Module 1 unit 6: Risk response and risk treatment Flashcards

1
Q

Define what is meant by risk treatment

A

A risk response to risks that can be further treated by the introduction of cost-effective corrective controls.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Which one of the following best describes risk analysis prior to any risk treatment?

a residual risk
b target risk
c current risk
d gross risk.

A

d - gross risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Which one of the following options from the 4Ts of hazard risk management would not result in a reduction in risk severity?

a terminating the source of the risk
b treating the risk
c transferring the risk
d tolerating the risk.

A

d - tolerating the risk.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Summarise the differences between risk responses to opportunity risk with that of hazard risk.

A

Opportunity:

Exploit
Exist
Explore
Exit

Hazard:

Tolerate
Transfer
Treat
Terminate

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Explain the nature of preventive, corrective, directive and detective (PCDD) controls.

A

Preventive: Limit the possibility of an undesirable outcome occurring

Corrective: Limit the scope of loss once a risk has been realised e.g. insurance

Directive: Controls to ensure a particular outcome is achieved e.g. PPE

Detective: Controls designed to identify occasions when undesirable outcomes have been realised e.g. incident reporting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Identify two ways in which monitoring and review can help to improve risk management.

A

Monitoring and review ensures that the organisation monitors risk performance and learns from experience.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Explain what is meant by a near miss.

A

A near miss could be described as the realisation of a risk that does not result in significant impact, but could have been worse.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

List the three main categories of insurance.

A
  1. Mandatory/legal/contractual
    e. g. employers liability, public liability, professional indemnity
  2. Balance sheet profit and loss protection
    e. g. business premises, business interruption, motor insurance
  3. Employee benefit/protection of employee assets
    e. g. Life and health, directors’ and officers’ liability
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Identify two advantages and two disadvantages of insurance.

A

Advantages:

  1. indemnity against an expected loss
  2. access to specialist services as part of the premium

Disadvantages:

  1. Time taken to obtain settlement
  2. Potential for disputes around level of cover and term of policy
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

List the key stages of a business continuity plan.

A
  1. Identify crucial risk factors already affecting the org
  2. understand needs and obligations of the org
  3. establish, implement and maintain business continuity management system
  4. measure the overall capability to manage disruptive incidents
  5. guarantee conformity with stated BCP
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Which one of the following types of control is a fire insurance policy a good example of?

a preventive
b corrective
c directive
d detective.

A

b corrective

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Which one of the following outcomes does a fire alarm produce as a risk treatment in the case of a fire?

a reduce likelihood but not impact
b reduce impact but not likelihood
c reduce both impact and likelihood
d reduce neither impact nor likelihood.

A

d reduce neither impact nor likelihood.

Without any further response (normally a corrective control) the alarm will just ring but nothing else will automatically happen to reduce the impact of the fire (for example, the use of an extinguisher or the evacuation of staff, which are corrective controls).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Which one of the following scenarios is an anticipatory response relevant to?

a emerging future situations
b providing clear guidelines for risk treatment
c a type of preventive control
d the activity of learning and improving the risk management process.

A

a emerging future situations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Which one of the following types of risk is “accept” a suitable response to?

a operational risk
b tactical risk
c business continuity risk
d opportunity risk.

A

b tactical risk

One of the 4A responses

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Which one of the following types of risk can a “fifth T” be used as a response to?

a hazard risk
b operational risk
c business continuity risk
d opportunity risk.

A

d opportunity risk - “Take”

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Which one of the following outcomes is the initial treatment of risk in an organisation not likely to result in?

a reduce the inherent risk
b reduce the high-level severity risks
c reduce the medium-level severity risks
d reduce the overall risk exposure.

A

c reduce the medium-level severity risks

High level severity risks will be treated initially

17
Q

What is a captive insurance company?

A

TBD

18
Q

Describe 2 advantages of captive insurance

A
19
Q

Describe 2 disadvantages of captive insurance

A
20
Q

Name the 6 Cs of insurance buying

A
21
Q

Describe the 4As of project risk response

A
22
Q

What side of a bow tie diagram would control measure relate to and why?

A
23
Q

What side of a bow tie diagram would recovery measures relate to and why?

A
24
Q

Loss control relates to the mitigation of hazard risk. What are the three components that make up loss control?

A
25
Q

What is a Preventative control?

A
26
Q

What are Corrective controls?

A
27
Q

What are Directive controls?

A
28
Q

What are Detective controls?

A