Establishing the Context Flashcards
1
Q
What are the characteristics of a risk framework according to ISO 31000?
A
RASP - Risk Architecture, Strategy and Protocols
2
Q
What is the risk appetite according to ISO 31000?
A
The amount and type of risk that an organisation is willing to pursue or retain.
3
Q
What are the 3 components to the risk management context?
A
- Internal Context - Culture, activities, skills, resources, structure, decision making processes - FIRM Risk Scorecard
- External Context - business sector, external stakeholders, external economic environment, opportunities and threats facing the firm - SWOT or PESTLE
- Risk Management context - RASP
4
Q
What are the key questions to ask when establishing the risk management context - 6 key questions?
A
- What is the risk management process expected to achieve?
- Who will be responsible?
- What resources are required?
- What is the risk appetite or risk criteria?
- What is the overall total risk exposure and how does this compare to risk appetite?
- How capable is the firm at withstanding/managing the risk?
5
Q
What is the risk radar?
A
Emerging risks that have to be identified in timely way. It should also look out for opportunities that can be exploited in the future.
6
Q
What are the benefits of establishing the context?
A
- Helps define objectives.
- Identifies scope, responsibilities and resources for risk management.
- Creates a methodology for evaluating success.