SlideShare a Scribd company logo
An introduction to
Risk Management
ISO31000:2009
1
ISO 31000:2009
Principles and
Guidelines
Guidelines	
  /	
  References
ISO 31010 -
Assessment
Technique
ISO Guide 73:2009 -
Vocabulary
2
Principle
for managing risk
a. Create value
b. Integral part of organisational
processes
c. Part of decision making
d. Explicitly addresses uncertainty
e. Systematic, structured and timely
f. Based on the best available
information
g. Tailored
h. Takes human and cultural factors
into account
i. Transparent and inclusive
j. Dynamic, iterative and responsive to
change
k. Facilitates continual improvement and
enhancement of the organisation
Framework

for managing risk

Process
for managing risk
ISO31000:2009
Risk Management Principles, Framework and Process
Mandate &
Commitment
Design of framework
for managing risk
Monitoring and
review of the
framework
Continual
improvement of the
framework
Implementing risk
management
Establishing the context
Risk assessment
Risk treatment
Communicationandconsultation
Monitoringandreview
Risk identification
Risk analysis
Risk evaluation
3
RISK	
  –	
  Defini,on	
  	
  
(ISO/IEC	
  Guide	
  73)
The	
  effect	
  of	
  uncertainty	
  on	
  objec6ves
• Outcome	
  if	
  
deficiency	
  
occurs
• Things	
  that	
  can	
  stop	
  
from	
  achieving	
  
objec:ve	
  
(deficiency)
• Aim;	
  target	
  
• Clarity	
  of	
  
objec6ves	
  
important	
  
4
Risk%Assessment%
Process'for'managing'risk'
Based'on'ISO'31000:2009'
Communica<on'&'Consulta<on'
Monitoring%&%review%
Establishing%the%context%
Risk'Iden<fica<on'
Risk'Analysis'
Risk'Evalua<on'
Risk%Treatment%
Risk
Management
Process
Methodology	
  /	
  
Framework

ISO	
  31000:2009
Risk
Management
Process
Establishing the context
Strategic / business objective
Internal environment (organisation
culture, processes, structure &
strategy, roles & accountability,
policies etc).
External environment (regulatory
requirement, stakeholder perceptions, social
& cultural, political, legal, economic,
technological etc).
Set the scope
Risk criteria
Risk Assessment
Risk Identification
Identify possible risk to the business objective / project.
Interview
Brainstorm
Checklist
ISO31010 Risk Assessment Technique
} Process flow
Ishikawa (Fishbone): Cause & Effect
Checklist
People have seen risk
occur, use people’s
experience.
Bowtie
Risk
Management
Process
Risk Assessment
Risk Analysis
Goal of Risk Analysis
How threatening the risk are
Weigh the risk
Risk trend & forecast
Qualitative
Analysis
Quantitative
Analysis
Likelihood &
Consequence Matrix
• Trend graph
• Pareto Principle
• Decision Tree
• Monte Carlo Simulation
April 2013
0
25
50
75
100
Northern Central Southern East Coast West Coast
Minor Modest Severe Major Catastrophic
Financial
Listenership
Downtime
Talent
Risk
Management
Process
Risk Assessment
Risk Evaluation
Likelihood
Consequence
Level of Risk
Almost
impossible
Rare
Possible
Likely
Certain / Almost
certain
Minor
(minimal)
Modest
(Moderate)
Severe
(Significant;
long
reaching
effect)
Major
(Critical)
Catastrophic
(Potential to
lead to
collapse)
Low Moderate Significant High
Qualitative
Analysis
+
Quantitative
Analysis
Risk
Management
Process
9
Risk Treatment
Risk Register
Current
control or
Strategy
adopted
Implementation
status
Business Plan
Risk
Management
Process
Strategies
Monitoring & Review
Certain/
Almost
certain
Likelihood!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
! ! !
Likely
!
!
!
!
!
! ! ! !
Possible
!
!
!
!
!
! ! ! !
Rare
!
!
!
!
!
! ! ! !
Almost
impossible
!
!
!
!
!
! ! ! !
!
!
!
!
Consequence
Minor (minimal) Modest
(moderate)
Severe
(Significant; long
reaching effect)
Major (Critical) Catastrophic
(Potential to
lead to collapse)
CONTROL RISK MATRIX
Risk
Management
Process
11
Minor Modest Severe Major Catastrophic
Financial
Audience
Share
Rating
Downtime >0.25%
>0.25 -
0.50%
>0.50 -
0.75%
>0.75 -
1%
More than 1%
People
Communication & Consultation
Risk
Management
Process
Risk / Treatment
Owner
Group
Management
Audit & Risk
Committee
(GMARC)
Email /
Meeting /
Discussion
/ Awareness
with Risk &
Treatment
Owner
Risk
Management
Committee
(RMC)
& Board of
Subsidiaries
12
Risk%Assessment%
Process'for'managing'risk'
Based'on'ISO'31000:2009'
Communica<on'&'Consulta<on'
Monitoring%&%review%
Establishing%the%context%
Risk'Iden<fica<on'
Risk'Analysis'
Risk'Evalua<on'
Risk%Treatment%
Risk
Management
Process
Methodology	
  /	
  
