SlideShare ist ein Scribd-Unternehmen logo
1 von 23
Law Firm Risk Management: Can It Grow Profitability? Moderator:   Adam Hansen Director of Information Security, Sonnenschein Nath & Rosenthal Panel: Pat Archbold , VP of Risk Practice, IntApp David Cunningham , Managing Director, Baker Robbins &  Company
Agenda ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Risk Defined ,[object Object],[object Object],[object Object],[object Object]
Legal Risk Types Risk Types Example Risks Key Roles IT Systems :  Continuity, Recovery, Security, and Access Management. Data :  Confidentiality, Integrity, Ethical Walls, Retention, Data Protection, Data Transfers, Hosting of Third-Party or Client Data. Third Party Suppliers :  Maintenance/Support, Contracts and Outsourcing. CIO,  General Counsel Financial Audit, Financial Internal Controls, Financial Transparency and Disclosure, Anti-Money Laundering, Counter-Terrorist Financing, Credit, Firm Investments, Currency, and Portfolio Risks. CFO Practice Management  Client Relations, Lateral, Professional Responsibilities (including malpractice, conflicts, records, and litigation support), and Professional Development Risks. Practice Leaders, General Counsel, Directors of Conflicts, Records, Lit Support, Library, and KM. Strategic / Corporate Firm Governance, Risk Management Governance, Reputational, Marketing, and Market Risks. Managing Partner, Marketing Director, General Counsel Operational Employment, Fraud, Damage to Assets, and Insurance Mediation Risks. HR Director, COO, General Counsel Environmental Natural Disasters, Epidemics, and Resource Access Risks. COO, Business Continuity Team
Business Benefits ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
In the News
 ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],A firm’s responses to application questions about risk management and loss prevention programs are often among the most important qualitative information an insurer uses to gauge the risk it may pose, according to Stuart Pattison, a vice president at Chicago-based CNA, one of the nation’s largest commercial insurers.
UK vs. US Risk Environment
In the News
 ,[object Object],[object Object],(05/21/2009) “ The Financial Services Authority (FSA) has brought charges of insider trading  against two lawyers  – including a current partner in the London office of Dorsey & Whitney – it has emerged.  The move marks a more aggressive stance from the FSA , which earlier this year secured its first successful insider trading prosecution
”
US News ,[object Object],[object Object],[object Object],Examples of business associates include third party administrators or pharmacy benefit managers for health plans, claims processing or billing companies, transcription companies,  and persons who perform legal, actuarial, accounting, management, or administrative services  for covered entities and who require access to protected health information. 08/06/2009 Dept. of Heath and Human Services 45 CFR Parts 160 and 164
Who’s Ultimately Responsible for Risk Management? 2007 Single Individual: 36% 2009 Single Individual: 63%
Risk Roles and Organization ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Risk Management Becomes a Department in Law Firms
Risk and IT Speak in Different Languages DR, Malware, VPN, LDAP, SharePoint, SLAs, Five-9s, P2P Engagement Letters, Vicarious Disqualification,  Rule 1.10,  Advanced Waivers,  Consider:  Matter Centricity + Search= Exposure
Future Org Chart?
Risk Management Approach ,[object Object],[object Object],[object Object],[object Object],[object Object]
Risk Management Approach ,[object Object],[object Object],[object Object],[object Object],[object Object]
Future: Risk Register/ERM Like-lihood Conse-quence Risk Priority Level of Risk Likelihood Rating Consequence Rating Adequacy of Existing Controls The Consequence of an Event Happening The Risk: What can Happen and How Can it Happen? #
Future: Client Requests 2009 Clients have asked firm for additional protections: 86% 2007 Clients have asked firm f or additional protections: 61%
Intake and Insider List Management Workflow software to manage intake processes Matter designated “ confidential” “ firm confidential” “ price sensitive” Tracks access, locks across systems, hides matter names Next Steps: Integrate Risk and Technology Management Insider List Management
Next Steps: Leverage Risk Management  Budgets
Next Steps: Plan for Certification
[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]

Weitere Àhnliche Inhalte

Was ist angesagt?

How to measure and manage legal risk
How to measure and manage legal riskHow to measure and manage legal risk
How to measure and manage legal riskBerkman Solutions
 
Definitive guide to third-party risk management - how to successfully mitigat...
Definitive guide to third-party risk management - how to successfully mitigat...Definitive guide to third-party risk management - how to successfully mitigat...
Definitive guide to third-party risk management - how to successfully mitigat...Kyiv National Economic University
 
Forrester GRC Q1 2016 Report
Forrester GRC Q1 2016 ReportForrester GRC Q1 2016 Report
Forrester GRC Q1 2016 ReportDaryl Resnick
 
Legadex legal compliance
Legadex legal complianceLegadex legal compliance
Legadex legal complianceLegadex
 
Modern Slavery Supply Chain
Modern Slavery Supply Chain Modern Slavery Supply Chain
Modern Slavery Supply Chain ethiXbase
 
The Purpose And Goals Of Risk Management
The Purpose And Goals Of Risk ManagementThe Purpose And Goals Of Risk Management
The Purpose And Goals Of Risk ManagementLisa Shannon, RN, BSN, JD.
 
ERM v GRC: An Introduction
ERM v GRC: An IntroductionERM v GRC: An Introduction
ERM v GRC: An Introductions0P5a41b
 
WMA Risk Survey 2016
WMA Risk Survey 2016WMA Risk Survey 2016
WMA Risk Survey 2016Noelle Buckley
 
Third-Party Relationships and Your Confidential Data
Third-Party Relationships and Your Confidential DataThird-Party Relationships and Your Confidential Data
Third-Party Relationships and Your Confidential DataGrant Thornton LLP
 
Legal risk advisory services 2013
Legal risk advisory services 2013Legal risk advisory services 2013
Legal risk advisory services 2013Nidhi Gupta
 
Top Strategies for Encouraging Employees to Use Your Whistleblower Hotline
Top Strategies for Encouraging Employees to Use Your Whistleblower HotlineTop Strategies for Encouraging Employees to Use Your Whistleblower Hotline
Top Strategies for Encouraging Employees to Use Your Whistleblower HotlineCase IQ
 
Presentation: Compliance & Third Party Due Diligence
Presentation: Compliance & Third Party Due DiligencePresentation: Compliance & Third Party Due Diligence
Presentation: Compliance & Third Party Due DiligenceethiXbase
 
Tackling the-challenges-of-third-party-risk-management
Tackling the-challenges-of-third-party-risk-managementTackling the-challenges-of-third-party-risk-management
Tackling the-challenges-of-third-party-risk-managementCharles Steve
 
Presentation: Cross-Border Anti-Corruption Programs
Presentation: Cross-Border Anti-Corruption ProgramsPresentation: Cross-Border Anti-Corruption Programs
Presentation: Cross-Border Anti-Corruption ProgramsethiXbase
 
