Module 1 - Unit 2: Risk management standards Flashcards

1
Q

Name five risk management processes

A

8Rs & 4Ts

IRM (2002)

COSO ERM

ISO 31000

The Orange Book

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Which one of the following risk standards has “control activities” as a feature in the risk process?

A. COSO ERM cube

B. ISO 31000 (2018)

C. The Orange Book

D. IRM (2002) standard

A

A. COSO ERM cube

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What’s the definition of a “risk standard”?

A

A published guide for managing risk, usually comprising a risk framework and (especially) a risk process.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What’s the definition of a “risk framework”?

A

Also known as the risk management context. This comprises the risk strategy, risk architecture and risk protocols and forms the risk context which helps to drive the risk process.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What’s the definition of a “risk process”?

A

The stages in the process of managing risk, which is driven mainly by how you set up the framework (but also affected by the internal and external environment).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What’s the definition of “risk architecture”?

A

Part of the risk framework, which focuses on answering the question “Who does what?” in the organisation in relation to risk management.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What’s the definition of “risk context”?

A

This covers three layers of organisation which together drive the risk process; they are the external environment, the internal environment and the risk management context (also known as the risk framework).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What’s the definition of “risk protocols”?

A

The set of tools, procedures and instructions that an organisation has for managing risk.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What’s the definition of “risk strategy”?

A

The agreed overriding purpose and aims of risk management in the organisation, which involves the publication of a risk policy document and the setting of the risk appetite.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

List the 8Rs and 4Ts of hazard risk management

A

Recognition of risks Rating of risks Ranking against risk criteria Response to risk - Tolerate - Treat - Transfer - Terminate Resourcing controls Reaction planning Reporting on risk Reviewing & monitoring

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Which one of the folowing definitions is the same as the definition of the risk management context?

A. The risk management strategy

B. The risk management process

C. The risk management framework

A

C. The risk management framework

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Which part of the risk framework focuses on answering the question ‘Who does what’ in the organisation in relation to risk management?

A. Risk architecture

B. Risk context

C. Risk protocols

A

A. Risk architecture

How well did you know this?
1
Not at all
2
3
4
5
Perfectly