks when buying software and technology?” In other words: “Should the …


Business Unusual – Be in charge of your own disruption

27 February 2019

The dawning of the fourth industrial revolution is set to fundamentally alter so much of what we’ve become accustomed to. Take a moment to reflect …


Gazing through futuristic eyes – get ready for fundamental change

24 January 2019

It’s a mild early summers day, with temperatures only just creeping up over 36 degrees Celsius, and I’m standing at the McDonalds 4D vending machine, …


Disruptive technologies

6 December 2018

Innovation that creates a new market and value network and eventually disrupts an existing market and value network, displacing established market-leading firms, products, and alliances. …


Adapting to a changing audit landscape

5 November 2018

The exact moment the first auditor blinked into existence is a difficult one to pinpoint. It’s intrinsically entwined with the accounting profession which traces its …


The State of Risk Maturity

27 September 2018

Introduction The following article is based on my opinion of the risk maturity level in Southern Africa given the numerous clients whose risk methodologies we …


IRMSA Risk Chat – ‘The Future of South Africa?’

3 September 2018

Andre Roux from the Institute of Future Research (IFR) University of Stellenbosch spoke at the recent IRMSA Risklab conference on the ‘Future of South Africa’. …


Can we learn to take more risks?

31 August 2018

One definition of risk is “a situation exposing someone or something of value to danger, loss, or harm”. From a young age, we are taught …


I think, therefore I am….wrong

29 June 2018

In the risk management fraternity, we’ve often said or at least heard said that a risk manager has a multitude of hats to wear in …


How does the GDPR affect South Africa?

4 June 2018

Towards the end of May 2018 did you receive a surprisingly large amount of emails informing you of new privacy policies from websites and service …


The voices at my gate

3 May 2018

In South Africa we recently celebrated Human Rights Day when we remember the Sharpeville massacre that took place on the 21st of March 1960. On …


Asking the right questions

5 April 2018

The last 20-25 years has seen a broad effort to transform the field of risk management into a science. One in which we see complex …


The Protection of Personal Information Act (“POPIA”): Are you ready?

8 March 2018

1.Why POPIA? The Protection of Personal Information Act (“POPIA”): gives effect to the constitutional right to privacy, enshrined in South Africa’s Constitution. (The right to …


The Integrated Governance, Risk and Compliance (iGRC) Framework

28 February 2018

Presented by Gary Khan, Risk Advisory, EOH There are many variations of frameworks out there. Advisory practices are famous at coming up with new ideas …


Not on my watch – making ethical business personal

15 February 2018

The signs all suggest that the world is now entering a time of disclosure, exposure, revolution and hopefully, an uncovering of the truth. The last …


It was the best of times, it was the worst of times

11 December 2017

And so, in the blink of an eye, another action-packed year has hastened past sowing turmoil and peace, fear and love, trauma and healing, decline …


Good Corporate Governance – alive and kicking!

27 September 2017

Reading the news day in and day out it’s difficult to believe that the term ‘good corporate governance’ means anything anymore. Good corporate governance seems …


A 3-step Approach to Implementing Risk Appetite and Tolerance

1 August 2017

Step 1: Understanding Risk Appetite and Tolerance Whilst Risk Appetite deals with the level of risk that the organisation will pursue to meet their organisational …


Internal Audit Software: Saving Costs and Boosting Efficiency

27 July 2017

Why implement internal audit software Besides being general best practice, Internal Audit Software provides an organisation with a systematic and disciplined approach to the audit …


“Common sense just ain’t that common anymore” – Let’s get back to plain thinking

29 June 2017

We live in a modern information age of big data, enormous computing power, massive quantities of statistics, facts and figures at our fingertips and hundreds, …


Managing Risk at the coalface of service delivery

29 May 2017

Part One – An overview of Risk Management at a Local Government level In this, the first of a series of articles exploring the role …


Counting the cost of poor governance and reputational risk

26 April 2017

I suppose that by now we are all tired and worn out by all the bad news of the ratings downgrade and the strange decisions …


Is risk management software the yellow brick road to risk maturity?

27 March 2017

Several surveys and studies conducted over the last few years have set out to clearly define, measure, and assess risk maturity using several indicators, attributes …


Reputational risk – make or break!

20 February 2017

I wonder if management and employees of an organisation really appreciate what goes into building a great brand and reputation. People buy from people and …


King IV Report: Risk, Compliance and Assurance

9 December 2016

The following points are taken from the King IV report copyrighted to The Institute of Directors Southern Africa NPC. Introduction to King IV The definition …


’Tis the season to be jolly…prepared!

6 December 2016

Another year has flown by at an unbelievable pace, and once again the holiday season has begun rampaging through shopping malls, saturating tourist destinations, ringing …


Navigating risk management through a sea of lies and disinformation

25 November 2016

The world of software abounds with examples of the impact of GIGO – garbage in, garbage out or even garbage in, gospel out. The Wikipedia …



4 November 2016

The final draft version of the King IV Report on Corporate Governance in South Africa 2016 (King IV) places a different focus on the Governance …


BarnOwl Info Sharing session: 27 October 2016

How to manage invisible risks that threaten your businessPresented by Terence Singh, Director, Ruhi Consulting We were delighted to have Terence Singh from Ruhi Consulting …


Improving ourselves using nature.