Framework

ISO	
  31000:2009
Likelihood
Consequence
Level of Risk
Almost
impossible
Rare
Possible
Likely
Certain / Almost
certain
Minor
(minimal)
Modest
(Moderate)
Severe
(Significant;
long
reaching
effect)
Major
(Critical)
Catastrophic
(Potential to
lead to
collapse)
Feasibility
Benefit
Level of Opportunity
Very Hard
Hard
Normal
Easy
Very easy
Very Low Low Medium High Very High
Risk vs Opportunity
14
Benefits of Risk Management
Increase the likelihood of achieving objectives;
Encourage proactive management;
Be aware of the need to identify and treat risk throughout the
organisation;
Improve the identification of opportunities and threats;
Achieve compatible risk management practices between organisation
and nation;
Improve governance;
Improve stakeholder confidence and trust;
Established a reliable basis for decision making planning;
Improve control;
Effectively allocate and use resources for risk treatment;
Improve operational effectiveness and efficiency;
Enhance health and safety performance and environmental
protection;
Improve loss prevention and incident management;
Minimize losses;
Improve organisational learning; and
Improve organisational resilience.
Tools%and%Techniques%
Risk%Assessment%Process%
Risk%Iden7fica7on%
Risk%Analysis%
Risk%
evalua7on%Consequence% Probability%
Level%of%
risk%
1% Brainstorming% !!% B% B% B% B%
2% Structured%or%semiBstructured%interviews%% !!% B% B% B% B%
3% Delphi% !!% B% B% B% B%
4% CheckBlists% !!% B% B% B% B%
5% Primary%hazard%analysis% !!% B% B% B% B%
6% Hazard%and%operability%studies%(HAZOP)% !!% !!% !% !% !%
7% Hazard%Analysis%and%Cri7cal%Control%Point%(HACCP)% !!% !!% B% B% !!%
8% Environmental%risk%assessment% !!% !!% !!% !!% !!%
9% Structure%%<%What%if?%>%(SWIFT)% !!% !!% !!% !!% !!%
10% Scenario%analysis% !!% !!% !% !% !%
11% Business%impact%analysis% !% !!% !% !% !%
12% Root%cause%analysis% B% !!% !!% !!% !!%
13% Failure%mode%effect%analysis% !!% !!% !!% !!% !!%
14% Fault%tree%analysis% !% B% !!% !% !%
15% Event%tree%analysis% !% !!% !% !% B%
16% Cause%and%consequence%%analysis% !% !!% !!% !% !%
17% CauseBandBeffect%analysis% !% !!% !!% !% !%
18% Layer%protec7on%analysis%(LOPA)% !% !!% !% !% B%
19% Decision%tree% B% !!% !!% !% !%
20% Human%reliability%analysis% !!% !!% !!% !!% !%
21% Bow%7e%analysis% B% !% !!% !!% !%
22% Reliability%centered%analysis% !!% !!% !!% !!% !!%
23% Sneak%circuit%analysis% !% B% B% B% B%
24% Markov%analysis% !% !!% B% B% B%
25% Monte%Carlo%simula7on% B% B% B% B% !!%
26% Bayesian%sta7s7cs%and%Bayes%Nets% B% !!% B% B% !!%
27% FN%curves% !% !!% !!% !% !!%
28% Risk%indices% !% !!% !!% !% !!%
29% Consequence/probability%matrix% !!% !!% !!% !!% !%
30% Cost/benefit%analysis% !% !!% !% !% !%
31% Mul7Bcriteria%decision%analysis%(MCDA)% %% %% %% %% %%
%% !!%=%Strongly%applicable%
!%%%%=%Applicable%
B  =%Not%applicable%%
Risk	
  Assessment	
  Techniques	
  
