![全面風(fēng)險管理框架英文課件_第1頁](http://file4.renrendoc.com/view/f5a28e9cf15d137fe28444199afb4cf8/f5a28e9cf15d137fe28444199afb4cf81.gif)
![全面風(fēng)險管理框架英文課件_第2頁](http://file4.renrendoc.com/view/f5a28e9cf15d137fe28444199afb4cf8/f5a28e9cf15d137fe28444199afb4cf82.gif)
![全面風(fēng)險管理框架英文課件_第3頁](http://file4.renrendoc.com/view/f5a28e9cf15d137fe28444199afb4cf8/f5a28e9cf15d137fe28444199afb4cf83.gif)
![全面風(fēng)險管理框架英文課件_第4頁](http://file4.renrendoc.com/view/f5a28e9cf15d137fe28444199afb4cf8/f5a28e9cf15d137fe28444199afb4cf84.gif)
![全面風(fēng)險管理框架英文課件_第5頁](http://file4.renrendoc.com/view/f5a28e9cf15d137fe28444199afb4cf8/f5a28e9cf15d137fe28444199afb4cf85.gif)
版權(quán)說明:本文檔由用戶提供并上傳,收益歸屬內(nèi)容提供方,若內(nèi)容存在侵權(quán),請進(jìn)行舉報或認(rèn)領(lǐng)
文檔簡介
ApplyingCOSO’s
EnterpriseRiskManagement—IntegratedFrameworkSeptember29,2004ApplyingCOSO’s
EnterpriseRis1Today’sorganizationsareconcernedabout:RiskManagementGovernanceControlAssurance(andConsulting)Today’sorganizationsareconc2ERMDefined:“…aprocess,effectedbyanentity'sboardofdirectors,managementandotherpersonnel,appliedinstrategysettingandacrosstheenterprise,designedtoidentifypotentialeventsthatmayaffecttheentity,andmanageriskstobewithinitsriskappetite,toprovidereasonableassuranceregardingtheachievementofentityobjectives.”Source:COSOEnterpriseRiskManagement–IntegratedFramework.2004.COSO.ERMDefined:“…aprocess,effe3WhyERMIsImportantUnderlyingprinciples:
Everyentity,whetherfor-profit
ornot,existstorealizevaluefor
itsstakeholders.Valueiscreated,preserved,orerodedbymanagementdecisionsinallactivities,fromsettingstrategytooperatingtheenterpriseday-to-day.WhyERMIsImportantUnderlyin4WhyERMIsImportantERMsupportsvaluecreationbyenablingmanagementto:
Dealeffectivelywithpotentialfutureeventsthatcreateuncertainty.Respondinamannerthatreducesthelikelihoodofdownsideoutcomesandincreasestheupside.
WhyERMIsImportantERMsuppo5ThisCOSOERMframeworkdefinesessentialcomponents,suggestsacommonlanguage,andprovidescleardirectionandguidanceforenterpriseriskmanagement.EnterpriseRiskManagement—IntegratedFrameworkThisCOSOERMframeworkdefine6TheERMFrameworkEntityobjectivescanbeviewedinthecontextoffourcategories:
StrategicOperationsReportingComplianceTheERMFrameworkEntityobject7TheERMFrameworkERMconsidersactivitiesatalllevelsoftheorganization:Enterprise-levelDivisionor subsidiaryBusinessunit processesTheERMFrameworkERMconsiders8Enterpriseriskmanagement
requiresanentitytotakeaportfolioviewofrisk.
TheERMFrameworkEnterpriseriskmanagement
req9Managementconsidershow
individualrisksinterrelate.Managementdevelopsaportfolioviewfromtwoperspectives:-Businessunitlevel-EntitylevelTheERMFrameworkManagementconsidershow
indi10Theeightcomponentsoftheframeworkareinterrelated…TheERMFrameworkTheeightcomponentsTheERMFr11InternalEnvironmentEstablishesaphilosophyregardingriskmanagement.Itrecognizesthatunexpectedaswellasexpectedeventsmayoccur.Establishestheentity’sriskculture.Considersallotheraspectsofhowtheorganization’sactionsmayaffectitsriskculture.
