
Progressive thinkers plan push for tax changes
Posted on 07 Jul 2025
A community tax summit that brought together over 100 economists and sector leaders in Melbourne…
Posted on 10 Apr 2024
By Matthew Schulz, journalist, Institute of Community Directors Australia
Not-for-profits must brace for the challenges of an increasingly volatile world in which risks span regulation, climate, ESG (environmental, social and governance factors), reputation, AI, and cyber and IT threats.
In a recent study of more than 400 organisations by Maddocks – ICDA’s legal partner – participants said the areas in which their operations were highly vulnerable were:
The Risk, Regulation and Resilience report, released late last year, represents the first time the firm has benchmarked Australian businesses in these areas, and it found that “no one sector … is better or worse equipped to deal with the risk of a major incident”.
The report provides useful guidance on understanding crises, and it distills characteristics of a crisis and suggests appropriate responses:
In the report, Maddocks proposes organisations consider conducting drills and exercises to test organisational capabilities.
"It is important that NFPs understand the common features of a crisis and test your systems bearing those features in mind, so that you will be well prepared if you are faced with a crisis,” Maddocks partner Catherine Dunlop said.
The central conclusion of the 36-page document is that the set-up, management and enforcement of compliance and risk policies are crucial to preparedness.
It is no surprise that cyber risks are now at the forefront of many NFP leaders’ minds, given the recent spate of cyber attacks affecting the community sector.
In a worrying trend, the report found that small organisations (with less than 100 staff) were far less likely to have existing cyber risk plans (47%), consequence management plans (19%), business continuity plans (55%) or crisis management plans (32%).
A separate study last year by community tech advocate Infoxchange suggests that the cyber risk situation could be even more dire than the Maddocks report suggests: it found that as few as 23% of smaller NFPs had “effective processes to manage information security risks”.
Ms Dunlop said that a significant area of concern for not-for-profits would be “those where the risk is difficult to quantify or address merely with internal resources”. She cited situations in which organisations and their leaders were reliant on external advice in relation to cyber and privacy risks or ageing IT systems.
Ms Dunlop said NFPs would also need to take a close interest in risks “arising from the behaviour of people, such as fraud or poor behaviour (e.g. sexual harassment), which can be unexpected and confronting given how many NFPs rely on dedicated and hard-working staff who are committed to the principles of their organisation.”
According to the Maddocks study, the top three barriers to good risk management are:
The Maddocks report suggests a series of strategies to overcome these barriers:
Those suggestions align with ICDA’s own recommendations, as outlined in this helpsheet: An introduction to the risk management process.
The Maddocks report also provides a sample risk management checklist and places risk management within an overall “organisational resilience framework”, which also encompasses incident management and recovery management.
Maddocks report: Risk, Regulation and Resilience
ICDA tools and resources: Insurance and risk management
Posted on 07 Jul 2025
A community tax summit that brought together over 100 economists and sector leaders in Melbourne…
Posted on 26 Jun 2025
Most not-for-profit workers are falling behind on wages, according to the latest national sector…
Posted on 26 Jun 2025
It’s that time of year when organisations are really focused on their finances, and that means…
Posted on 26 Jun 2025
I once worked for a small not-for-profit that decided to host a small public event at its offices.
Posted on 26 Jun 2025
ICDA training lead Nina Laitala examines the governance issues facing Australian not-for-profits.
Posted on 25 Jun 2025
Vicki Meyer has made promoting volunteering her life’s work. The Institute of Community Directors…
Posted on 25 Jun 2025
Revenue for Australia’s charity and not-for-profit sector has reached record highs, and total…
Posted on 25 Jun 2025
In Australia’s charity sector, there’s no shortage of passion or ideas – but there is a shortage of…
Posted on 25 Jun 2025
Boards should be alert to a series of recent updates and regulatory shifts in accounting standards…
Posted on 21 May 2025
As more not-for-profits (NFPs) embrace digital transformation, Doug Taylor, chief executive of The…
Posted on 21 May 2025
I was brought up by a Dylan-loving Boomer, marching against war and nuclear bombs, worried about…
Posted on 21 May 2025
Charities Minister Andrew Leigh says the new Labor government will press ahead with a “big and…