David Shonka, Esq., FTC on eDiscovery
David Shonka, Esq., FTC on eDiscoveryDavid Shonka, Esq., FTC on eDiscovery
David Shonka, Esq., FTC on eDiscoveryJ. David Morris
 
Legal Risk - New Thinking
Legal Risk - New ThinkingLegal Risk - New Thinking
Legal Risk - New ThinkingComplyWith NZ Ltd
 
Compliance Officer update: What you should know about your Business Partner -...
Compliance Officer update: What you should know about your Business Partner -...Compliance Officer update: What you should know about your Business Partner -...
Compliance Officer update: What you should know about your Business Partner -...vivacidade
 
Doing business in China – Recent anti-corruption and bribery
Doing business in China – Recent anti-corruption and briberyDoing business in China – Recent anti-corruption and bribery
Doing business in China – Recent anti-corruption and briberyGrant Thornton LLP
 

Was ist angesagt? (19)

How to measure and manage legal risk
How to measure and manage legal riskHow to measure and manage legal risk
How to measure and manage legal risk
 
Definitive guide to third-party risk management - how to successfully mitigat...
Definitive guide to third-party risk management - how to successfully mitigat...Definitive guide to third-party risk management - how to successfully mitigat...
Definitive guide to third-party risk management - how to successfully mitigat...
 
Forrester GRC Q1 2016 Report
Forrester GRC Q1 2016 ReportForrester GRC Q1 2016 Report
Forrester GRC Q1 2016 Report
 
Legadex legal compliance
Legadex legal complianceLegadex legal compliance
Legadex legal compliance
 
Modern Slavery Supply Chain
Modern Slavery Supply Chain Modern Slavery Supply Chain
Modern Slavery Supply Chain
 
The Purpose And Goals Of Risk Management
The Purpose And Goals Of Risk ManagementThe Purpose And Goals Of Risk Management
The Purpose And Goals Of Risk Management
 
ERM v GRC: An Introduction
ERM v GRC: An IntroductionERM v GRC: An Introduction
ERM v GRC: An Introduction
 
WMA Risk Survey 2016
WMA Risk Survey 2016WMA Risk Survey 2016
WMA Risk Survey 2016
 
Third-Party Relationships and Your Confidential Data
Third-Party Relationships and Your Confidential DataThird-Party Relationships and Your Confidential Data
Third-Party Relationships and Your Confidential Data
 
Legal risk advisory services 2013
Legal risk advisory services 2013Legal risk advisory services 2013
Legal risk advisory services 2013
 
Top Strategies for Encouraging Employees to Use Your Whistleblower Hotline
Top Strategies for Encouraging Employees to Use Your Whistleblower HotlineTop Strategies for Encouraging Employees to Use Your Whistleblower Hotline
Top Strategies for Encouraging Employees to Use Your Whistleblower Hotline
 
Presentation: Compliance & Third Party Due Diligence
Presentation: Compliance & Third Party Due DiligencePresentation: Compliance & Third Party Due Diligence
Presentation: Compliance & Third Party Due Diligence
 
Tackling the-challenges-of-third-party-risk-management
Tackling the-challenges-of-third-party-risk-managementTackling the-challenges-of-third-party-risk-management
Tackling the-challenges-of-third-party-risk-management
 
Presentation: Cross-Border Anti-Corruption Programs
Presentation: Cross-Border Anti-Corruption ProgramsPresentation: Cross-Border Anti-Corruption Programs
Presentation: Cross-Border Anti-Corruption Programs
 
David Shonka, Esq., FTC on eDiscovery
David Shonka, Esq., FTC on eDiscoveryDavid Shonka, Esq., FTC on eDiscovery
David Shonka, Esq., FTC on eDiscovery
 
Legal Risk - New Thinking
Legal Risk - New ThinkingLegal Risk - New Thinking
Legal Risk - New Thinking
 
Compliance Officer update: What you should know about your Business Partner -...
Compliance Officer update: What you should know about your Business Partner -...Compliance Officer update: What you should know about your Business Partner -...
Compliance Officer update: What you should know about your Business Partner -...
 
Compliance Risk Assessment
Compliance Risk AssessmentCompliance Risk Assessment
Compliance Risk Assessment
 
Doing business in China – Recent anti-corruption and bribery
Doing business in China – Recent anti-corruption and briberyDoing business in China – Recent anti-corruption and bribery
Doing business in China – Recent anti-corruption and bribery
 

Ähnlich wie Ilta 2009 law firm risk management can it grow profitability - panel member dave cunningham aug 2009

Ilta09 Law Firm Risk Management D Cunningham
Ilta09 Law Firm Risk Management  D CunninghamIlta09 Law Firm Risk Management  D Cunningham
Ilta09 Law Firm Risk Management D CunninghamBaker Robbins & Company
 
ERM Presentation
ERM PresentationERM Presentation
ERM PresentationH Contrex
 
Managing Organizational Risk: The Mighty Triad of Internal Audit, Compliance,...
Managing Organizational Risk: The Mighty Triad of Internal Audit, Compliance,...Managing Organizational Risk: The Mighty Triad of Internal Audit, Compliance,...
Managing Organizational Risk: The Mighty Triad of Internal Audit, Compliance,...PYA, P.C.
 
Risk Monitoring and Management Trends In Commodities
Risk Monitoring and Management Trends In CommoditiesRisk Monitoring and Management Trends In Commodities
Risk Monitoring and Management Trends In CommoditiesCTRM Center
 
Risk And Threat Assessment
Risk And Threat AssessmentRisk And Threat Assessment
Risk And Threat AssessmentJessica Cannella
 
Enterprise Risk Management: Minimizing Exposure, Fostering Innovation and Acc...
Enterprise Risk Management: Minimizing Exposure, Fostering Innovation and Acc...Enterprise Risk Management: Minimizing Exposure, Fostering Innovation and Acc...
Enterprise Risk Management: Minimizing Exposure, Fostering Innovation and Acc...Cognizant
 
Fraud, bribery and corruption: Protecting reputation and value
Fraud, bribery and corruption: Protecting reputation and valueFraud, bribery and corruption: Protecting reputation and value
Fraud, bribery and corruption: Protecting reputation and valueDavid Graham
 
Hernan Huwyler Corporate Risk Assesstment Compliance Risks
Hernan Huwyler Corporate Risk Assesstment Compliance RisksHernan Huwyler Corporate Risk Assesstment Compliance Risks
Hernan Huwyler Corporate Risk Assesstment Compliance RisksHernan Huwyler, MBA CPA
 
Accounting
AccountingAccounting
Accountingjerryrabin
 
A compliance officer's guide to third party risk management
A compliance officer's guide to third party risk managementA compliance officer's guide to third party risk management
A compliance officer's guide to third party risk managementSALIH AHMED ISLAM
 
IE Corporate Risk Assessment 1-6 - Hernan huwyler
IE Corporate Risk Assessment 1-6 - Hernan huwyler   IE Corporate Risk Assessment 1-6 - Hernan huwyler
IE Corporate Risk Assessment 1-6 - Hernan huwyler Hernan Huwyler, MBA CPA
 