ISO31010
Risk
Management
Reports
1. Risk Profile Analysis
2. Risk Register
17
18
1. Risk Profile
Analyse the
effect &
uncertainty
based on
data (internal
& external)
Risk
evaluation or
impact =
consequence
+ likelihood
Risk level
Certain/
Almost
certain
Likelihood!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
! ! !
Likely
!
!
!
!
!
! ! ! !
Possible
!
!
!
!
!
! ! ! !
Rare
!
!
!
!
!
! ! ! !
Almost
impossible
!
!
!
!
!
! ! ! !
!
!
!
!
Consequence
Minor (minimal) Modest
(moderate)
Severe
(Significant; long
reaching effect)
Major (Critical) Catastrophic
(Potential to
lead to collapse)
CONTROL RISK MATRIX
19
2. Risk Register
Control or
Strategy
adopted
Implementation
status
Risk &
Treatment level
Risk &
Treatment
owner
By Ahmad Azwang Aisram
aisram@gmail.com

More Related Content

What's hot

Risk Assessment and Risk Assessment Matrix Presentation
Risk Assessment and Risk Assessment Matrix PresentationRisk Assessment and Risk Assessment Matrix Presentation
Risk Assessment and Risk Assessment Matrix Presentation
Usama Saeed
 
ISO 31000 risk management process
ISO 31000 risk management processISO 31000 risk management process
ISO 31000 risk management process
Muizz Anibire
 
Risk Management Overview
Risk Management OverviewRisk Management Overview
Risk Management Overview
JIGNESH PADIA
 
Risk assessment techniques a critical success factor
Risk assessment techniques a critical success factorRisk assessment techniques a critical success factor
Risk assessment techniques a critical success factor
PECB
 
PECB Webinar: Aligning ISO 31000 and Management of Risk Methodology
PECB Webinar: Aligning ISO 31000 and Management of Risk MethodologyPECB Webinar: Aligning ISO 31000 and Management of Risk Methodology
PECB Webinar: Aligning ISO 31000 and Management of Risk Methodology
PECB
 
Risk management
Risk management Risk management
Risk management
mamta bhaurya
 
Risk strategies presentation
Risk strategies presentationRisk strategies presentation
Risk strategies presentation
Raven Morgan
 
Risk management
Risk managementRisk management
Risk management
Manish Tiwari
 
Risk Management Lifecycle Process Powerpoint Presentation Slides
Risk Management Lifecycle Process Powerpoint Presentation SlidesRisk Management Lifecycle Process Powerpoint Presentation Slides
Risk Management Lifecycle Process Powerpoint Presentation Slides
SlideTeam
 
Risk Management
Risk ManagementRisk Management
Risk Management
Shahan Ullah
 
Risk management
Risk managementRisk management
Risk management
Babasab Patil
 
Strategic Risk Management in the Face of Uncertainty and Unexpected Risks
Strategic Risk Management in the Face of Uncertainty and Unexpected RisksStrategic Risk Management in the Face of Uncertainty and Unexpected Risks
Strategic Risk Management in the Face of Uncertainty and Unexpected Risks
International Federation of Accountants
 
Risk Management
Risk ManagementRisk Management
Risk Management
Stefan Csosz
 
Risk assessment and management
Risk assessment and managementRisk assessment and management
Risk assessment and management
TaekHyeun Kim
 
Risk Management Procedure And Guidelines PowerPoint Presentation Slides
Risk Management Procedure And Guidelines PowerPoint Presentation Slides Risk Management Procedure And Guidelines PowerPoint Presentation Slides
Risk Management Procedure And Guidelines PowerPoint Presentation Slides
SlideTeam
 
Introduction To Risk Management Powerpoint Presentation Slides
Introduction To Risk Management Powerpoint Presentation SlidesIntroduction To Risk Management Powerpoint Presentation Slides
Introduction To Risk Management Powerpoint Presentation Slides
SlideTeam
 
Risk Assessment Step PowerPoint Presentation Slides
Risk Assessment Step PowerPoint Presentation SlidesRisk Assessment Step PowerPoint Presentation Slides
Risk Assessment Step PowerPoint Presentation Slides
SlideTeam
 
Enterprise Risk Management and Sustainability
Enterprise Risk Management and SustainabilityEnterprise Risk Management and Sustainability
Enterprise Risk Management and Sustainability
Jeff B
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planning
Institute for Business Continuity Training
 
Risk identification
Risk identificationRisk identification
Risk identification
murukkada
 

What's hot (20)

Risk Assessment and Risk Assessment Matrix Presentation
Risk Assessment and Risk Assessment Matrix PresentationRisk Assessment and Risk Assessment Matrix Presentation
Risk Assessment and Risk Assessment Matrix Presentation
 
ISO 31000 risk management process
ISO 31000 risk management processISO 31000 risk management process
ISO 31000 risk management process
 
