Enterprise Risk Management

Risky Business Made Less Risky
The rapid change in today’s business environment exposes private and public companies to an ever-changing array of risks.

These risks are not limited to financial processes, but are also found in information technology systems, compliance with government regulations, supplier and customer relationships, disaster recovery, and a host of other areas. Business executives and board of directors and audit committee members at public, private, tax-exempt, and certain governmental entities are increasingly realizing the benefits, and necessity, of assessing risk and creating a company wide strategy to address and manage those risks.

TBG’s Key Areas of ERM Experience and Expertise

Through our Enterprise Risk Management Group, The Bonadio Group (TBG) provides a suite of enterprise risk management services, from SOX 404 compliance to forensic accounting & More, at the rates of a regional CPA firm. Our mission is to help you minimize risk through delivering major improvement, business process change and compliance initiatives that create excellence and integration in people, processes and systems.

Click here for an overview of our ERM services and capabilities.


Internal Audit Expertise

The Bonadio Group’s internal audit function provides local capability, strong industry experience, credibility with management, and service delivery expertise. Your internal audit function will be respected by your board and provide turnkey internal audit capability at a competitive price. TBG also provides dedicated internal audit resources, from developing an internal audit department, to assisting and supporting existing internal auditors, to complete outsourcing. We provide the experience and exact level of support you require.

The benefit: state of the art internal audit resources at a fraction of the cost required to internally hire, train, and retain these individuals. We have worked with companies of all sizes, public and private, for-profit and not-for-profit, multi-national and domestic, across virtually every industry. Our experience includes assisting companies in providing resources to support their internal audit team and stepping into the role of managing the internal audit function.

Internal Control Expertise

TBG's Enterprise Risk Management consulting services help companies evaluate their current risk management processes and determine the steps they will need to take to replace informal, unstructured risk evaluation processes with formal, structured processes that are clear and easy to use. We are experts in helping our clients meet their business objectives through every phase of the COSO and COBIT frameworks—from identification and assessment, to evaluation, measurement, and management of risk. The results of the assessment are captured in reports that can be used to begin the process of organizing risk management to implement rapid, accurate risk assessment, and decision making processes.

For more information on TBG’s Enteprise Risk Management Services
call us at (800) 487-7624 or contact us.


TBG's Enterprise Risk Management services include:

Internal Audit

  • IA Co-Sourcing
  • IA Outsourcing
  • Specialized IA Services

Sarbanes Oxley Compliance

  • 404 Compliance
  • Year 2 and Beyond Sustainable Compliance
  • Software Packages for Automating Compliance

Risk Management for Not-For-Profits

  • Internal Controls Assessment, Remediation and Documentation (ICARD)
  • SOX-Lite

Forensic Accounting

  • Fraud Detection and Prevention
  • Investigation Services
  • Litigation Support

General Risk Services

  • SAS 70 Reviews
  • Business Risk Assessments
  • Business Process Control Design
  • Due Diligence / M&A Support

Corporate Governance

  • Governance Assessments
  • Code of Conduct / Ethics
  • Ethics Training
  • Organizational Design - Committee Charters

IT Risk Management

  • IT Risk Assessment
  • IT Audits
  • IT Security - Application Integrity, Infrastructure Security, Identity Management
  • IT Strategic Planning
  • Vulnerability / Penetration

Regulatory Consulting

  • HIPAA
  • FDA / QSR
  • Environment & Sustainability

Business Continuity Planning

  • Risk & Impact Analysis
  • Continuity Planning
  • Disaster Recovery Planning


The Bonadio Group (TBG) is the largest independent CPA firm in upstate New York, providing accounting, tax, business advisory and financial services. With offices in Rochester, Buffalo, Albany, Syracuse, Geneva and Perry, we serve the needs of commercial, small business, public, tax-exempt and individual clients.