Operational Risk Management Flashcards
What is ORM concerned with?
Risks that disrupt everyday activities
Which element of the FIRM scorecard is most closely related to ORM?
Infrastructure
What are financial institutions required to quantify under Basel II regulations?
Exposure to operational risk in order to determine capital requirement also known as ‘economic capital’.
Solvency II adopts a similar approach to Basel II. What industry does it apply to?
Insurance
Why are international standards required?
So that regulators can set out universal regulations about how much capital must be kept in reserve to cover the financial and operational risks they face.
What is the Basel II definition of ORM?
“Managing the risk of loss resulting from inadequate or failed internal processes, people and systems or from external events”
Give an example of how inadequacies or failures by ‘people’ can result in loss?
Failure to comply with procedures
Lack of segregation of duties
Give an example of how process failures can result in loss?
Inadequate controls in place
Give an example of how system failures can result in loss?
Absence of built-in controls
Failure of applications
Give an example of how external events can result in loss?
Changes to regulations
Legal action
Fraud
Contrast ‘market risk’ with ‘credit risk’.
Market = changing value of investments Credit = failure of a client repaying loan/interest
What are Basel II’s 10 ORM principles?
- Board set operational strategy
- Senior management implement ops risk strategy
- Info comms and escalation flows established
- Identification of risks inherent in activities, processes, products
- Processes for assessing ops risk established
- System implemented to monitor exposure and loss events
- Policies and processes for controlling ops risks
- Supervising bodies require banks to have an effective system for identifying, measuring, monitoring and controlling risk.
- Supervising bodies conduct regular independent evaluations of these principles
- Public disclosure so stakeholders can assess ops risk exposure and quality of ORM.
What are the three approaches used to measure Basel II ORM?
Basic indicator: Calculate value of OR capital using a single indicator for overall exposure
Standard approach: Calculates value of OR capital using a broad financial indicator multiplied by ops loss experience
Advanced approach: Calculates OR capital using internal loss data plus qualitative and quantitative methods
What are the challenges of measuring ops risk?
Losses can be indirect e.g. losing a customer and subsequent future income
How is the failure of ORM attributed to financial crisis of 2008?
Banks failed to properly quantify risk exposure. Now adopting frameworks such as ISO31000, COSO and IRM.