The 5 Steps to Managing Third-party Risk
The 5 Steps to Managing Third-party RiskThe 5 Steps to Managing Third-party Risk
The 5 Steps to Managing Third-party RiskElizabeth Dimit
 
Deloitte es grc_sostenibilidad-reputation-survey
Deloitte es grc_sostenibilidad-reputation-surveyDeloitte es grc_sostenibilidad-reputation-survey
Deloitte es grc_sostenibilidad-reputation-surveyBluemap Consulting Group
 
Whitepaper: Misconduct Rarely Happens in Isolation: How You Can Detect Critic...
Whitepaper: Misconduct Rarely Happens in Isolation: How You Can Detect Critic...Whitepaper: Misconduct Rarely Happens in Isolation: How You Can Detect Critic...
Whitepaper: Misconduct Rarely Happens in Isolation: How You Can Detect Critic...Gradytl
 
4Brian DennisonJohn DensonIT454 -1504B-01Mon, 121415.docx
4Brian DennisonJohn DensonIT454 -1504B-01Mon, 121415.docx4Brian DennisonJohn DensonIT454 -1504B-01Mon, 121415.docx
4Brian DennisonJohn DensonIT454 -1504B-01Mon, 121415.docxgilbertkpeters11344
 
2015 Corporate general counsel survey results
2015 Corporate general counsel survey results2015 Corporate general counsel survey results
2015 Corporate general counsel survey resultsGrant Thornton LLP
 
Enterprise Risk Management for the Digital Transformation Age
Enterprise Risk Management for the Digital Transformation AgeEnterprise Risk Management for the Digital Transformation Age
Enterprise Risk Management for the Digital Transformation AgeCareer Communications Group
 
A5 b1 risk assessement_suzanne gibson_en
A5 b1 risk assessement_suzanne gibson_enA5 b1 risk assessement_suzanne gibson_en
A5 b1 risk assessement_suzanne gibson_enocasiconference
 
Trends shaping the future of legal risk management by dave cunningham and m...
Trends shaping the future of legal risk management   by dave cunningham and m...Trends shaping the future of legal risk management   by dave cunningham and m...
Trends shaping the future of legal risk management by dave cunningham and m...David Cunningham
 
IAPP - Trust is Terrible Thing to Waste
IAPP - Trust is Terrible Thing to WasteIAPP - Trust is Terrible Thing to Waste
IAPP - Trust is Terrible Thing to WasteDave Steer
 

Ähnlich wie Ilta 2009 law firm risk management can it grow profitability - panel member dave cunningham aug 2009 (20)

Ilta09 Law Firm Risk Management D Cunningham
Ilta09 Law Firm Risk Management  D CunninghamIlta09 Law Firm Risk Management  D Cunningham
Ilta09 Law Firm Risk Management D Cunningham
 
ERM Presentation
ERM PresentationERM Presentation
ERM Presentation
 
Managing Organizational Risk: The Mighty Triad of Internal Audit, Compliance,...
Managing Organizational Risk: The Mighty Triad of Internal Audit, Compliance,...Managing Organizational Risk: The Mighty Triad of Internal Audit, Compliance,...
Managing Organizational Risk: The Mighty Triad of Internal Audit, Compliance,...
 
Risk Monitoring and Management Trends In Commodities
Risk Monitoring and Management Trends In CommoditiesRisk Monitoring and Management Trends In Commodities
Risk Monitoring and Management Trends In Commodities
 
Risk And Threat Assessment
Risk And Threat AssessmentRisk And Threat Assessment
Risk And Threat Assessment
 
Enterprise Risk Management: Minimizing Exposure, Fostering Innovation and Acc...
Enterprise Risk Management: Minimizing Exposure, Fostering Innovation and Acc...Enterprise Risk Management: Minimizing Exposure, Fostering Innovation and Acc...
Enterprise Risk Management: Minimizing Exposure, Fostering Innovation and Acc...
 
Fraud, bribery and corruption: Protecting reputation and value
Fraud, bribery and corruption: Protecting reputation and valueFraud, bribery and corruption: Protecting reputation and value
Fraud, bribery and corruption: Protecting reputation and value
 
Hernan Huwyler Corporate Risk Assesstment Compliance Risks
Hernan Huwyler Corporate Risk Assesstment Compliance RisksHernan Huwyler Corporate Risk Assesstment Compliance Risks
Hernan Huwyler Corporate Risk Assesstment Compliance Risks
 
Accounting
AccountingAccounting
Accounting
 
A compliance officer's guide to third party risk management
A compliance officer's guide to third party risk managementA compliance officer's guide to third party risk management
A compliance officer's guide to third party risk management
 
IE Corporate Risk Assessment 1-6 - Hernan huwyler
IE Corporate Risk Assessment 1-6 - Hernan huwyler   IE Corporate Risk Assessment 1-6 - Hernan huwyler
IE Corporate Risk Assessment 1-6 - Hernan huwyler
 
The 5 Steps to Managing Third-party Risk
The 5 Steps to Managing Third-party RiskThe 5 Steps to Managing Third-party Risk
The 5 Steps to Managing Third-party Risk
 
Deloitte es grc_sostenibilidad-reputation-survey
Deloitte es grc_sostenibilidad-reputation-surveyDeloitte es grc_sostenibilidad-reputation-survey
Deloitte es grc_sostenibilidad-reputation-survey
 
Whitepaper: Misconduct Rarely Happens in Isolation: How You Can Detect Critic...
Whitepaper: Misconduct Rarely Happens in Isolation: How You Can Detect Critic...Whitepaper: Misconduct Rarely Happens in Isolation: How You Can Detect Critic...
Whitepaper: Misconduct Rarely Happens in Isolation: How You Can Detect Critic...
 
4Brian DennisonJohn DensonIT454 -1504B-01Mon, 121415.docx
4Brian DennisonJohn DensonIT454 -1504B-01Mon, 121415.docx4Brian DennisonJohn DensonIT454 -1504B-01Mon, 121415.docx
4Brian DennisonJohn DensonIT454 -1504B-01Mon, 121415.docx
 
2015 Corporate general counsel survey results
2015 Corporate general counsel survey results2015 Corporate general counsel survey results
2015 Corporate general counsel survey results
 
Enterprise Risk Management for the Digital Transformation Age
Enterprise Risk Management for the Digital Transformation AgeEnterprise Risk Management for the Digital Transformation Age
Enterprise Risk Management for the Digital Transformation Age
 
A5 b1 risk assessement_suzanne gibson_en
A5 b1 risk assessement_suzanne gibson_enA5 b1 risk assessement_suzanne gibson_en
A5 b1 risk assessement_suzanne gibson_en
 
Trends shaping the future of legal risk management by dave cunningham and m...
Trends shaping the future of legal risk management   by dave cunningham and m...Trends shaping the future of legal risk management   by dave cunningham and m...
Trends shaping the future of legal risk management by dave cunningham and m...
 
