11/6/2019 - By Jason Keith, CIA, CISA
A couple of years ago during my bank director training, I kept hearing an unfamiliar term - “Credible Challenge”. I left the training with a strong impression that boards are expected to demonstrate the ability to credibly challenge management on key decisions.
Let's start with a definition that in theory applies to all financial institutions in the FFIEC IT Management Booklet:
A credible challenge involves being actively engaged, asking thoughtful questions, and exercising independent judgment.
That sounds easy enough but I think there may be some value in further refining what a credible challenge is, especially with this definition in the Appendix C Glossary of the Comptrollers Safety and Soundness Management Handbook M-CRG Corporate and Risk Governance Section:
Credible challenge: The method that directors use to hold management accountable by being engaged and asking questions and eliciting any facts necessary, when appropriate, to satisfy themselves that management’s strategies are viable and in the bank’s best interests.
Credible challenge is active, thoughtful, and requires accountability. It challenges management as deemed necessary, is fact-based and demonstrates independent conclusions.
The Comptrollers Handbook references credible challenge 14 times. Three of those references provide insight into the expected attributes of credible challenge:
Developing an environment that allows for credible challenge is possible and below are three practical applications for your consideration:
Documenting your board’s participation and encouraging thoughtful discussion of counterpoints is key to ensuring credible challenge. Spend a little time now to develop a proactive, engaged and well-documented board environment and you will be glad you did.
About the Author | Jason Keith, CIA, CISA
Jason is a consultant in the Financial Institution Advisory Group of Saltmarsh, Cleaveland & Gund. Jason specializes in technology solutions for various practice areas within financial institutions. Over the past 18 years, he has served in financial institutions as a Compliance Officer, Internal Bank Director, Operations Officer, Credit Administration Officer, Lender, Accountant, Chief Information Officer, Internal Auditor and Risk Officer.