Module 2 Unit 2: Risk strategy & Framework Flashcards

1
Q

Name three documents that are central to an organisation’s risk architecture.

A

Any of these:

a) risk policy
b) terms of reference for the risk committee and the head of risk management
c) risk appetite and tolerance statement
d) risk register
e) key risk indicators and risk dashboard
f) risk models
g) issues and events log.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Give four areas of responsibility for a group risk committee in a large corporation.

A

a) formulation of strategy
b) compilation of the group risk register
c) receiving reports from divisions
d) tracking risk management activity.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Who would you look to in an organisation to provide risk information for reporting to senior management?

A

The provision of risk information, data and risk status assessments are usually the responsibility of the stated risk owner.

Production of the information may be delegated to the risk owner’s department staff.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Describe three key functions that are likely to be addressed in an organisation’s risk protocols.

A

a) The format and content of the organisation’s risk register, how it is to be completed and the requirements for regular updates.
b) How risk and control ownership is assigned to staff.
c) Reporting requirements – such as weekly or monthly reports and risk analysis, performance against key risk indicators.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the main advantages of using an RMIS?

A

An RMIS serves as a coordinated risk repository and assists in analysing and managing the risk information in an organisation.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

List four types of info you might find in an RMIS

A

Policy and protocols

Emergency contact arrangements and contact detail

Insurance values and cost of risk data

Insurance claims handling and management process

Historical loss/claims information

Insurance policy coverage

Risk management action plans

Business continuity plans and responsibilities

Disaster recover plans and responsibilities

Corporate governance arrangements and reports

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

List two objectives of internal controls

A
Achievement of objectives
Safeguard assets
Ensure accurate records are kept
Enhance reliability of reporting
Ensure compliance with regulations
Safeguard interests of stakeholders
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

List four pieces of information that might be held in an RMIS

A

Risk management policy and protocols
Risk profile data, values and information
Emergency contact arrangements and contact details
Insurance values and cost of risk data
Insurance claims handling and management protocols
Historical loss/claims experience/information
Insurance policy coverage and other information
Risk management action plans (risk register)
Risk improvement plans and implementation
Business continuity plans and responsibilities
Disaster recovery plans and responsibilities
Corporate governance arrangements and reports

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Describe the role of a non-executive director

A

Not employed by the company and are therefore independent
Challenges and develops strategy
Scrutinises management performance
Challenges financial info
Seeks assurance that RM is robust
Determines the appropriate remuneration
Seeks to maintain confidence in the conduct of the company
Independent in judgement and promotes openness and trust
Is well informed about the company and the external environment in which it operates

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

A framework is made up RASP. What does this stand for?

A

Risk architecture
Strategy
Protocols

How well did you know this?
1
Not at all
2
3
4
5
Perfectly