IAPP - Trust is Terrible Thing to Waste
IAPP - Trust is Terrible Thing to WasteIAPP - Trust is Terrible Thing to Waste
IAPP - Trust is Terrible Thing to Waste
 

Mehr von David Cunningham

The business of data analytics and business intelligence 15 nov 2016
The business of data analytics and business intelligence   15 nov 2016The business of data analytics and business intelligence   15 nov 2016
The business of data analytics and business intelligence 15 nov 2016David Cunningham
 
50 Shades of Metrics
50 Shades of Metrics50 Shades of Metrics
50 Shades of MetricsDavid Cunningham
 
CLOC Legal Project Management and Simple RFPs
CLOC Legal Project Management and Simple RFPsCLOC Legal Project Management and Simple RFPs
CLOC Legal Project Management and Simple RFPsDavid Cunningham
 
Iltacon cio corporate legal operations consortium (cloc) metrics aug 2015
Iltacon cio corporate legal operations consortium (cloc) metrics aug 2015Iltacon cio corporate legal operations consortium (cloc) metrics aug 2015
Iltacon cio corporate legal operations consortium (cloc) metrics aug 2015David Cunningham
 
ALA 2005 Outsourcing - Making a Decision that Fits by Dave Cunningham Apr 2005
ALA 2005 Outsourcing  - Making a Decision that Fits by Dave Cunningham Apr 2005ALA 2005 Outsourcing  - Making a Decision that Fits by Dave Cunningham Apr 2005
ALA 2005 Outsourcing - Making a Decision that Fits by Dave Cunningham Apr 2005David Cunningham
 
Ilta 2005 - Evaluating Managed Services - Benchmarks and Case Studies by Dave...
Ilta 2005 - Evaluating Managed Services - Benchmarks and Case Studies by Dave...Ilta 2005 - Evaluating Managed Services - Benchmarks and Case Studies by Dave...
Ilta 2005 - Evaluating Managed Services - Benchmarks and Case Studies by Dave...David Cunningham
 
Ilta06 developing and selling an enterprise risk management approach by dave ...
Ilta06 developing and selling an enterprise risk management approach by dave ...Ilta06 developing and selling an enterprise risk management approach by dave ...
Ilta06 developing and selling an enterprise risk management approach by dave ...David Cunningham
 
Establishing a framework for it governance by dave cunningham 2007
Establishing a framework for it governance by dave cunningham 2007Establishing a framework for it governance by dave cunningham 2007
Establishing a framework for it governance by dave cunningham 2007David Cunningham
 
Ilta 2008 challenges in demonstrating it payoff presentation by dave cunningh...
Ilta 2008 challenges in demonstrating it payoff presentation by dave cunningh...Ilta 2008 challenges in demonstrating it payoff presentation by dave cunningh...
Ilta 2008 challenges in demonstrating it payoff presentation by dave cunningh...David Cunningham
 
Out with the old it in with the new by david cunningham - sep 2009
Out with the old it in with the new   by david cunningham - sep 2009Out with the old it in with the new   by david cunningham - sep 2009
Out with the old it in with the new by david cunningham - sep 2009David Cunningham
 
Managing partner retreat using technology to streamline the practice of law...
Managing partner retreat   using technology to streamline the practice of law...Managing partner retreat   using technology to streamline the practice of law...
Managing partner retreat using technology to streamline the practice of law...David Cunningham
 
Law journal news it is dead article; long live it controlling costs while g...
Law journal news   it is dead article; long live it controlling costs while g...Law journal news   it is dead article; long live it controlling costs while g...
Law journal news it is dead article; long live it controlling costs while g...David Cunningham
 
Risk management for law firms chapter 1 ark 2009 by dave cunningham
Risk management for law firms   chapter 1 ark 2009 by dave cunninghamRisk management for law firms   chapter 1 ark 2009 by dave cunningham
Risk management for law firms chapter 1 ark 2009 by dave cunninghamDavid Cunningham
 
Risk management for law firms chapter 2 ark 2009 by meg block
Risk management for law firms   chapter 2 ark 2009 by meg blockRisk management for law firms   chapter 2 ark 2009 by meg block
Risk management for law firms chapter 2 ark 2009 by meg blockDavid Cunningham
 
Ltn 2010 02 risk glossary by dave cunningham on page 23
Ltn 2010 02 risk glossary by dave cunningham on page 23Ltn 2010 02 risk glossary by dave cunningham on page 23
Ltn 2010 02 risk glossary by dave cunningham on page 23David Cunningham
 
Law firm information security overview focus on encryption by dave cunningh...
Law firm information security overview   focus on encryption by dave cunningh...Law firm information security overview   focus on encryption by dave cunningh...
Law firm information security overview focus on encryption by dave cunningh...David Cunningham
 
Hildebrandt baker robbins presentation for coo roundtable 2010 by dave cunn...
Hildebrandt baker robbins presentation for coo roundtable 2010   by dave cunn...Hildebrandt baker robbins presentation for coo roundtable 2010   by dave cunn...
Hildebrandt baker robbins presentation for coo roundtable 2010 by dave cunn...David Cunningham
 
Ala 2005 rfp best practices by dave cunningham apr 2005
Ala 2005 rfp best practices by dave cunningham   apr 2005Ala 2005 rfp best practices by dave cunningham   apr 2005
Ala 2005 rfp best practices by dave cunningham apr 2005David Cunningham
 
It sourcing threat or opportunity by dave cunningham- feb 2004
It sourcing   threat or opportunity by dave cunningham- feb 2004It sourcing   threat or opportunity by dave cunningham- feb 2004
It sourcing threat or opportunity by dave cunningham- feb 2004David Cunningham
 
2011 hildebrandt institute cio forum data privacy and security presentation...
2011 hildebrandt institute cio forum   data privacy and security presentation...2011 hildebrandt institute cio forum   data privacy and security presentation...
2011 hildebrandt institute cio forum data privacy and security presentation...David Cunningham
 

Mehr von David Cunningham (20)

The business of data analytics and business intelligence 15 nov 2016
The business of data analytics and business intelligence   15 nov 2016The business of data analytics and business intelligence   15 nov 2016
The business of data analytics and business intelligence 15 nov 2016
 
50 Shades of Metrics
50 Shades of Metrics50 Shades of Metrics
50 Shades of Metrics
 
CLOC Legal Project Management and Simple RFPs
CLOC Legal Project Management and Simple RFPsCLOC Legal Project Management and Simple RFPs
CLOC Legal Project Management and Simple RFPs
 
Iltacon cio corporate legal operations consortium (cloc) metrics aug 2015
Iltacon cio corporate legal operations consortium (cloc) metrics aug 2015Iltacon cio corporate legal operations consortium (cloc) metrics aug 2015
Iltacon cio corporate legal operations consortium (cloc) metrics aug 2015
 
ALA 2005 Outsourcing - Making a Decision that Fits by Dave Cunningham Apr 2005
ALA 2005 Outsourcing  - Making a Decision that Fits by Dave Cunningham Apr 2005ALA 2005 Outsourcing  - Making a Decision that Fits by Dave Cunningham Apr 2005
ALA 2005 Outsourcing - Making a Decision that Fits by Dave Cunningham Apr 2005
 
Ilta 2005 - Evaluating Managed Services - Benchmarks and Case Studies by Dave...
Ilta 2005 - Evaluating Managed Services - Benchmarks and Case Studies by Dave...Ilta 2005 - Evaluating Managed Services - Benchmarks and Case Studies by Dave...
Ilta 2005 - Evaluating Managed Services - Benchmarks and Case Studies by Dave...
 