Risk Management Overview
Risk Management OverviewRisk Management Overview
Risk Management Overview
 
Risk assessment techniques a critical success factor
Risk assessment techniques a critical success factorRisk assessment techniques a critical success factor
Risk assessment techniques a critical success factor
 
PECB Webinar: Aligning ISO 31000 and Management of Risk Methodology
PECB Webinar: Aligning ISO 31000 and Management of Risk MethodologyPECB Webinar: Aligning ISO 31000 and Management of Risk Methodology
PECB Webinar: Aligning ISO 31000 and Management of Risk Methodology
 
Risk management
Risk management Risk management
Risk management
 
Risk strategies presentation
Risk strategies presentationRisk strategies presentation
Risk strategies presentation
 
Risk management
Risk managementRisk management
Risk management
 
Risk Management Lifecycle Process Powerpoint Presentation Slides
Risk Management Lifecycle Process Powerpoint Presentation SlidesRisk Management Lifecycle Process Powerpoint Presentation Slides
Risk Management Lifecycle Process Powerpoint Presentation Slides
 
Risk Management
Risk ManagementRisk Management
Risk Management
 
Risk management
Risk managementRisk management
Risk management
 
Strategic Risk Management in the Face of Uncertainty and Unexpected Risks
Strategic Risk Management in the Face of Uncertainty and Unexpected RisksStrategic Risk Management in the Face of Uncertainty and Unexpected Risks
Strategic Risk Management in the Face of Uncertainty and Unexpected Risks
 
Risk Management
Risk ManagementRisk Management
Risk Management
 
Risk assessment and management
Risk assessment and managementRisk assessment and management
Risk assessment and management
 
Risk Management Procedure And Guidelines PowerPoint Presentation Slides
Risk Management Procedure And Guidelines PowerPoint Presentation Slides Risk Management Procedure And Guidelines PowerPoint Presentation Slides
Risk Management Procedure And Guidelines PowerPoint Presentation Slides
 
Introduction To Risk Management Powerpoint Presentation Slides
Introduction To Risk Management Powerpoint Presentation SlidesIntroduction To Risk Management Powerpoint Presentation Slides
Introduction To Risk Management Powerpoint Presentation Slides
 
Risk Assessment Step PowerPoint Presentation Slides
Risk Assessment Step PowerPoint Presentation SlidesRisk Assessment Step PowerPoint Presentation Slides
Risk Assessment Step PowerPoint Presentation Slides
 
Enterprise Risk Management and Sustainability
Enterprise Risk Management and SustainabilityEnterprise Risk Management and Sustainability
Enterprise Risk Management and Sustainability
 
Business Continuity Planning
Business Continuity PlanningBusiness Continuity Planning
Business Continuity Planning
 
Risk identification
Risk identificationRisk identification
Risk identification
 

Similar to Introduction to Risk Management ISO31000:2009

Using FMEA as a Risk Management Tool for Events Sustainability
Using FMEA as a Risk Management Tool for Events SustainabilityUsing FMEA as a Risk Management Tool for Events Sustainability
Using FMEA as a Risk Management Tool for Events Sustainability
PECB
 
Risk managementslides
Risk managementslidesRisk managementslides
Risk managementslides
Abhilash Jha
 
Bgreener Risk Assessment workshop handout - Potato Head
Bgreener Risk Assessment workshop handout - Potato HeadBgreener Risk Assessment workshop handout - Potato Head
Bgreener Risk Assessment workshop handout - Potato Head
www.bookgreener.com
 
PERUMIN 31: Bow-tie Risk Analysis
PERUMIN 31: Bow-tie Risk AnalysisPERUMIN 31: Bow-tie Risk Analysis
PERUMIN 31: Bow-tie Risk Analysis
PERUMIN - Convención Minera
 
1662426180_hirarc OSH C.pptx
1662426180_hirarc OSH C.pptx1662426180_hirarc OSH C.pptx
1662426180_hirarc OSH C.pptx
AmirahMarmin
 
Project Risk Management (10)
 Project Risk Management (10) Project Risk Management (10)
Project Risk Management (10)
Serdar Temiz
 
Risk management and environmental monitoring
Risk management and environmental monitoringRisk management and environmental monitoring
Risk management and environmental monitoring
Tim Sandle, Ph.D.
 