InternalEnvironmentEstablishe12ObjectiveSettingIsappliedwhenmanagementconsidersrisksstrategyinthesettingofobjectives.Formstheriskappetiteoftheentity—ahigh-levelviewofhowmuchriskmanagementandtheboardarewillingtoaccept.Risktolerance,theacceptablelevelofvariationaroundobjectives,isalignedwithriskappetite.
ObjectiveSettingIsappliedwh13EventIdentificationDifferentiatesrisksandopportunities.Eventsthatmayhaveanegativeimpactrepresentrisks.Eventsthatmayhaveapositiveimpactrepresentnaturaloffsets(opportunities),whichmanagementchannelsbacktostrategysetting.
EventIdentificationDifferenti14EventIdentificationInvolvesidentifyingthoseincidents,occurringinternallyorexternally,thatcouldaffectstrategyandachievementofobjectives.Addresseshowinternalandexternalfactorscombineandinteracttoinfluencetheriskprofile.
EventIdentificationInvolvesi15RiskAssessmentAllowsanentitytounderstandtheextenttowhichpotentialeventsmightimpactobjectives.Assessesrisksfromtwoperspectives: -Likelihood -Impact
Isusedtoassessrisksandisnormallyalsousedtomeasuretherelatedobjectives.RiskAssessmentAllowsanentit16RiskAssessmentEmploysacombinationofbothqualitativeandquantitativeriskassessmentmethodologies.Relatestimehorizonstoobjectivehorizons.Assessesriskonbothaninherentandaresidualbasis.
RiskAssessmentEmploysacombi17RiskResponseIdentifiesandevaluatespossibleresponsestorisk.Evaluatesoptionsinrelationtoentity’sriskappetite,costvs.benefitofpotentialriskresponses,anddegreetowhicharesponsewillreduceimpactand/orlikelihood.Selectsandexecutesresponsebasedonevaluationoftheportfolioofrisksandresponses.RiskResponseIdentifiesandev18ControlActivitiesPoliciesandproceduresthathelpensurethattheriskresponses,aswellasotherentitydirectives,arecarriedout.Occurthroughouttheorganization,atalllevelsandinallfunctions.Includeapplicationandgeneralinformationtechnologycontrols.ControlActivitiesPoliciesand19Managementidentifies,captures,andcommunicatespertinentinformationinaformandtimeframethatenablespeopletocarryouttheirresponsibilities.
Communicationoccursinabroadersense,flowingdown,across,andup
theorganization.
Information&CommunicationManagementidentifies,capture20MonitoringEffectivenessoftheotherERMcomponentsismonitoredthrough:
Ongoingmonitoringactivities.
Separateevaluations.
Acombinationofthetwo.MonitoringEffectivenessofthe21InternalControlAstrongsystemofinternalcontrolisessentialtoeffectiveenterpriseriskmanagement.
InternalControlAstrongsyste22Expandsandelaboratesonelements
ofinternalcontrolassetoutinCOSO’s
“controlframework.”
Includesobjectivesettingasaseparatecomponent.Objectivesarea“prerequisite”forinternalcontrol.Expandsthecontrolframework’s“FinancialReporting”and“RiskAssessment.”RelationshiptoInternalControl—IntegratedFrameworkExpandsandelaboratesonelem23ERMRoles&ResponsibilitiesManagement
Theboardofdirectors
Riskofficers
InternalauditorsERMRoles&ResponsibilitiesMa24InternalAuditorsPlayanimportantroleinmonitoringERM,butdoNOThaveprimaryresponsibilityforitsimplementation
ormaintenance.
Assistmanagementandtheboardorauditcommitteeintheprocessby: -Monitoring -Evaluating -Examining -Reporting-Recommendingimprovements
InternalAuditorsPlayanimpor25Visittheguidancesectionof
TheIIA’sWebsiteforTheIIA’s
positionpaper,“RoleofInternalAuditing’sinEnterpriseRiskManagement.”InternalAuditorsVisittheguidancesectionof262010.A1–Theinternalauditactivity’splanofengagementsshouldbebasedonariskassessment,undertakenatleastannually.