Ilta06 developing and selling an enterprise risk management approach by dave ...
Ilta06 developing and selling an enterprise risk management approach by dave ...Ilta06 developing and selling an enterprise risk management approach by dave ...
Ilta06 developing and selling an enterprise risk management approach by dave ...
 
Establishing a framework for it governance by dave cunningham 2007
Establishing a framework for it governance by dave cunningham 2007Establishing a framework for it governance by dave cunningham 2007
Establishing a framework for it governance by dave cunningham 2007
 
Ilta 2008 challenges in demonstrating it payoff presentation by dave cunningh...
Ilta 2008 challenges in demonstrating it payoff presentation by dave cunningh...Ilta 2008 challenges in demonstrating it payoff presentation by dave cunningh...
Ilta 2008 challenges in demonstrating it payoff presentation by dave cunningh...
 
Out with the old it in with the new by david cunningham - sep 2009
Out with the old it in with the new   by david cunningham - sep 2009Out with the old it in with the new   by david cunningham - sep 2009
Out with the old it in with the new by david cunningham - sep 2009
 
Managing partner retreat using technology to streamline the practice of law...
Managing partner retreat   using technology to streamline the practice of law...Managing partner retreat   using technology to streamline the practice of law...
Managing partner retreat using technology to streamline the practice of law...
 
Law journal news it is dead article; long live it controlling costs while g...
Law journal news   it is dead article; long live it controlling costs while g...Law journal news   it is dead article; long live it controlling costs while g...
Law journal news it is dead article; long live it controlling costs while g...
 
Risk management for law firms chapter 1 ark 2009 by dave cunningham
Risk management for law firms   chapter 1 ark 2009 by dave cunninghamRisk management for law firms   chapter 1 ark 2009 by dave cunningham
Risk management for law firms chapter 1 ark 2009 by dave cunningham
 
Risk management for law firms chapter 2 ark 2009 by meg block
Risk management for law firms   chapter 2 ark 2009 by meg blockRisk management for law firms   chapter 2 ark 2009 by meg block
Risk management for law firms chapter 2 ark 2009 by meg block
 
Ltn 2010 02 risk glossary by dave cunningham on page 23
Ltn 2010 02 risk glossary by dave cunningham on page 23Ltn 2010 02 risk glossary by dave cunningham on page 23
Ltn 2010 02 risk glossary by dave cunningham on page 23
 
Law firm information security overview focus on encryption by dave cunningh...
Law firm information security overview   focus on encryption by dave cunningh...Law firm information security overview   focus on encryption by dave cunningh...
Law firm information security overview focus on encryption by dave cunningh...
 
Hildebrandt baker robbins presentation for coo roundtable 2010 by dave cunn...
Hildebrandt baker robbins presentation for coo roundtable 2010   by dave cunn...Hildebrandt baker robbins presentation for coo roundtable 2010   by dave cunn...
Hildebrandt baker robbins presentation for coo roundtable 2010 by dave cunn...
 
Ala 2005 rfp best practices by dave cunningham apr 2005
Ala 2005 rfp best practices by dave cunningham   apr 2005Ala 2005 rfp best practices by dave cunningham   apr 2005
Ala 2005 rfp best practices by dave cunningham apr 2005
 
It sourcing threat or opportunity by dave cunningham- feb 2004
It sourcing   threat or opportunity by dave cunningham- feb 2004It sourcing   threat or opportunity by dave cunningham- feb 2004
It sourcing threat or opportunity by dave cunningham- feb 2004
 
2011 hildebrandt institute cio forum data privacy and security presentation...
2011 hildebrandt institute cio forum   data privacy and security presentation...2011 hildebrandt institute cio forum   data privacy and security presentation...
2011 hildebrandt institute cio forum data privacy and security presentation...
 

KĂŒrzlich hochgeladen

Call Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service AvailableCall Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service AvailableDipal Arora
 
Call Girls Electronic City Just Call 👗 7737669865 👗 Top Class Call Girl Servi...
Call Girls Electronic City Just Call 👗 7737669865 👗 Top Class Call Girl Servi...Call Girls Electronic City Just Call 👗 7737669865 👗 Top Class Call Girl Servi...
Call Girls Electronic City Just Call 👗 7737669865 👗 Top Class Call Girl Servi...amitlee9823
 
Falcon's Invoice Discounting: Your Path to Prosperity
Falcon's Invoice Discounting: Your Path to ProsperityFalcon's Invoice Discounting: Your Path to Prosperity
Falcon's Invoice Discounting: Your Path to Prosperityhemanthkumar470700
 
Business Model Canvas (BMC)- A new venture concept
Business Model Canvas (BMC)-  A new venture conceptBusiness Model Canvas (BMC)-  A new venture concept
Business Model Canvas (BMC)- A new venture conceptP&CO
 
Famous Olympic Siblings from the 21st Century
Famous Olympic Siblings from the 21st CenturyFamous Olympic Siblings from the 21st Century
Famous Olympic Siblings from the 21st Centuryrwgiffor
 
Uneak White's Personal Brand Exploration Presentation
Uneak White's Personal Brand Exploration PresentationUneak White's Personal Brand Exploration Presentation
Uneak White's Personal Brand Exploration Presentationuneakwhite
 
RSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors DataRSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors DataExhibitors Data
 
A DAY IN THE LIFE OF A SALESMAN / WOMAN
A DAY IN THE LIFE OF A  SALESMAN / WOMANA DAY IN THE LIFE OF A  SALESMAN / WOMAN
A DAY IN THE LIFE OF A SALESMAN / WOMANIlamathiKannappan
 
Call Girls In Panjim North Goa 9971646499 Genuine Service
Call Girls In Panjim North Goa 9971646499 Genuine ServiceCall Girls In Panjim North Goa 9971646499 Genuine Service
Call Girls In Panjim North Goa 9971646499 Genuine Serviceritikaroy0888
 
Value Proposition canvas- Customer needs and pains
Value Proposition canvas- Customer needs and painsValue Proposition canvas- Customer needs and pains
Value Proposition canvas- Customer needs and painsP&CO
 
