Processes
Does the organisation have effective risk management
processes to support the business?
This section is concerned with:
- Embedding risk management in organisational management
processes
- Identification and evaluation criteria
- Risk controls
- Action planning and reporting
- Use of risk management in strategic and financial planning,
policy making and review, performance, and project and contract
management
- Use of risk management in decision making
- Risk management integration into key business processes
The questions in this section deal with:
- Risk management process overview
- Links to business / services processes
- Risk context
- Risk identification
- Risk assessment
- Risk response
- Risk reporting and review
- Investigation and root cause analysis
- Service continuity management
For this section you should have evidence to demonstrate the
extent to which risk management contributes to the success of the
following business processes in your organisation:
- Policy making
- Performance management
- Governance arrangements
- Financial management;
and the extent to which:
- Risk processes support a lessons learnt culture
- There is an effective business continuity framework in place to
support service delivery
Click on the image to view a larger
version of the table
Copyright Alarm 2009