2120.A1–Basedontheresultsoftheriskassessment,theinternalauditactivityshouldevaluatetheadequacyandeffectivenessofcontrolsencompassingtheorganization’sgovernance,operations,andinformationsystems.2210.A1–Whenplanningtheengagement,theinternalauditorshouldidentifyandassessrisksrelevanttotheactivityunderreview.Theengagementobjectivesshouldreflecttheresultsoftheriskassessment.Standards2010.A1–Theinternalaudita27OrganizationaldesignofbusinessEstablishinganERMorganizationPerformingriskassessmentsDeterminingoverallriskappetiteIdentifyingriskresponsesCommunicationofriskresultsMonitoringOversight&periodicreview
bymanagementKeyImplementationFactorsOrganizationaldesignofbusin28OrganizationalDesignStrategiesofthebusinessKeybusinessobjectivesRelatedobjectivesthatcascade
downtheorganizationfromkeybusinessobjectivesAssignmentofresponsibilitiestoorganizationalelementsandleaders(linkage)OrganizationalDesignStrategie29Example:LinkageMission–Toprovidehigh-qualityaccessibleandaffordablecommunity-basedhealthcare
StrategicObjective–Tobethefirst
orsecondlargest,full-servicehealth
careproviderinmid-sizemetropolitanmarkets
RelatedObjective–Toinitiate
dialoguewithleadershipof10topunder-performinghospitalsandnegotiateagreementswithtwothisyearExample:LinkageMission–Top30EstablishERMDetermineariskphilosophy
Surveyriskculture
Considerorganizationalintegrity
andethicalvaluesDeciderolesandresponsibilitiesEstablishERMDeterminearisk31Example:ERMOrganizationERM
DirectorVicePresidentand
ChiefRiskOfficerCorporateCredit
RiskManagerInsurance
RiskManagerERM
ManagerERM
ManagerStaffStaffStaffFES
Commodity
RiskMg.DirectorExample:ERMOrganizationERM
32Riskassessmentistheidentificationandanalysisofriskstotheachievementofbusinessobjectives.Itformsabasisfordetermininghowrisksshouldbemanaged.AssessRiskRiskassessmentistheidentif33EnvironmentalRisksCapitalAvailabilityRegulatory,Political,andLegalFinancialMarketsandShareholderRelationsProcessRisksOperationsRiskEmpowermentRiskInformationProcessing/TechnologyRiskIntegrityRiskFinancialRiskInformationforDecisionMakingOperationalRiskFinancialRiskStrategicRiskExample:RiskModelEnvironmentalRisksExample:Ri34Source:BusinessRiskAssessment.1998–TheInstituteofInternalAuditorsControlItShareorTransferItDiversifyorAvoidItRiskManagementProcessLevelActivityLevelEntityLevelRiskMonitoring
IdentificationMeasurementPrioritizationRiskAssessmentRiskAnalysis
Source:BusinessRiskAssessm35DETERMINERISKAPPETITERiskappetiteistheamountofrisk—onabroadlevel—anentityiswillingtoacceptinpursuitofvalue.Usequantitativeorqualitativeterms(e.g.earningsatriskvs.reputationrisk),andconsiderrisktolerance(rangeofacceptablevariation).DETERMINERISKAPPETITERiskap36Keyquestions:Whatriskswilltheorganizationnotaccept?
(e.g.environmentalorqualitycompromises)
Whatriskswilltheorganizationtakeonnewinitiatives?
(e.g.newproductlines)
Whatriskswilltheorganizationacceptforcompetingobjectives?