Russian Call Girls In Gurgaon ❀8448577510 âŠčBest Escorts Service In 24/7 Delh...
Russian Call Girls In Gurgaon ❀8448577510 âŠčBest Escorts Service In 24/7 Delh...Russian Call Girls In Gurgaon ❀8448577510 âŠčBest Escorts Service In 24/7 Delh...
Russian Call Girls In Gurgaon ❀8448577510 âŠčBest Escorts Service In 24/7 Delh...lizamodels9
 
Call Girls Jp Nagar Just Call 👗 7737669865 👗 Top Class Call Girl Service Bang...
Call Girls Jp Nagar Just Call 👗 7737669865 👗 Top Class Call Girl Service Bang...Call Girls Jp Nagar Just Call 👗 7737669865 👗 Top Class Call Girl Service Bang...
Call Girls Jp Nagar Just Call 👗 7737669865 👗 Top Class Call Girl Service Bang...amitlee9823
 
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876dlhescort
 
Insurers' journeys to build a mastery in the IoT usage
Insurers' journeys to build a mastery in the IoT usageInsurers' journeys to build a mastery in the IoT usage
Insurers' journeys to build a mastery in the IoT usageMatteo Carbone
 
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best Services
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best ServicesMysore Call Girls 8617370543 WhatsApp Number 24x7 Best Services
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best ServicesDipal Arora
 
Dr. Admir Softic_ presentation_Green Club_ENG.pdf
Dr. Admir Softic_ presentation_Green Club_ENG.pdfDr. Admir Softic_ presentation_Green Club_ENG.pdf
Dr. Admir Softic_ presentation_Green Club_ENG.pdfAdmir Softic
 
Katrina Personal Brand Project and portfolio 1
Katrina Personal Brand Project and portfolio 1Katrina Personal Brand Project and portfolio 1
Katrina Personal Brand Project and portfolio 1kcpayne
 
BAGALUR CALL GIRL IN 98274*61493 ❀CALL GIRLS IN ESCORT SERVICE❀CALL GIRL
BAGALUR CALL GIRL IN 98274*61493 ❀CALL GIRLS IN ESCORT SERVICE❀CALL GIRLBAGALUR CALL GIRL IN 98274*61493 ❀CALL GIRLS IN ESCORT SERVICE❀CALL GIRL
BAGALUR CALL GIRL IN 98274*61493 ❀CALL GIRLS IN ESCORT SERVICE❀CALL GIRLkapoorjyoti4444
 
Phases of Negotiation .pptx
 Phases of Negotiation .pptx Phases of Negotiation .pptx
Phases of Negotiation .pptxnandhinijagan9867
 
John Halpern sued for sexual assault.pdf
John Halpern sued for sexual assault.pdfJohn Halpern sued for sexual assault.pdf
John Halpern sued for sexual assault.pdfAmzadHosen3
 

KĂŒrzlich hochgeladen (20)

Call Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service AvailableCall Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
 
Call Girls Electronic City Just Call 👗 7737669865 👗 Top Class Call Girl Servi...
Call Girls Electronic City Just Call 👗 7737669865 👗 Top Class Call Girl Servi...Call Girls Electronic City Just Call 👗 7737669865 👗 Top Class Call Girl Servi...
Call Girls Electronic City Just Call 👗 7737669865 👗 Top Class Call Girl Servi...
 
Falcon's Invoice Discounting: Your Path to Prosperity
Falcon's Invoice Discounting: Your Path to ProsperityFalcon's Invoice Discounting: Your Path to Prosperity
Falcon's Invoice Discounting: Your Path to Prosperity
 
Business Model Canvas (BMC)- A new venture concept
Business Model Canvas (BMC)-  A new venture conceptBusiness Model Canvas (BMC)-  A new venture concept
Business Model Canvas (BMC)- A new venture concept
 
Famous Olympic Siblings from the 21st Century
Famous Olympic Siblings from the 21st CenturyFamous Olympic Siblings from the 21st Century
Famous Olympic Siblings from the 21st Century
 
Uneak White's Personal Brand Exploration Presentation
Uneak White's Personal Brand Exploration PresentationUneak White's Personal Brand Exploration Presentation
Uneak White's Personal Brand Exploration Presentation
 
RSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors DataRSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors Data
 
A DAY IN THE LIFE OF A SALESMAN / WOMAN
A DAY IN THE LIFE OF A  SALESMAN / WOMANA DAY IN THE LIFE OF A  SALESMAN / WOMAN
A DAY IN THE LIFE OF A SALESMAN / WOMAN
 
Call Girls In Panjim North Goa 9971646499 Genuine Service
Call Girls In Panjim North Goa 9971646499 Genuine ServiceCall Girls In Panjim North Goa 9971646499 Genuine Service
Call Girls In Panjim North Goa 9971646499 Genuine Service
 
Value Proposition canvas- Customer needs and pains
Value Proposition canvas- Customer needs and painsValue Proposition canvas- Customer needs and pains
Value Proposition canvas- Customer needs and pains
 
Russian Call Girls In Gurgaon ❀8448577510 âŠčBest Escorts Service In 24/7 Delh...
Russian Call Girls In Gurgaon ❀8448577510 âŠčBest Escorts Service In 24/7 Delh...Russian Call Girls In Gurgaon ❀8448577510 âŠčBest Escorts Service In 24/7 Delh...
Russian Call Girls In Gurgaon ❀8448577510 âŠčBest Escorts Service In 24/7 Delh...
 
Call Girls Jp Nagar Just Call 👗 7737669865 👗 Top Class Call Girl Service Bang...
Call Girls Jp Nagar Just Call 👗 7737669865 👗 Top Class Call Girl Service Bang...Call Girls Jp Nagar Just Call 👗 7737669865 👗 Top Class Call Girl Service Bang...
Call Girls Jp Nagar Just Call 👗 7737669865 👗 Top Class Call Girl Service Bang...
 
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876
Call Girls in Delhi, Escort Service Available 24x7 in Delhi 959961-/-3876
 
Insurers' journeys to build a mastery in the IoT usage
Insurers' journeys to build a mastery in the IoT usageInsurers' journeys to build a mastery in the IoT usage
Insurers' journeys to build a mastery in the IoT usage
 
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best Services
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best ServicesMysore Call Girls 8617370543 WhatsApp Number 24x7 Best Services
Mysore Call Girls 8617370543 WhatsApp Number 24x7 Best Services
 
Dr. Admir Softic_ presentation_Green Club_ENG.pdf
Dr. Admir Softic_ presentation_Green Club_ENG.pdfDr. Admir Softic_ presentation_Green Club_ENG.pdf
Dr. Admir Softic_ presentation_Green Club_ENG.pdf
 
Katrina Personal Brand Project and portfolio 1
Katrina Personal Brand Project and portfolio 1Katrina Personal Brand Project and portfolio 1
Katrina Personal Brand Project and portfolio 1
 
