CNI/Risk management Flashcards
13 CNI sectors
chemicals civil nuclear communication defence emergency services energy finance food government health space transport and water
National risk register
takes high level risks, puts them into a risk matrix and assigns departmental owners for mitigation
Blackett reviews, eg GNSS and space weather useful to highlight potential threats from each risk and potential mitigation measures.
Define risk
possibility of something happening - Risk = hazard x exposure x vulnerability
effect of uncertainty on objectives - Risk = probability x consequences
Define risk management
coordinated activities to direct and control an organisation with regard to risk
ISO 31000
Risk management tools
register - table - risk, owner, overall rating, current rating, target rating, trend
matrix - grid of likelihood against impact
Inherent risk?
risk before treatment
residual risk
risk with currently implemented treatments
target risk (risk apetite)
elve of risk with planned treatment
Risk options from ISO 31000
Avoid - don't do the activity Eliminate - remove the risk source Likelihood - change Consequence - change Share/Transfer - insurance/partnerships Retain - informed decision Take/Increase - pursue opportunity