(e.g.grossprofitvs.marketshare?)DETERMINERISKAPPETITEKeyquestions:DETERMINERISKA37Quantificationofriskexposure
Optionsavailable: -Accept=monitor -Avoid=eliminate(getoutofsituation) -Reduce=institutecontrols -Share=partnerwithsomeone
(e.g.insurance)
Residualrisk(unmitigatedrisk–e.g.shrinkage)IDENTIFYRISKRESPONSESQuantificationofriskexposur38Impactvs.ProbabilityControlShareMitigate&ControlAcceptHighRiskMediumRiskMediumRiskLowRiskLowHighHighIMPACTPROBABILITYImpactvs.ProbabilityControlS39LowHighHighIMPACTPROBABILITYHighRiskMediumRiskMediumRiskLowRiskExample:CallCenterRiskAssessmentLossofphonesLossofcomputersCreditriskCustomerhasalongwaitCustomercan’tgetthroughCustomercan’tgetanswersEntryerrorsEquipmentobsolescenceRepeatcallsforsameproblemFraudLosttransactionsEmployeemoraleLowHighHighIPROBABILITYHighRi40Control
Risk
Control
Objective
ActivityCompleteness
Material Accrualof
transaction openliabilities
notrecorded Invoicesaccrued
afterclosing Issue:InvoicesgotofieldandAPisnotawareofliability.Example:AccountsPayableProcessControl Risk Control
Objecti41Dashboardofrisksandrelatedresponses
(visualstatusofwherekeyrisksstandrelativetorisktolerances)
Flowchartsofprocesseswithkeycontrolsnoted
Narrativesofbusinessobjectiveslinkedtooperationalrisksandresponses
Listofkeyriskstobemonitoredorused
ManagementunderstandingofkeybusinessriskresponsibilityandcommunicationofassignmentsCommunicateResultsDashboardofrisksandrelated42MonitorCollectanddisplayinformation
Performanalysis
-Risksarebeingproperlyaddressed -ControlsareworkingtomitigaterisksMonitorCollectanddisplayinf43Accountabilityforrisks
Ownership
Updates -Changesinbusinessobjectives -Changesinsystems -ChangesinprocessesManagementOversight&PeriodicReview
Accountabilityforrisks
Manag44Internalauditorscanaddvalueby:Reviewingcriticalcontrolsystemsandriskmanagementprocesses.Performinganeffectivenessreviewofmanagement'sriskassessmentsandtheinternalcontrols.Providingadviceinthedesignandimprovementofcontrolsystemsandriskmitigationstrategies.Internalauditorscanaddvalu45Implementingarisk-basedapproachtoplanningandexecutingtheinternalauditprocess.Ensuringthatinternalauditing’sresourcesaredirectedatthoseareasmostimportanttotheorganization.Challengingthebasisofmanagement’sriskassessmentsandevaluatingtheadequacyandeffectivenessofrisktreatmentstrategies.
Internalauditorscanaddvalueby:Implementingarisk-basedappr46FacilitatingERMworkshops.Definingrisktoleranceswherenonehavebeenidentified,basedoninternalauditing'sexperience,judgment,andconsultationwithmanagement.Internalauditorscanaddvalueby:FacilitatingERMworkshops.Int47FormoreinformationOnCOSO’sEnterpriseRiskManagement—IntegratedFramework,visitorFormoreinformationOnCOSO’s48ThispresentationwasproducedbyApplyingCOSO’s
EnterpriseRiskManagement—IntegratedFrameworkThispresentationApplyingCOS49ApplyingCOSO’s
EnterpriseRiskManagement—IntegratedFrameworkSeptember29,2004ApplyingCOSO’s
EnterpriseRis50Today’sorganizationsareconcernedabout:RiskManagementGovernanceControlAssurance(andConsulting)Today’sorganizationsareconc51ERMDefined:“…aprocess,effectedbyanentity'sboardofdirectors,managementandotherpersonnel,appliedinstrategysettingandacrosstheenterprise,designedtoidentifypotentialeventsthatmayaffecttheentity,andmanageriskstobewithinitsriskappetite,toprovidereasonableassuranceregardingtheachievementofentityobjectives.”Source:COSOEnterpriseRiskManagement–IntegratedFramework.2004.COSO.ERMDefined:“…aprocess,effe52WhyERMIsImportantUnderlyingprinciples:
Everyentity,whetherfor-profit
ornot,existstorealizevaluefor
itsstakeholders.Valueiscreated,preserved,orerodedbymanagementdecisionsinallactivities,fromsettingstrategytooperatingtheenterpriseday-to-day.WhyERMIsImportantUnderlyin53WhyERMIsImportantERMsupportsvaluecreationbyenablingmanagementto:
Dealeffectivelywithpotentialfutureeventsthatcreateuncertainty.Respondinamannerthatreducesthelikelihoodofdownsideoutcomesandincreasestheupside.
WhyERMIsImportantERMsuppo54ThisCOSOERMframeworkdefinesessentialcomponents,suggestsacommonlanguage,andprovidescleardirectionandguidanceforenterpriseriskmanagement.EnterpriseRiskManagement—IntegratedFrameworkThisCOSOERMframeworkdefine55TheERMFrameworkEntityobjectivescanbeviewedinthecontextoffourcategories:
StrategicOperationsReportingComplianceTheERMFrameworkEntityobject56TheERMFrameworkERMconsidersactivitiesatalllevelsoftheorganization:Enterprise-levelDivisionor subsidiaryBusinessunit processesTheERMFrameworkERMconsiders57Enterpriseriskmanagement
requiresanentitytotakeaportfolioviewofrisk.
