Risk Mitigation Flashcards

1
Q

what is risk mitigation?

A

involves implementing measures to reduce the likelihood and impact of identified risks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

what is the importance of risk mitigation?

A
  • protects the organisation from potential losses
  • ensures business continuity
  • supports regulatory compliance
  • builds stakeholder confidence
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

what are the different risk mitigation strategies?

A
  • avoidance (completely removing risk averse activities)
  • reduction
  • sharing of risk
  • risk acceptance
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

what are the different types of preventative controls for risk mitigation?

A
  • preventative (segregation, access controls, authorization levels)
  • detective (exception reports, file reconciliations, intrusion detection systems)
  • directive (procedures and guidance manuals, induction training, team supervision)
  • corrective controls (complaints process, communications and compensation)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

what are the steps of control testing?

A
  • self-certification/inquiry
  • examination
  • observation
  • reperformance
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

what is risk transfer?

A

moving the consequences or causes of risk to another party. Includes insurance, outsourcing etc.,

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

what are the steps to developing a risk mitigation plan?

A
  • risk description
  • mitigation and measures
  • responsibilities around the risk
  • resources required to implement the plan
  • timeline for implementation
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

what are the best practices for implementation of a risk mitigation plan?

A
  • prioritisation
  • resource allocation
  • training and awareness
  • documentation
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

what are the effective monitoring and review practices?

A
  • continuous monitoring
  • regular reviews of the measures
  • feedback loops
  • adjustment and updates as changes take place
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

what are the benefits of effective risk mitigation?

A
  • reduced risk exposure
  • enhanced resilience
  • regulatory compliance
  • increased stakeholder confidence
  • operational continuity
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

what is root cause analysis?

A

systematic process used to identify the underlying causes of problems of incidents - helps pinpoint and issue occurring and helps prevent

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

what are the steps of root cause analysis?

A
  • identify problem
  • collection of data
  • analysis of data
  • development of solutions
  • monitoring of effectiveness (of solutions)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

why is root cause analysis important?

A
  • identifies the true cause of problems
  • helps develop long-term solutions
  • recurrence reduction
  • enhances operational efficiency
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

what is the purpose of an action plan?

A

designed to reduce risk levels of improve process/controls following incidents such as near misses or anything that exceeds risk appetites

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

what are the steps in the development of an action plan?

A
  • problem statement
  • setting of objectives
  • actions to address the root cause
  • assigning of responsibilities
  • identification and allocation of resources
  • timeline establishment
  • evaluation of plan
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

what are conduct and culture?

A

conduct is the behavior of individuals within an organisation and how they adhere to rules and standards. culture encompasses the shared values, beliefs and norms that influence how employees think and interact within an organisation.

17
Q

why are conduct and culture important?

A
  • integrity and ethics are promoted
  • risk awareness
  • stakeholder trust
  • sustainable success
18
Q

how is a strong risk culture built?

A
  • commitment from leadership
  • clear values and expectations
  • training and awareness
  • open communication
  • accountability
19
Q

what is conduct risk?

A

risk of inappropriate, unethical, or unlawful behavior by
employees

20
Q

what are the methods for assessing conduct risk?

A

surveys and questionnaires
- incident reporting systems
- audits and reviews
- behavioral analytics

21
Q

what are the strategies for promoting ethical conduct?

A
  • having a code of conduct
  • leadership by example
  • reward and recognition
  • whistleblower protection
  • regular training
22
Q

what are the tools for measuring culture and conduct?

A
  • culture surveys
  • focus groups
  • performance metrics (related to conduct incidents, engagement and compliance)
  • exit interviews
  • 360 feedback