Module 1 - Unit 2 AQs Flashcards
What is a simple risk management process should be able to do:
a. ID risks (and opportunities)
b. evaluate and prioritise the significant risks (and opportunities)
c. manage the significant risks
d. all of the above
d. all of the above
What RASP stands for?
Risk Architecture & Strategy and Risk Protocols’
What is the COSO cube?
The COSO cube is a diagram that shows the relationship among all parts of an internal control system.
It also identifies a number of principles an organization should follow to meet their internal control objectives.
The COSO cube is a part of a control framework generally called the COSO framework. It was created by the Committee of Sponsoring Organizations of the Treadway Commission, or COSO.
What is included in Risk Architecture?
R&Rs
Comms
risk-reporting structure
what are the risk Protocols?
risk guidelines for an org; includes:
rules and procedure
risk management methodology
tools and techniques that should be used
What’s included in Risk Strategy?
risk strategy
Appetite
attitudes and philosphy