TheERMFrameworkEnterpriseriskmanagement
req58Managementconsidershow
individualrisksinterrelate.Managementdevelopsaportfolioviewfromtwoperspectives:-Businessunitlevel-EntitylevelTheERMFrameworkManagementconsidershow
indi59Theeightcomponentsoftheframeworkareinterrelated…TheERMFrameworkTheeightcomponentsTheERMFr60InternalEnvironmentEstablishesaphilosophyregardingriskmanagement.Itrecognizesthatunexpectedaswellasexpectedeventsmayoccur.Establishestheentity’sriskculture.Considersallotheraspectsofhowtheorganization’sactionsmayaffectitsriskculture.
InternalEnvironmentEstablishe61ObjectiveSettingIsappliedwhenmanagementconsidersrisksstrategyinthesettingofobjectives.Formstheriskappetiteoftheentity—ahigh-levelviewofhowmuchriskmanagementandtheboardarewillingtoaccept.Risktolerance,theacceptablelevelofvariationaroundobjectives,isalignedwithriskappetite.
ObjectiveSettingIsappliedwh62EventIdentificationDifferentiatesrisksandopportunities.Eventsthatmayhaveanegativeimpactrepresentrisks.Eventsthatmayhaveapositiveimpactrepresentnaturaloffsets(opportunities),whichmanagementchannelsbacktostrategysetting.
EventIdentificationDifferenti63EventIdentificationInvolvesidentifyingthoseincidents,occurringinternallyorexternally,thatcouldaffectstrategyandachievementofobjectives.Addresseshowinternalandexternalfactorscombineandinteracttoinfluencetheriskprofile.
EventIdentificationInvolvesi64RiskAssessmentAllowsanentitytounderstandtheextenttowhichpotentialeventsmightimpactobjectives.Assessesrisksfromtwoperspectives: -Likelihood -Impact
Isusedtoassessrisksandisnormallyalsousedtomeasuretherelatedobjectives.RiskAssessmentAllowsanentit65RiskAssessmentEmploysacombinationofbothqualitativeandquantitativeriskassessmentmethodologies.Relatestimehorizonstoobjectivehorizons.Assessesriskonbothaninherentandaresidualbasis.
RiskAssessmentEmploysacombi66RiskResponseIdentifiesandevaluatespossibleresponsestorisk.Evaluatesoptionsinrelationtoentity’sriskappetite,costvs.benefitofpotentialriskresponses,anddegreetowhicharesponsewillreduceimpactand/orlikelihood.Selectsandexecutesresponsebasedonevaluationoftheportfolioofrisksandresponses.RiskResponseIdentifiesandev67ControlActivitiesPoliciesandproceduresthathelpensurethattheriskresponses,aswellasotherentitydirectives,arecarriedout.Occurthroughouttheorganization,atalllevelsandinallfunctions.Includeapplicationandgeneralinformationtechnologycontrols.ControlActivitiesPoliciesand68Managementidentifies,captures,andcommunicatespertinentinformationinaformandtimeframethatenablespeopletocarryouttheirresponsibilities.
Communicationoccursinabroadersense,flowingdown,across,andup
theorganization.
Information&CommunicationManagementidentifies,capture69MonitoringEffectivenessoftheotherERMcomponentsismonitoredthrough:
Ongoingmonitoringactivities.
Separateevaluations.
Acombinationofthetwo.MonitoringEffectivenessofthe70InternalControlAstrongsystemofinternalcontrolisessentialtoeffectiveenterpriseriskmanagement.
InternalControlAstrongsyste71Expandsandelaboratesonelements
ofinternalcontrolassetoutinCOSO’s
“controlframework.”
Includesobjectivesettingasaseparatecomponent.Objectivesarea“prerequisite”forinternalcontrol.Expandsthecontrolframework’s“FinancialReporting”and“RiskAssessment.”RelationshiptoInternalControl—IntegratedFrameworkExpandsandelaboratesonelem72ERMRoles&ResponsibilitiesManagement
Theboardofdirectors
Riskofficers
InternalauditorsERMRoles&ResponsibilitiesMa73InternalAuditorsPlayanimportantroleinmonitoringERM,butdoNOThaveprimaryresponsibilityforitsimplementation
ormaintenance.
