Scott North
Scott North has extensive executive and board experience in risk management, internal audit, operational risk and compliance, governance, risk strategy, scenario planning, technology risk, technology architecture, systems design, financial accounting, and management accounting.
With Chief Risk Officers roles across financial services in Australia, Scott is an accomplished and experienced senior risk executive with extraordinary results in leading risk management teams. An innovative and process-focused leader, with an entrepreneurial style. Scott has a passion for innovation and digital. Scott is an experienced project leader across multiple disciplines including risk, finance and enterprise systems.
Risk Management
When National Alerts Miss Local Needs: Queensland’s Opt-Out from AusAlert
Queensland opted out of AusAlert this bushfire season despite a 94% national test success rate. This isn't about whether that call was right — it's about the resilience discipline it illustrates: weighing your own specific variables today and making a definitive decision ahead of the event that will test it.
Compliance risk
Regulator sharpens the warning on facial recognition
The OAIC has updated its facial recognition guidance for APP entities using biometric technology in high-volume, publicly accessible retail spaces. The update reflects the ART’s March 2026 Bunnings decision and reinforces that each deployment needs…
Compliance risk
Risk Maturity in Action: Turning Customer Promises into Reliable Outcomes
Two recent ASIC matters provide a useful opportunity to think differently about risk management.
They can be read as stories about compensation, penalties and compliance...
Artificial Intelligence (AI)
Why AI Risk Management Must Prioritise Business-Led Accountability in Third-Party AI Use
When Air Canada's chatbot invented a bereavement discount, a Canadian tribunal made the airline pay $812.02 for it. New data from the Cyber Risk Institute's Treasury-backed AI framework and Ncontracts' 2026 Third-Party Risk Management Survey show why every organisation using vendor AI needs the same accountability before the mistake is theirs.
Artificial Intelligence (AI)
Beyond Model Risk: Managing AI Risks Embedded in Complex Vendor Ecosystems
Three real 2026 outages — AWS's cascading Middle East failure, Microsoft Copilot's five-hour blackout, and Claude's multi-model cascade — show why AI risk management can't stop at the vendor you signed with. With EU AI Act deployer obligations enforceable from August 2026 and Gartner naming \u201cfourth-party\u201d AI risk directly, boards need to map the AI hiding inside their vendors' vendors.
Risk Management
APRA’s Level 3 conglomerate standard reset is a governance issue
APRA has published its response to consultation on remaking the Level 3 conglomerate standards. This is a substantive prudential and governance update for groups with complex conglomerate structures, especially where superannuation, insurance and banking interests…
Artificial Intelligence (AI)
Why AI Policy Must Be Practical: Turning Guardrails into Actionable Risk Controls
Many organisations have AI policies, but these often fail to guide day-to-day decision making. To manage AI risks effectively, policies need clear guardrails that business teams can apply consistently. This article explains how to translate high-level AI principles into practical standards and controls that enable confident, accountable AI use.
Business Interruption
Business continuity is needed everywhere
Organisations that value the customer and evaluate themselves on their effective response to events will prepare incident response plans prior to events through analysis of their business processes and identification of potential failure points.
Click the title to read more.
Join our community of SUBSCRIBERS and be part of the conversation.
To subscribe, simply enter your email address on our website or click the subscribe button below. Don't worry, we respect your privacy and won't spam your inbox. Your information is safe with us.

