Unit 12: Risk Management Flashcards

1
Q

What is the goal of risk management?

A

The goal of risk management is to create, protect, and enhance shareholder value by managing the uncertainties that could either negatively or positively influence achievement of the organization’s objectives.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Define operational risk.

A

Operational risk is the risk of loss from inadequate or failed internal processes, people, and systems. These risks are related to the enterprise’s ongoing, everyday operations.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Define risk appetite within an organization.

A

Risk appetite is the degree of willingness of upper management to accept risk.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the difference between risk avoidance and risk retention

A

Risk avoidance ends the activity from which the risk arises. Risk retention is the organization’s acceptance of the risk of an activity.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the difference between residual and inherent risk?

A

Residual risk is the risk of an activity remaining after the effects of any risk responses. Inherent risk is the risk of an activity that arises from the activity itself.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Define hedging

A

Hedging is the process of using offsetting commitments to minimize or avoid the impact of adverse price movements

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the five key steps in the risk management process?

A

Step 1 – Identify risks
Step 2 – Assess risks
Step 3 – Prioritize risks
Step 4 – Formulate risk responses
Step 5 – Monitor risk responses

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Define risk exploitation.

A

Risk exploitation is the deliberate courting of risk in order to pursue a high return on investment.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are hazard risks?

A

Hazard risks are insurable risks. Examples include natural disasters, the incapacity or death of senior officers, sabotage, impairment of physical assets, and terrorism.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are strategic risks?

A

Strategic risks include global economic risk, political risk (governments will change rules), regulatory risk, and risks related to global market conditions. Also included are reputation risk, leadership risk, brand risk, and changing customer needs.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What are strategies for risk response?

A

Risk avoidance ends the activity from which the risk arises. For instance, the risk of having a pipeline sabotaged in an unstable region can be avoided by simply selling the pipeline.
Risk retention is the organization’s acceptance of the risk of an activity. This term is synonymous with the phrase “self insurance.”
Risk reduction (mitigation) is the act of lowering the level of risk associated with an activity. For instance, the risk of systems penetration can be reduced by maintaining a robust information security function within the organization.
Risk sharing transfers some loss potential to another party. Common examples are the purchase of insurance policies, engaging in hedging operations, outsourcing an activity, and entering into joint ventures. It is synonymous with risk transfer.
Risk exploitation is the deliberate courting of risk in order to pursue a high return on investment.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Define enterprise risk management (ERM).

A

ERM is defined as the culture, capabilities, and practices, integrated with strategy-setting and performance, that organizations rely on to manage risk in creating, preserving, and realizing value.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What are the mission and vision of an organization?

A

Mission is the organization’s core purpose. Vision is the organization’s aspirations for what it intends to achieve over time.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is the role of management in relation to enterprise risk management (ERM)?

A

Management has overall responsibility for ERM and is generally responsible for the day-to-day managing of risk, including the implementation and development of the COSO ERM framework.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What causes the limitations of enterprise risk management (ERM)?

A

Limitations of ERM result from the possibility of
Faulty human judgment
Cost-benefit considerations
Simple errors or mistakes
Collusion
Management override of ERM practices

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What are the five interrelated components of the COSO enterprise risk management (ERM) framework?

A

The supporting aspect components are
Governance and culture
Information, communication, and reporting

The common process components are
Strategy and objective-setting
Performance
Review and revision

17
Q

Define risk inventory.

A

Risk inventory consists of all identified risks that affect strategy and business objectives.