Processes

 

Does the organisation have effective risk management processes to support the business?

 

This section is concerned with:

  • Embedding risk management in organisational management processes
  • Identification and evaluation criteria
  • Risk controls
  • Action planning and reporting
  • Use of risk management in strategic and financial planning, policy making and review, performance, and project and contract management
  • Use of risk management in decision making
  • Risk management integration into key business processes

The questions in this section deal with:

  • Risk management process overview
  • Links to business / services processes
  • Risk context
  • Risk identification
  • Risk assessment
  • Risk response
  • Risk reporting and review
  • Investigation and root cause analysis
  • Service continuity management

For this section you should have evidence to demonstrate the extent to which risk management contributes to the success of the following business processes in your organisation:

  • Policy making
  • Performance management
  • Governance arrangements
  • Financial management;

and the extent to which:

  • Risk processes support a lessons learnt culture
  • There is an effective business continuity framework in place to support service delivery

Click on the image to view a larger version of the table

 

processes

 

Copyright Alarm 2009