Managing Risk Flashcards
What are the steps in Risk Management
- Establish the context
- Identify the risks
- Analyze and assess the risks
- Design strategies for managing risks
- Implement and integrate risk mgmt
- Measure, monitor, and report
What are the types of enterprise Risks?
Strategic - Risk associated with strategic decision to embrace opportunity and seek reward
Operational
Financial
Compliance
Sources of Risks
Political Macroeconomic Ecological Regulatory Legal Financial Strategic Technological Competitive Operational
Strategies for managing risks
Avoidance - Conscious strategic choice not to proceed with an activity likey to generate risk
Transference - Transfer risks to a thirdparty
Mitigation - reducing the likelihood of risk or the costs of risks
Acceptance
What are the risk identification tools and methodologies
Internal interviewing and discussion
External Sources
Tools, diagnostics, and processes
Documentation of risks identification process
How to monitor Risks
Reviewing and acting on control breakdowns and losses and Performance and risk information
Auditing and validating
Updating information and assumptions
What are information systems Risks
Potential for technology shortfalls to result in losses
- Includes Cyber Risk
- Data Breach concerns