Risk Live EU: When Governance and Risk Move at Different Speeds
- Weave.AI
- 6 days ago
- 4 min read

Across five very different sessions at Risk Live Europe, one message kept resurfacing.
Risk events no longer move at
the speed of your governance.
The event convened chief risk officers, geopolitical strategists, and treasury leaders from top financial institutions who weren't debating whether their frameworks were sound. They were asking whether those frameworks were fast enough, and the resounding conclusion was that they are not.
Instant payment rails settle in ten seconds. Social sentiment can trigger a deposit run before a communications team has drafted a statement. AI accelerates both attacks and defenses simultaneously. Geopolitical shocks such as Greenland's strategic resurgence, hybrid warfare in Europe, Middle East volatility cascade into credit, liquidity and operational risk within hours, not quarters.
With real world examples surfacing in every session, leaders made it clear that solutions to increase the speed of governance and risk management are needed at every level.
Leadership in Uncertainty: Accountability Has to Move Faster Than the Crisis
The day opened with a CRO panel that included risk leaders from Bank of America, Barclays, BNP Paribas, and the European Investment Fund who emphasized that risk management must now move fluidly across the organization. Ransomware groups and hostile actors iterate faster than the organizations defending against them.
The panel's answer wasn't a bigger rulebook; it was cross-risk agility. When Jaguar Land Rover's cyber incident spilled into liquidity and credit exposure, the lesson wasn't "cyber risk is now credit risk" — it was that siloed ownership is itself the vulnerability. Panelists pushed for crisis playbooks built before the crisis, leadership development that starts at analyst level, and a culture where surfacing bad news early is rewarded rather than penalized.
Going Deeper
Next, NatWest Markets, UBS, Santander, and AIB UK tackled a genuinely uncomfortable observation: despite historic levels of geopolitical uncertainty, markets have stayed remarkably calm. That disconnect, the panel argued, is a trap. Supply chain disruption and infrastructure risk may simply not be priced in yet, and analysts have to be extra critical of topline data.
Panelists emphasized growing leadership through internal mobility and coaching to build broader expertise within risk teams. Additionally, technology is needed to scale. The panelists agreed that AI will transform decision speed but requires new oversight models combining machine speed with human judgment. The session's practical takeaway was governance simplification — collapsing redundant committees so decisions move at the speed the environment demands — paired with a clear-eyed framework for where AI can automate first-line decisions and where human judgment must stay firmly in the loop.
In the panel about Stress Testing Credit Risk, Wendy Scott of Citi and Denise Gordon SGCIB brought a sharper edge to stress testing from probability scoring to scenario analysis.They agreed that modern stress testing increasingly captures upside alongside downside — identifying which clients face opportunity, not just exposure, during volatility. Data quality and operational bandwidth remain the binding constraints, and both speakers were candid that stress outputs are decision tools, not predictions — a distinction that matters enormously when communicating to boards.
We then heard from HSBC and UBS in "Liquidity Buffers: The Cost of Safety Has a Line Item," where the conversation turned toward the economics of resilience. Liquidity buffers aren't free — one bank tracks a running cost of roughly £50 million a month — and the post-SVB and Credit Suisse consensus is that eligibility alone no longer defines a "safe" asset. What matters now is monetization speed. Fund transfer pricing, second-line oversight, and central bank/repo backstops all came up as the mechanics that turn buffer strategy from a compliance exercise into genuine commercial discipline.
Monzo, mBank, and Deutsche Bank closed the day with perhaps the clearest illustration of the conference's theme. Digital banks now run 20+ severe stress scenarios daily, monitoring social sentiment in real time because — as one speaker put it — a bank run today can unfold in minutes, not weekends. Reverse stress testing exposed where management action plans were simply too slow, prompting hour-by-hour crisis playbooks and pre-positioned collateral to cover settlement gaps over weekends. The takeaway wasn't new tooling for its own sake — it was that traditional stress cadences, built for a slower financial system, need to be re-timed for one that doesn't pause.
The Common Thread - Speed to Insight
Whether the topic was cyber risk, geopolitics, credit stress, liquidity, or crisis playbooks, every session arrived at the same structural point: resilience is no longer measured by whether a framework exists, but by whether it can act at the speed of the risk it's designed to catch - and even find upside. Compliance calendars, quarterly reviews, and siloed ownership were built for a world with more warning time. That world is gone.
For risk and resilience teams, the implication is direct — continuous monitoring, cross-functional escalation paths, and real-time visibility aren't nice-to-haves anymore. They're the difference between reactively recording a failure vs. catching a failure early and even finding a way to turn it into an opportunity.