BAGALUR CALL GIRL IN 98274*61493 ❀CALL GIRLS IN ESCORT SERVICE❀CALL GIRL
BAGALUR CALL GIRL IN 98274*61493 ❀CALL GIRLS IN ESCORT SERVICE❀CALL GIRLBAGALUR CALL GIRL IN 98274*61493 ❀CALL GIRLS IN ESCORT SERVICE❀CALL GIRL
BAGALUR CALL GIRL IN 98274*61493 ❀CALL GIRLS IN ESCORT SERVICE❀CALL GIRL
 
Phases of Negotiation .pptx
 Phases of Negotiation .pptx Phases of Negotiation .pptx
Phases of Negotiation .pptx
 
John Halpern sued for sexual assault.pdf
John Halpern sued for sexual assault.pdfJohn Halpern sued for sexual assault.pdf
John Halpern sued for sexual assault.pdf
 

Ilta 2009 law firm risk management can it grow profitability - panel member dave cunningham aug 2009

  • 1. Law Firm Risk Management: Can It Grow Profitability? Moderator: Adam Hansen Director of Information Security, Sonnenschein Nath & Rosenthal Panel: Pat Archbold , VP of Risk Practice, IntApp David Cunningham , Managing Director, Baker Robbins & Company
  • 2.
  • 3.
  • 4. Legal Risk Types Risk Types Example Risks Key Roles IT Systems : Continuity, Recovery, Security, and Access Management. Data : Confidentiality, Integrity, Ethical Walls, Retention, Data Protection, Data Transfers, Hosting of Third-Party or Client Data. Third Party Suppliers : Maintenance/Support, Contracts and Outsourcing. CIO, General Counsel Financial Audit, Financial Internal Controls, Financial Transparency and Disclosure, Anti-Money Laundering, Counter-Terrorist Financing, Credit, Firm Investments, Currency, and Portfolio Risks. CFO Practice Management Client Relations, Lateral, Professional Responsibilities (including malpractice, conflicts, records, and litigation support), and Professional Development Risks. Practice Leaders, General Counsel, Directors of Conflicts, Records, Lit Support, Library, and KM. Strategic / Corporate Firm Governance, Risk Management Governance, Reputational, Marketing, and Market Risks. Managing Partner, Marketing Director, General Counsel Operational Employment, Fraud, Damage to Assets, and Insurance Mediation Risks. HR Director, COO, General Counsel Environmental Natural Disasters, Epidemics, and Resource Access Risks. COO, Business Continuity Team
  • 5.
  • 6.
  • 7. UK vs. US Risk Environment
  • 8.
  • 9.
  • 10. Who’s Ultimately Responsible for Risk Management? 2007 Single Individual: 36% 2009 Single Individual: 63%
  • 11.
  • 12. Risk Management Becomes a Department in Law Firms
  • 13. Risk and IT Speak in Different Languages DR, Malware, VPN, LDAP, SharePoint, SLAs, Five-9s, P2P Engagement Letters, Vicarious Disqualification, Rule 1.10, Advanced Waivers, Consider: Matter Centricity + Search= Exposure
  • 15.
  • 16.
  • 17. Future: Risk Register/ERM Like-lihood Conse-quence Risk Priority Level of Risk Likelihood Rating Consequence Rating Adequacy of Existing Controls The Consequence of an Event Happening The Risk: What can Happen and How Can it Happen? #
  • 18. Future: Client Requests 2009 Clients have asked firm for additional protections: 86% 2007 Clients have asked firm f or additional protections: 61%
  • 19. Intake and Insider List Management Workflow software to manage intake processes Matter designated “ confidential” “ firm confidential” “ price sensitive” Tracks access, locks across systems, hides matter names Next Steps: Integrate Risk and Technology Management Insider List Management
  • 20. Next Steps: Leverage Risk Management Budgets
  • 21. Next Steps: Plan for Certification
  • 22.
  • 23.

