Module 1 Unit 2 - Risk Management Standards Flashcards

1
Q

Name five risk management processes

A
8R's & 4T's
IRM2002
COSO ERM
ISO 31000
The Orange Book
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Which one of the following risk standards has ‘Control Activities’ as the feature in the risk process?

A. COSO ERM cube
B. ISO 31000(2018)
C. The Orange Book
D. IRM (2002) Standard

A

A. COSO ERM Cube

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the definition of a ‘Risk Standard’

A

Guide for managing risk,

  • risk framework
  • risk process
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the definition of a ‘Risk Framework’

A

Also known as risk management context.

This comprises of

  • Risk strategy
  • Risk architecture
  • Risk protocols

and forms the Risk Standard(context) which helps drive the risk process

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the definition of a ‘Risk Process’

A

The stages in the process of managing risk,

which is driven mainly by how you set up the framework (but is also affected by the internal and external environment)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the definition of ‘Risk Architecture’

A

Part of the risk framework, which focuses on answering the question ‘Who does what’ in the organisation in relation to risk management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the definition of ‘Risk Context’

A

This covers the three layers of the organisation which together drive the risk process; they are the

  • external environment
  • Internal environment
  • the risk management framework (context)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is the definition of ‘Risk Protocols’

A

A set of

  • Tools
  • Procedures
  • Instructions

that an organisation has for managing risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is the definition of ‘Risk Strategy’

A

The agreed overriding purpose and aims of risk management in the organisation,

This involves the publication of a risk policy document and the setting of the risk appetite

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

List the 8R’s and 4T’s

A

8R’s

  1. Recognition of risks
  2. Rating of risks
  3. Ranking of risk against criteria
  4. Response to risk (see 4T’s)
  5. Resourcing controls
  6. Reaction Planning
  7. Reporting on risks
  8. Reviewing and monitoring

4T’s

  1. Tolerate
  2. Treat
  3. Transfer
  4. Terminate
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Which one of the following definitions is the same as the definition of the risk management context.

A. Risk management strategy
B. Risk management process
C. Risk management framework

A

C. Risk Management Framework

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Which part of the risk framework focuses on answering the question ‘who does what’ in the organisation in relation to risk management.

A. Risk architecture
B. Risk context
C. Risk protocols

A

A. Risk Architecture

How well did you know this?
1
Not at all
2
3
4
5
Perfectly