27 October 2016

Humans have only been practicing science for a couple of hundred years yet nature has had the benefit of 3 billion years to design, test …


6 ways risk-based auditing adds value to your organisation:

26 October 2016

The value of the Internal Audit function is becoming increasingly critical to the strong corporate governance, risk management, effective internal control, and efficient operations of …



24 October 2016

A decade ago, lack of risk awareness might have satisfied litigators in the aftermath of a loss event. However, today’s regulations have made board members …


Steps to the successful implementation of risk management software

Software implementation: 1. Ensure you have an existing risk management policy, risk framework and methodology 2. Identify the risk champions and risk owners at the …


Good corporate governance starts with you

27 September 2016

I’ve had several interactions with people in the Governance, Risk, Compliance (GRC) and Internal Audit space who comment on a growing sense of excessive legislation. …


The hidden risks of climate change

15 August 2016

The background Climate change is the change in average weather conditions over a long time period and includes temperature, wind, rainfall, length of seasons and …


Anarchy – A recipe for disaster, or the only choice left for humanity?

27 July 2016

“Anarchy in South Sudan: Mass looting of aid to leave many hungry and desperate” “Former police chief says we are on the precipice of anarchy” …


Auditing talent to unearth potential – Talent management and its alignment to objectives

30 May 2016

South Africa’s unemployment rate recently clambered back over the 25% level, the highest reading since 2005, and the 12th highest unemployment rate globally. 5.7 million …


Internal Audit Performance versus Internal Audit Value. Is there a difference?

16 May 2016

The concepts of internal audit performance and value add are used interchangeably more often than not. How often has one heard that the internal auditors …


So why the hesitancy to invest in effective Risk Management (RM)?

9 May 2016



The benefits of an effective RM strategy

26 April 2016

An effective, Enterprise Risk Management (RM) strategy has become widely recognized as a key contributor to the achievement of objectives within an organization, regardless of …


The risk and reward of freediving

21 April 2016

Freediving refers to competitive breath-hold diving and is also known as competitive apnoea. The oldest evidence of freediving has been found about 10,000 years ago …


It’s a turf war, on a global scale

29 March 2016

“Paris attacks will add to Wall Street anxiety”, “Thousands feared dead in terrorist attacks on US”, “Marikana violence is a sign of things to come”……. …


South Africa Risk Report Launch 2016

16 February 2016

IRMSA South African Risk Report Launch 2016 held on the 10th February 2016 The South African Risk Report was officially launched on the 10th February …


Compliance – a business imperitive

3 February 2016

Many organisations see compliance as a ‘necessary evil’ and in many cases try to ignore it hoping it will go away. Whether we like it …


4 Key Areas of Risk affected by Social Media

14 January 2016

The prolific rise of social media, particularly over the last 6 years has created many new commercial and marketing opportunities for business. Many organisations are …


Take heed of the signs

8 December 2015

We’ve come to that part of the year when a good number of people, employees and business owners, start to look forward to the end …


Risk management: why the flags matter

13 October 2015

If anything has shown why risk management should be one of the premier disciplines in any business, the VW saga stands out as probably the …


Are we there yet?

2 October 2015

Risk management as a studied and documented practice is believed to have started evolving in the 1950’s, largely resulting from the reality that insurance, the …


Key Updates to the IPPF framework you should know about

3 September 2015

In July this year the Institute of Internal Auditors (IIA) unveiled enhancements to its International Professional Practices Framework (IPPF). It’s important to know what’s changed …


Managing and Auditing Ethics – Starting point or end goal?

5 August 2015

Ethical business practice is an ideal many corporations strive for, but often fall short of due to an overwhelming focus on the bottom line and …


Starting a compliance Function

21 July 2015

Many companies struggle to identify what to be compliant with let alone staying compliant with existing laws and acts. Compliance does not need to be …


4 Ways Auditors Can Add Value to Your Organisation

30 June 2015

The value of the Internal Audit function is becoming increasingly critical to the strong corporate governance, risk management, effective internal control, and efficient operations of …


GM Failure: Lessons to learn

19 June 2015

How does a corporation with an ERM program, which is recognized as one of the most effective worldwide, get caught in the grip of a …


Risky Business – Making the big decisions

2 June 2015

Donald Trump, Bill Gates, Larry Ellison, Oprah Winfrey, Richard Branson, Warren Buffet, Sheryl Sandberg, Elon Musk. Recognized and acknowledged as some of the most successful …


Still using Excel for Risk Management and / or Audit?

7 May 2015

Most of us and especially the younger generation understand the power and benefits of technology and yet we often choose to ignore better ways of …


Risk Appetite and Tolerance Explained

1 April 2015

Having a defined Risk Appetite Statement is a crucial starting point to the Risk Management process. Risk Appetite and Risk Tolerance are terms that are …


Demystifying Risk Management

There is a lot of debate (and often emotional debate) within the risk management fraternity surrounding various topics – from COSO framework versus the ISO31000 …


Why all Risk Management Companies Need To Understand Human Nature

Risk management consulting and the companies involved in my opinion relates greatly to the article below. Fear of Flying 1 – Commercial Airlines A friend …


© 2022 IDI Technology (Pty) Ltd | PAIA | BBEE Certificate | Tax Clearance Certificate | Privacy Policy | Data Processing Agreement