Hinweis der Redaktion

  1. Various Assigned Points: Pats Notes: Loss Prevention: Claims (claim defense), fee disgorgement, litigation costs (holds, time etc) Cost Savings: Operational Efficiency One of our clients put down on paper the three FTE’s they would replace by name, after they automated new business intake/user provisioning One client replaced one FTE based on how they were going to automate their confidentiality management. Competitive Edge ISO Certification being sought for Government business etc Reputation: Above the Law: won’t name names but large firm had leak of associate reviews due to a search tool that hit information that was not secured, corporate legal reads this, they will ask some questions next time around. “ the biggest injunction you could face is a client leaving” One firm had a OCG that said anyone working for the bank would not work for the borrower, bank client came in and a lawyer who had sued them in a past life was in on a project meeting.
  2. Insurance Private Equity markets already use the big accounting firms to analyze insurance and promote risk management to leverage costs of insurance, typically a leading indicator. 3 rd largest expense on law firms books after rent and salary. Insurers have lost money like everyone else, rates are going to go up Annual insurance reviews set premiums, underwriters want to assess their risk, lawyers often don’t articulate what has been covered, reach out and proactively have the discussion to present what you have done and offer to document and help. Any broker will tell you that this can impact the discussions. Think like you are a business owner. Claims against firms are increasing, lawyers are perceived to have deep pockets, sue for receivable, expect a counter claim, tail of claims will occur even after recession ends. Cyber coverage being defined, it used to be that malpractice fell under general liability, now it is carved out, waiting for similar around cyber SIR Levels: The more confidence your insurance partners have, the higher SIR they may be comfortable in taking on. Long term effort to build a competent risk team, start small. Claims are the single largest contributor to increases in rates. Underwriters have a vested interest in your continual improvement in risk management. Risk Management budget funds often don’t get used, ask your insurance partners. Look at the Korn Ferry article and Stuart Pattisons comments, not only is it the insurance claim aspect buy your firms’ reptuation, if you can’t stay competitive with peer firms????
  3. Pat UK legal market regulated by FSA and SRA Rule 5 is a list of rules on how the firm operates SRA Completing audits of law firms and coming in to check how they are managing risk, Rule 5 sets out a list of rules on how the firm operates, worth a look, risk register concept later Rule 3 around conflicts anticipated to change and will allow UK firms to be more aggressive at winning corporate work, if they have a compliant “information barrier”, US firms working in the UK typically abide by US conflicts rules and are at a disadvantage. FSA looking to defend existence and is focused more on law firms. MarketWatch is a regular update the FSA sends out and has had several public statements on law firms. Insider Reports: “price sensitive” jurisdictional variance. AML is mandatory, requires the firm assign a compliance officer, you will see this title more than GC in the UK. Risk organization grew under that title and is expanding. US Legal Market is self-regulated?? Are they? ABA Model Rules: states have varying interpretations on rules, advertising, on-going training, etc, very slow to change, concerns about self interest US has the title of GC mainly driven by claims against firms, UK does not have many claims against firms. Records was a big driver, e-discovery, courts getting smarter about technology issues. Model Rule 1.10 is the most recent change, has to do with lateral mobility. Started with Ethics 2000 commission, just go done??? Some global firms adopt ABA rules globally and are impacted by this. Says “you can take the lateral on without consent, if you put up ethical wall and give a description of the screen and the lateral and a partner attest to compliance.” Cite judges comments Common elements here is that many jurisdictions are looking more closely at how firms use technology to manage risk and compliance issues. AML, Information Barriers-Rule 4, ethical walls 1.10, Canadian Bar report on Conflicts, New South Wales.
  4. You can see evidence of agencies that are not technically over seeing the legal market starting to focus on the traditionally “protected class” of law firms. The veil of protection because you are a lawyer or solicitor is gone. Similar investigations have taken place by the SEC with less publicity in the US.
  5. Both of these are within the past 6 months and just a sampling of the changes, the fact that this peer group did not exist 3 years ago demonstrates the trend in this area. The ABA is fighting the red flag rules cited above, again a question of “self interest” or “self regulation”? HITECH Act has gotten many law firms scratching their heads as to what they need to do, many of our customers are taking active steps now, goes in to effect 30 days after publication in the Federal Register. Regulations that technically don’t cover lawyers, SOX, do define minimum standards from the SEC for lawyer behavior. IRS requires written documentation of conflicts waivers Client intake management, records management, conflicts management, confidentiality management, docket management
  6. Pat: In 2 years an almost 30% gain in movement towards a centralized risk function. More and more firms are naming an individual to oversee risk issues The good news is that it gets done because someone is assigned. The bad news is that you have little support and a lack of data to get your initiatives funded with resources and tools. How many of you have a full time GC in your firm? How many of you had a full time GC 5 years ago? How many of you know who your insurer is? How many have a budget dedicated to risk management that is outside of your IT budget? ILTA and IT organizations have established a standard for 3-5% of revenue on IT but Risk does not have a set budget and is challenged to get funding, many top risk organizations are developing that standard and tying back to the insurance issues we discussed earlier.
  7. Pat It is tough to decipher the org charts based on titles, some handle claims, some operational issues like conflicts/records or intake, some insurance, some policy?? Externally you need to be cognizant of your insurance issues, brokers etc and how IT can help to best position the firm. Clients drive risk initiatives: One of our early confidentiality management clients was based on a client demand due to a merger. IT is fundamental to almost all of the risk challenges a firm faces, many examples.
  8. 2/3rds of the amlaw 200 have a GC, org charts are growing under them this is an org chart from a 1000 lawyer firm) In order to bridge the gaps many firms have built a coherent organization. If you are a global firm this makes sense, how can you possibly execute on this if you are a 300 lawyer firm? You can’t but you need the same sort of communication and decision making ability. Just as there was no marketing department 10 years ago, there are few risk organizations but they will be a standard. Your mandate is to identify the areas you can patch up now to better manage risk. And, you can’t really see the details, but we’ve seen firms start to organize a distinct risk management organization that includes stakeholders across the firm I expect you’ll see more of this
  9. The buzzword in IT for the past several years is the concept of matter centricity, saving all information in a central place to make it easier for lawyers to find things. How many of you have deployed a matter centric environment? How many of you have search tool? How many of you have an Enterprise Confidentiality Management solution? The main driver behind this is to better organize emails and improve how information can be managed as a record. The other big buzz word in legal IT and KM circles is “enterprise search” the IT people want to provide lawyers with a google like search capability for the information inside the firm. So they go ahead and analyze vendors (recomind, autonomy/IWOV, Microsoft, google) they install it and start testing and find it works great to find things that otherwise were not easily searched. Recent Above the Law article about associate reviews being exposed.
  10. CRO is common in Corporate arena and now one global firm named a CRO last year, seems to be where it is going. Many lawyers that don’t want to practice but want to be engaged in a private law firm setting. Modeling the corporate space and the idea of GRC, one person can’t oversee it all, you need to build this in to the fabric of the firm.
  11. Pat: Partnering with several UK and US firms to discuss the best way to leverage technology and risk investments to impact insurance and compliance initiatives Goal is to delegate risk management to the functional areas and report back to a central team like the CRO. HR, IT, Practice Groups etc all have duties to manage risk. This is a very easy way to demonstrate a ‘consistent, risk based approach” that the insurance and regulators like the SRA are asking of firms. Build a culture of risk awareness. How many of you have a full list of the risks you need to manage at the firm? DR, environmental, compliance, conflicts, ediscovery,
  12. Our organization spends significant time dealing with this issue 25% increase over the past two years, 86% indicated they have seen an increase, curious what this audiences response is? Have you seen an increase in the number of client requests coming in? OCG, Bank not borrower etc, lateral hires. In an Ark session last Summer in New York we heard from the legal administrator at Axa Prudential We have compliance and privacy officers WE are governed by SOX etc I hate to use the V word, but you are a vendor You will be treated like every other vendor Anticipate questions RFP’s, government clients, stimulus spending ISO certification Audits Differntiate by demonstrating a process
  13. Pat: Get involved in risk peer groups and study the issues, insert how IT can assist. One example, confidentiality working group as a part of our Global Risk Roundtable series, West Legal Education, The working group tied together the confidentiality lifecycle and determined that integrating intake and confidentiality is important. As an IT professional you can greatly assist the GC in assessing where the holes are, do this before it causes an issue and present management the data, they will not come to this on their own but when it fails they will come to you. Many matters are confidential but not an ethical issue, Madoff, Spitzer, Madonna, whatever the reason. To apply rules you need to have the data, matter intake is the chance you have to get it. You need seasoned experts that und Insurers are more and more starting to look for firms that can demonstrate consistency in process. By applying business rules you can also automate which information gets tracked and delivered in a report. We can tell what office the matter is billed out of from the PMS, if Germany and tagged as price sensitive, then deliver this additional set of data or different criteria to produce the data Assuming you actually got the lawyers to pay attention this something like this?, is it the best use of a highly paid lawyers time to be tracking and even thinking about these issues. If you free up even one hour for a lawyer the ROI is large independent of the process and accuracy argument.
  14. Most US firms, unless you are an ALAS firm or self insured, have a risk management budget available, you can’t buy software or implement a tool with those funds but you certainly can pay to assess records, conflicts, confidentiality, etc Money often goes unused and GC’s don’t think about how IT might leverage those funds to get your house in order, not a lot but worth the research.
  15. Pat; Hopefully you are never forced to get certified but you should start planning. As client requests increase, you should understand the various certifications and you don’t need to be officially certified but you should start to put processes in place that will ease the transition down the road, it takes a long time to get there and anything you do now will prepare your firm down the road. Educate the lawyers on these, they typically don’t have a clue. Norton Rose took on an initiative to get ISO certified, they compete with the Magic Circle, top 5 UK firms. They are seeking anyway possible to differentiate. One way, particularly for regulated clients or government clients is to have a certification, ISO, BSI 31100, Lexcel, From the COO’s desk they embarked on this process and are leveraging that for competitve gain. Confidentiality management was a part of this but general information management policies and procedures are critical, how do you demonstrate compliance. Many firms are working on this to respond to client requests.