Assistmanagementandtheboardorauditcommitteeintheprocessby: -Monitoring -Evaluating -Examining -Reporting-Recommendingimprovements
InternalAuditorsPlayanimpor74Visittheguidancesectionof
TheIIA’sWebsiteforTheIIA’s
positionpaper,“RoleofInternalAuditing’sinEnterpriseRiskManagement.”InternalAuditorsVisittheguidancesectionof752010.A1–Theinternalauditactivity’splanofengagementsshouldbebasedonariskassessment,undertakenatleastannually.
2120.A1–Basedontheresultsoftheriskassessment,theinternalauditactivityshouldevaluatetheadequacyandeffectivenessofcontrolsencompassingtheorganization’sgovernance,operations,andinformationsystems.2210.A1–Whenplanningtheengagement,theinternalauditorshouldidentifyandassessrisksrelevanttotheactivityunderreview.Theengagementobjectivesshouldreflecttheresultsoftheriskassessment.Standards2010.A1–Theinternalaudita76OrganizationaldesignofbusinessEstablishinganERMorganizationPerformingriskassessmentsDeterminingoverallriskappetiteIdentifyingriskresponsesCommunicationofriskresultsMonitoringOversight&periodicreview
bymanagementKeyImplementationFactorsOrganizationaldesignofbusin77OrganizationalDesignStrategiesofthebusinessKeybusinessobjectivesRelatedobjectivesthatcascade
downtheorganizationfromkeybusinessobjectivesAssignmentofresponsibilitiestoorganizationalelementsandleaders(linkage)OrganizationalDesignStrategie78Example:LinkageMission–Toprovidehigh-qualityaccessibleandaffordablecommunity-basedhealthcare
StrategicObjective–Tobethefirst
orsecondlargest,full-servicehealth
careproviderinmid-sizemetropolitanmarkets
RelatedObjective–Toinitiate
dialoguewithleadershipof10topunder-performinghospitalsandnegotiateagreementswithtwothisyearExample:LinkageMission–Top79EstablishERMDetermineariskphilosophy
Surveyriskculture
Considerorganizationalintegrity
andethicalvaluesDeciderolesandresponsibilitiesEstablishERMDeterminearisk80Example:ERMOrganizationERM
DirectorVicePresidentand
ChiefRiskOfficerCorporateCredit
RiskManagerInsurance
RiskManagerERM
ManagerERM
ManagerStaffStaffStaffFES
Commodity
RiskMg.DirectorExample:ERMOrganizationERM
81Riskassessmentistheidentificationandanalysisofriskstotheachievementofbusinessobjectives.Itformsabasisfordetermininghowrisksshouldbemanaged.AssessRiskRiskassessmentistheidentif82EnvironmentalRisksCapitalAvailabilityRegulatory,Political,andLegalFinancialMarketsandShareholderRelationsProcessRisksOperationsRiskEmpowermentRiskInformationProcessing/TechnologyRiskIntegrityRiskFinancialRiskInformationforDecisionMakingOperationalRiskFinancialRiskStrategicRiskExample:RiskModelEnvironmentalRisksExample:Ri83Source:BusinessRiskAssessment.1998–TheInstituteofInternalAuditorsControlItShareorTransferItDiversifyorAvoidItRiskManagementProcessLevelActivityLevelEntityLevelRiskMonitoring
IdentificationMeasurementPrioritizationRiskAssessmentRiskAnalysis
Source:BusinessRiskAssessm84DETERMINERISKAPPETITERiskappetiteistheamountofrisk—onabroadlevel—anentityiswillingtoacceptinpursuitofvalue.Usequantitativeorqualitativeterms(e.g.earningsatriskvs.reputationrisk),andconsiderrisktolerance(rangeofacceptablevariation).DETERMINERISKAPPETITERiskap85Keyquestions:Whatriskswilltheorganizationnotaccept?
(e.g.environmentalorqualitycompromises)
Whatriskswilltheorganizationtakeonnewinitiatives?
(e.g.newproductlines)
Whatriskswilltheorganizationacceptforcompetingobjectives?
