Risk Evaluation and Risk Appetite Flashcards

1
Q

What is involved in risk evaluation?

A

Following risk analysis the results should be compared against the firm’s risk appetite to determine what additional action is required.

The outcome of risk evaluation should be recorded, communicated and validated at appropriate levels of the organisation and be dynamically reviewed based on the level of risk faced.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the IRM definition of Risk Appetite?

A

The amount of risk that an organisation is willing to seek or accept in pursuit of long term objectives.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the ISO 73 Guide definition of risk appetite?

A

The amount and type of risk that an organisation is willing to pursue or retain.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What forms the long term view of the firm on risk?

A

The risk appetite, risk attitude and risk criteria.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

In what context should risk appetite be considered in?

A

STOC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is a risk tolerance range?

A

A range of possible outcomes within the risk appetite.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the COSO ERM Definition of Risk Tolerance?

A

The acceptable level of variation relative to achievement of a specific objectives, and often is best measured in the same units used to measure the objective.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are stages in developing a risk appetite statement?

A
  1. Identify stakeholders and their expectations.
  2. Define company wide risk exposure through STOC set in risk register.
  3. Establish the desired level of risk exposure that provides a risk appetite statement.
  4. Define the range of acceptable volatility and or uncertainty around each of the types of risk to develop a risk tolerance.
  5. Reconcile the risk appetite and tolerances with the current level of risk exposure and plan actions to bring exposure in line with appetite.
  6. Formalise the risk appetite statement and communicate it to stakeholders to implement.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is EM3

A

Embrace - Opportunity Risk - Strategy
Manage - Uncertainty Risk - Tactics
Mitigate - Hazard Risk - Operations
Minimise - Compliance Risk - Compliance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly