Hold tight Hi there!

Advisory

Non-Financial Risk Management

What we do.

Our approach is grounded in clarity and execution. We support both established institutions and fast-growing scale-ups in building or strengthening their non-financial risk capabilities through four complementary service lines: 

Edouard van den Heuvel - MSc MBA RE

Framework Design and Enhancement 

We design, review, and streamline NFRM frameworks that are fit for your organisation’s size and complexity. 
Our work typically includes: 

  • Governance design: defining ownership, accountability, and reporting lines across the Three Lines Model
  • Policy architecture: drafting, reviewing, and simplifying risk and control policies to ensure consistency, traceability, and regulatory compliance
  • Risk taxonomy alignment: ensuring that key risks (e.g., operational, IT, conduct, compliance) are consistently classified, measured, and monitored across the enterprise

Risk Appetite & Metrics

We help boards and senior management to define risk appetite statements that are meaningful - not mechanical. This includes facilitating workshops to identify top risks, setting measurable indicators, and linking them to strategic objectives. We also build dashboards that speak the language of leadership, combining risk data and judgment in a single, coherent view. 

Reporting & Regulatory Interaction

We develop board-ready risk reports that provide transparency without information overload. 

Our reports show progress, outliers, and forward-looking trends - not just traffic lights. 

We also help clients to articulate their risk profile, control environment, and remediation roadmap in a clear and evidence-based manner when responding to complex supervisory questions from regulators such as the AFM or DNB. 

Policy and Control Review

Our work goes beyond design. We conduct independent reviews of existing policies, risk assessments, and control testing results to evaluate their effectiveness and proportionality. 

We identify areas where controls can be simplified, highlighting gaps and redundancies, to ensure your organisation focuses on what truly matters rather than compliance theatre. 

Edouard van den Heuvel - MSc MBA RE

Non-Financial Risk
as a Service 

Sometimes, the challenge is not designing the framework - it’s keeping it alive. 
To support continuity and depth within your risk function, Risk Boutique offers Non-Financial Risk as a Service (NFRaaS). 
 
We provide temporary or long-term secondment of seasoned professionals within your NFRM department, ranging from junior analysts to CRO-level experts. 
 
Whether you need interim capacity, maternity leave coverage, or an outsourced risk lead for a specific domain (e.g., operational resilience, conduct risk, or IT risk), we ensure seamless integration into your team - with the craftsmanship and discretion that define our brand.

Good risk management is not restrictive; it enables confidence, speed, and sustainable growth.

Each professional within our boutique network adheres to the same quality standard: analytical sharpness, professional integrity, and the ability to deliver structure and clarity in complex environments. 

What you gain.

Substance over paperwork. You gain a framework that actually works - lean, compliant, and proportionate to your organisation’s size and risk maturity. 

Board-level confidence. Your leadership receives insights they can act on, not slides they can’t interpret. 

Regulatory assurance. You can respond to AFM or DNB with clarity, traceability, and evidence - instead of a flood of spreadsheets. 

Continuity of expertise. Through our NFRaaS offering, we can embed talent directly within your function, ensuring continuity without long onboarding times.