Risk Types Flashcards
What is strategic risk?
Current and prospective risk to earnings and capital arising from changes in the business environment and from adverse business decisions, improper implementation of decisions or lack of responsiveness to changes in the business environment.
What forms can strategic risk take?
- Wrong strategy
2. Failure to implement strategy correctly
What is operational risk?
The risk of loss arising from processes, people, systems or external events.
What is financial risk?
The risk of loss arising from revenues not matching or exceeding costs.
What is gearing?
Aka leverage - ratio of firm’s debts to the value of its equity. A highly geared company can suffer if interest rates rise or if revenues fall too low to repay debts.
What is PESTLE analysis?
Analysis of external macro environment - political, economic, social, technical, legal, environmental.
What is business process analysis?
Analysing each high level business process and describing the internal processes and external factors which can influence those processes.
What is the formula for risk score?
Risk Score = Likelihood score x impact score
How may external risks be analysed?
- PESTLE analysis
- Business continuity/disaster recovery planning
- Business process analysis
How many internal risks be analysed?
- Structured brainstorming - SWOT analysis
- Industry best practice benchmarking
- Scenario analysis - stress testing, reverse stress testing
- Risk assessment workshops - what factors could impede attainment of business objectives.
- Discussions with external auditors
What is risk appetite?
The level of loss that a firm is willing to accept in its different businesses over a specified time horizon at a given level of confidence.
How might risk appetite be defined for quantifiable risks like credit or market risk?
- a monetary tolerance for direct financial loss
- specific risk measures such as credit or market value at risk (VaR) metrics.
For non quantifiable risks, how might a risk policy address these?
Non financial statements e.g. regarding disaster recovery in the event of loss of main premises, the firm can reopen within 8 hours
The firm has no appetite for reputation risk. All external communications need sign-off.
What is a group risk profile?
Current default risk tolerance and level of available risk capital.
With setting a risk tolerance, how might this occur?
Top down and bottom up approach