Fundamentals of Payments Risk Management Flashcards

27%

1
Q

How is enterprise risk management applied?

A

It is applied at all levels and across all functions of an organization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

A failure mode and effects analysis (FMEA) is used to manage operational risk by providing what?

A

A means to identify and define failure points of a process and to assign steps to prioritize risk incidents and define mitigation plans

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

A Merchant declaring bankruptcy, committing fraud, or unable to pay a charge-back is considered credit risk for who?

A

The Acquirer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

How many incidents does the Federal Reserve allow before contacting a financial institution about excessive daylight overdrafts?

A

Up to two incidents per two consecutive two-week reserve-maintenance periods (a total of four weeks)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

How should financial controls be graded?

A

Strong
Moderate
Weak

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Setting ACH limits is a control for what type of risk?

A

Credit risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Technology failures, power failure, human error, or natural disasters are examples of what type of risk?

A

Operational risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are the four elements of a sound risk management framework?

A
  1. Clearly identify risks
  2. Establish sound governance
  3. Establish clear and appropriate rules and procedures
  4. Employ resources necessary to achieve risk management objectives
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are the three lines of defense in a risk management framework?

A
  1. Frontline operations own and manage risk and controls
  2. Management monitors risk, control, and compliance functions
  3. Internal audit provides independent assurance that the risk management framework is operating effectively
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are user access controls?

A

Systems put in place to determine the functionality access of each individual on a day-to-day basis

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is a credit policy?

A

Clear, written guidelines that set terms and conditions, qualification criteria, collection procedures, and steps to take when a loan customer is delinquent

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is a financial transaction control?

A

A process designed to detect or prevent errors, misappropriations, and ensure adherence to policy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is a risk management framework?

A

A set of objectives, policies, arrangements, procedures, and resources employed to limit and manage risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is a service level agreement (SLA)?

A

An agreement with a service provider to ensure compliance with identified action plans, establish service fees, and performance penalties

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is another term for credit risk?

A

Temporal risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is business continuity?

A

Preparation to ensure that a business can continue to operate in the case of service disruptions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

What is business resiliency?

A

The ability of an organization to adapt to disruptions to safeguard people, assets, and brand

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

What is capital adequacy?

A

The minimum amount a financial institution must maintain to absorb losses and continue functions during times of financial distress

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

What is change control?

A

A process to manage changes to an operating environment when a change is made to an application, operating system, or utility in the production environment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

What is compliance risk?

A

The risk that a party to a transaction fails to comply, either knowingly or inadvertently, with payment system rules, policies, regulations, and applicable U.S. & state law

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

What is considered a expeditious return of a check?

A

A returned check that is received by the Depository Bank no later than 2 p.m. (local time for the Depository Bank) on the second business day following the banking day on which the check was presented to the Paying Bank

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

What is counterparty risk?

A

The risk that each party of a contract will not live up to its contractual obligations

23
Q

What is credit risk?

A

The risk that a party to a transaction will not be able to provide the necessary funds, as contracted for settlement to take place

24
Q

What is cross-channel risk?

A

The risk that the movement of fraudulent or illegal payment transactions from one payments channel to another is met with inconsistent risk management practices and lack of information sharing across payment channels about fraud

25
Q

What is daylight overdraft?

A

When a financial institution’s Federal Reserve account is in a negative position at some point during the business day

26
Q

What is Direct Access risk?

A

A risk specific to the ACH Network, where an Originator, Third-Party Sender, or Third-Party Service Provider transmits ACH files directly to an ACH Operator using the ODFI’s routing number and settlement account

27
Q

What is enterprise risk management (ERM)?

A

The culture, capabilities, and practices of an organization

28
Q

What is ex post monitoring?

A

The Federal Reserve’s monitoring of certain transactions (Fedwire funds transfers, book-entry securities transfers, and net settlement transactions) as they are processed and posted during the business day, and other transactions (ACH and check transactions) that are posted to institutions’ accounts according to defined schedules

29
Q

What is fraud risk?

A

The risk that a payment transaction is initiated or altered by any party to the transaction in an attempt to misdirect or misappropriate funds with fraudulent intent

30
Q

What is legal risk?

A

The risk that an organization’s failure to enact appropriate policies, procedures, or controls to ensure it conforms to laws, regulations, contractual arrangements, and other legally binding agreements

31
Q

What is liquidity risk?

A

The risk that earnings or capital will be negatively affected by an organization’s inability to meet its obligations when they come due

32
Q

What is operational risk?

A

The risk that a transaction is altered or delayed due to an unintentional error

33
Q

What is real-time monitoring?

A

The Federal Reserve Bank monitors an individual institution’s position when it is believed that the Federal Reserve Bank faces excessive risk exposure and rejects or delays transactions that exceed the institution’s maximum daylight overdraft position

34
Q

What is reputation risk?

A

The risk that negative publicity regarding an organization’s business practices leads to a loss of revenue or results in litigation

35
Q

What is residual risk?

A

The amount of risk remaining after the implementation of controls

36
Q

What is risk measurement?

A

The process to determine the likelihood of an adverse event or threat occurring and the potential impact of such an event on the institution

37
Q

What is risk mitigation?

A

The process of reducing risks through the introduction of specific controls and risk transfer

38
Q

What is risk?

A

The potential that events, expected or unanticipated, may have an adverse effect on a financial institution’s earning, capital, or reputation

39
Q

What is settlement risk?

A

The risk that one or more parties will fail to deliver on the terms of a contract at the agreed-upon time

40
Q

What is strategic risk?

A

The risk associated with an organization’s mission and future business plans

41
Q

What is system compromise?

A

The loss of availability of a payment system resulting from fraud, malicious damage to data, or error

42
Q

What is system disruption?

A

A system is unavailable to process transactions due to a system failure, destruction of the facility (natural disasters, fires, terrorism), or operation shutdown

43
Q

What is system failure?

A

Breakdown in a system’s hardware or software from design defects, insufficient system capacity to handle transaction volumes, or mechanical breakdown, including telecommunications

44
Q

What is systemic risk?

A

The risk that a funds transfer system participant is unable to settle its commitments causing other participants to fail

45
Q

What is technology risk?

A

The risk a technology failure will disrupt an organization such as information security incidents or service outages

46
Q

What is the FFIEC?

A

A formal, interagency body empowered to prescribe uniform principles, standards, and report forms for the federal examination of financial institutions

47
Q

What is the period of credit risk for an ODFI?

A

The period of time between initiation and settlement of a credit file

48
Q

What is third-party risk?

A

The risk when organizations rely on outside parties to perform services on their behalf

49
Q

What is transaction risk?

A

Exchange rate risk associated with the time delay between entering and settling a contract

50
Q

What is transit risk?

A

The risk a payment does not move successfully between a buyer and a seller, or that a payment is altered in some way during the transit process

51
Q

What organizations form the FFIEC?

A

The FFIEC is composed of representatives from the:
Board of Governors of the Federal Reserve System (FRB)
Federal Deposit Insurance Corporation (FDIC)
National Credit Union Administration (NCUA)
Office of the Comptroller of the Currency (OCC)
Consumer Financial Protection Bureau (CFPB)
Union Administration (NCUA)
Office of the Comptroller of the Currency (OCC)
Consumer Financial Protection Bureau (CFPB)
State Liaison Committee (SLC)

52
Q

What are policies?

A

Standards established by a board of directors that describe the governance structure and core elements of an institution’s activities

53
Q

Policies should align with what?

A

An organization’s business strategy and risk appetite