(e.g.grossprofitvs.marketshare?)DETERMINERISKAPPETITEKeyquestions:DETERMINERISKA86Quantificationofriskexposure
Optionsavailable: -Accept=monitor -Avoid=eliminate(getoutofsituation) -Reduce=institutecontrols -Share=partnerwithsomeone
(e.g.insurance)
Residualrisk(unmitigatedrisk–e.g.shrinkage)IDENTIFYRISKRESPONSESQuantificationofriskexposur87Impactvs.ProbabilityControlShareMitigate&ControlAcceptHighRiskMediumRiskMediumRiskLowRiskLowHighHighIMPACTPROBABILITYImpactvs.ProbabilityControlS88LowHighHighIMPACTPROBABILITYHighRiskMediumRiskMediumRisk
溫馨提示
- 1. 本站所有資源如無特殊說明,都需要本地電腦安裝OFFICE2007和PDF閱讀器。圖紙軟件為CAD,CAXA,PROE,UG,SolidWorks等.壓縮文件請下載最新的WinRAR軟件解壓。
- 2. 本站的文檔不包含任何第三方提供的附件圖紙等,如果需要附件,請聯(lián)系上傳者。文件的所有權(quán)益歸上傳用戶所有。
- 3. 本站RAR壓縮包中若帶圖紙,網(wǎng)頁內(nèi)容里面會有圖紙預(yù)覽,若沒有圖紙預(yù)覽就沒有圖紙。
- 4. 未經(jīng)權(quán)益所有人同意不得將文件中的內(nèi)容挪作商業(yè)或盈利用途。
- 5. 人人文庫網(wǎng)僅提供信息存儲空間,僅對用戶上傳內(nèi)容的表現(xiàn)方式做保護(hù)處理,對用戶上傳分享的文檔內(nèi)容本身不做任何修改或編輯,并不能對任何下載內(nèi)容負(fù)責(zé)。
- 6. 下載文件中如有侵權(quán)或不適當(dāng)內(nèi)容,請與我們聯(lián)系,我們立即糾正。
- 7. 本站不保證下載資源的準(zhǔn)確性、安全性和完整性, 同時也不承擔(dān)用戶因使用這些下載資源對自己和他人造成任何形式的傷害或損失。
最新文檔
- 生物質(zhì)能源技術(shù)科技創(chuàng)新的驅(qū)動力
- 電子商務(wù)環(huán)境下企業(yè)采購模式的創(chuàng)新路徑
- 知識版權(quán)對新興產(chǎn)業(yè)的影響與機(jī)遇
- 2025年卡普欣行業(yè)深度研究分析報告-20241226-181357
- 2025年智能型后備式UPS行業(yè)深度研究分析報告-20241226-172925
- 《分?jǐn)?shù)混合運(yùn)算(三)》(教案)2024-2025學(xué)年數(shù)學(xué)六年級上冊
- 2025年中國齒輪馬達(dá)行業(yè)市場發(fā)展監(jiān)測及投資潛力預(yù)測報告
- 皮膚美容教育與培訓(xùn)提升專業(yè)技能與知識
- 現(xiàn)代物流技術(shù)與醫(yī)療物資管理
- 2025年金剛木珠子龍棕藤杖行業(yè)深度研究分析報告
- 2025年湖南中醫(yī)藥高等專科學(xué)校高職單招職業(yè)技能測試近5年??及鎱⒖碱}庫含答案解析
- 2024年美發(fā)師(高級技師)職業(yè)鑒定考試題庫(含答案)
- 寧波2025年浙江寧波市鄞州區(qū)衛(wèi)健系統(tǒng)其他事業(yè)單位招聘事業(yè)編制46人筆試歷年參考題庫附帶答案詳解
- 【七上HK數(shù)學(xué)】安徽省蚌埠市固鎮(zhèn)縣2024-2025學(xué)年七年級上學(xué)期1月期末試卷數(shù)學(xué)試題
- 電子物料基礎(chǔ)知識
- 2025屆江蘇省南京市鹽城市高三一??荚囌Z文試題 課件
- 廣西出版?zhèn)髅郊瘓F(tuán)有限公司招聘筆試沖刺題2025
- 江蘇省南京市2024年中考英語試題(含解析)
- 外科圍手術(shù)期處理(外科學(xué)課件)
- 電力安全工作規(guī)程考試試題題庫
- 宮頸癌診療指南要點(diǎn)
評論
0/150
提交評論