Lecture 2 - What is risk? Flashcards
Define Risk
- It is defined in AS/NZS ISO 31000:2018 as “the effect of uncertainty on objectives”
- Notes:
– An effect is a deviation from the expected. It can be positive, negative or both and can create or result in opportunities and
threats.
– Objectives can have different aspects and categories, and can be applied at different levels.
– Risk is usually expressed in terms of the risk sources, potential events, and their consequences and their likelihood.
What is the risk management process?
Scope, Context, Criteria
Risk Assessment - risk identification, analysis and evaluation
Risk Treatment
Reporting and Recording
What is risk management?
- Risk management – coordinated activities to direct and
control an organization with regard to risk.
What is risk source?
- Risk source – element which alone or in combination has
the potential to give rise to risk.
What is an event?
- Event – occurrence or change of a particular set of
circumstances.
– Note 1: An event can have one or more occurrences , and can have several causes and several consequences
– Note 2: An event can also be something that is expected which does not happen, or something that is not expected that does.
– Note 3: An event can be a risk source.
Define Consequences
- Consequence – outcome of event affecting objectives
– Note 1: A consequence can be certain or uncertain and can have positive or negative direct or indirect effects on objectives.
– Note 2: Consequences can be expressed qualitatively or quantitatively.
– Note 3: Any consequence can escalate through cascading and
cumulative effects.
Define Likelihood
- Likelihood – chance of something happening
– Note 1:In risk management, the work ‘likelihood’ is used to refer to the chance of something happening, whether defined, measured or determined objectively or subjectively, qualitatively or quantitatively, and described using general terms or mathematically (such as a probability or a frequency over a given time period).
Define Control
- Control – measure that maintains and/or modifies risk
– Note 1:Controls include, but are not limited to, any process, policy, device, practice or other conditions and/or actions which maintain or modify risk.
– Note 2: Controls may not always exert the intended or assumed modifying effect.
Define Stakeholder
Stakeholder– person or organization that can affect, be affected by, or perceive themselves to be affected by a decision or activity.
– Note 1:The term ‘interested party’ can be used an an alternative to stakeholder.
What are the principles of risk management?
Integrated
Structued and Comprehensive
Customised
Inclusive
Dynamic
Best Available Information
Human and Cultural Factors
Continual Improvement
What does leadership and commitment consist of in the risk management framework
Integration
Design
Implementation
Evaluation
Improvement