Module 1 - Unit 2: The ISO 31000 standard Flashcards
List the 5 clauses of the ISO 31000 standard
The five clauses of the ISO 31000 standard are:
- Scope
- Definition of terms
- The Principles
- Framework for Implementation
- Process
Describe the “Scope” clause of the ISO 31000 standard.
The standard is generic and is not specific to a specific industry or organisation.
Name five of the ISO 31000 risk management “Principles” (Clause 3)
ISO 31000 Clause 3 - Principles
- Create & protect value e.g. achieve objectives
- Integrated into orgs. processes
- Used in decision making
- Addresses uncertainty
- Systematic, structured & timely
- Based on best available information
- Tailored to context, size and complexity
- Considers human & cultural factors
- Transparency
- Dynamic & iterative
- Facilitates continual improvement
Describe Clause 4 of the ISO 31000 standard, “Framework for Implementation”
ISO 31000 Clause 4 - Framework for Implementation
- Mandate & commitment by the Board
- Design of framework
- Implement risk management
- Monitor and review framework
- Improve framework
Describe the five stages of the ISO 31000 risk management “Process” (Clause 5)
The five stages of ISO 31000 Clause 5 - Process are
- Establish context
- Risk Identification
- Risk Analysis
- Risk Evaluation
- Risk Treatment
What two features run throughout the five stages of the ISO 31000 “Process” (Clause 5)
Two features that run through the five stages of the ISO 31000 “Process” (clause 5) are:
- Communication/consultation
- Monitoring & Review