Risk Assessment Powerpoint Presentation Slides
Risk Assessment Powerpoint Presentation SlidesRisk Assessment Powerpoint Presentation Slides
Risk Assessment Powerpoint Presentation Slides
SlideTeam
 
OVER VIEW risk management 22016 NEW ASLI
OVER VIEW risk management 22016 NEW ASLIOVER VIEW risk management 22016 NEW ASLI
OVER VIEW risk management 22016 NEW ASLI
sssheid
 
Risk Analysis PowerPoint Presentation Slides
Risk Analysis PowerPoint Presentation Slides Risk Analysis PowerPoint Presentation Slides
Risk Analysis PowerPoint Presentation Slides
SlideTeam
 
Risk manajemen-intro
Risk manajemen-introRisk manajemen-intro
Risk manajemen-intro
Anwar Sadat
 
Crash Course: Managing Cyber Risk Using Quantitative Analysis
Crash Course: Managing Cyber Risk Using Quantitative AnalysisCrash Course: Managing Cyber Risk Using Quantitative Analysis
Crash Course: Managing Cyber Risk Using Quantitative Analysis
"Apolonio \"Apps\"" Garcia
 
Session 02 Risk Assessment Program for YSP_The Risk Assessment Process
Session 02 Risk Assessment Program for YSP_The Risk Assessment ProcessSession 02 Risk Assessment Program for YSP_The Risk Assessment Process
Session 02 Risk Assessment Program for YSP_The Risk Assessment Process
Muizz Anibire
 
Risk Management
Risk ManagementRisk Management
Risk Management
Jacobe2008
 
Comprehensive Overview Of Risk Management
Comprehensive Overview Of Risk ManagementComprehensive Overview Of Risk Management
Comprehensive Overview Of Risk Management
Andrew Valenti
 
Risk Assessment and Management
Risk Assessment and ManagementRisk Assessment and Management
Risk Assessment and Management
Haythem A. El-Wassif
 
Lecture 02. OSH Risk Assessment
Lecture 02. OSH Risk Assessment Lecture 02. OSH Risk Assessment
Lecture 02. OSH Risk Assessment
KateKazhan
 
Bow Tie Risk Analysis
Bow Tie Risk AnalysisBow Tie Risk Analysis
Bow Tie Risk Analysis
John Kingsley
 
Risk Mitigation Strategies PowerPoint Presentation Slides
Risk Mitigation Strategies PowerPoint Presentation SlidesRisk Mitigation Strategies PowerPoint Presentation Slides
Risk Mitigation Strategies PowerPoint Presentation Slides
SlideTeam
 
06 overview of_ra1
06 overview of_ra106 overview of_ra1
06 overview of_ra1
Anil Raina
 

Similar to Introduction to Risk Management ISO31000:2009 (20)

Using FMEA as a Risk Management Tool for Events Sustainability
Using FMEA as a Risk Management Tool for Events SustainabilityUsing FMEA as a Risk Management Tool for Events Sustainability
Using FMEA as a Risk Management Tool for Events Sustainability
 
Risk managementslides
Risk managementslidesRisk managementslides
Risk managementslides
 
Bgreener Risk Assessment workshop handout - Potato Head
Bgreener Risk Assessment workshop handout - Potato HeadBgreener Risk Assessment workshop handout - Potato Head
Bgreener Risk Assessment workshop handout - Potato Head
 
PERUMIN 31: Bow-tie Risk Analysis
PERUMIN 31: Bow-tie Risk AnalysisPERUMIN 31: Bow-tie Risk Analysis
PERUMIN 31: Bow-tie Risk Analysis
 
1662426180_hirarc OSH C.pptx
1662426180_hirarc OSH C.pptx1662426180_hirarc OSH C.pptx
1662426180_hirarc OSH C.pptx
 
Project Risk Management (10)
 Project Risk Management (10) Project Risk Management (10)
Project Risk Management (10)
 
Risk management and environmental monitoring
Risk management and environmental monitoringRisk management and environmental monitoring
Risk management and environmental monitoring
 
Risk Assessment Powerpoint Presentation Slides
Risk Assessment Powerpoint Presentation SlidesRisk Assessment Powerpoint Presentation Slides
Risk Assessment Powerpoint Presentation Slides
 
OVER VIEW risk management 22016 NEW ASLI
OVER VIEW risk management 22016 NEW ASLIOVER VIEW risk management 22016 NEW ASLI
OVER VIEW risk management 22016 NEW ASLI
 
Risk Analysis PowerPoint Presentation Slides
Risk Analysis PowerPoint Presentation Slides Risk Analysis PowerPoint Presentation Slides
Risk Analysis PowerPoint Presentation Slides
 
Risk manajemen-intro
Risk manajemen-introRisk manajemen-intro
Risk manajemen-intro
 
Crash Course: Managing Cyber Risk Using Quantitative Analysis
Crash Course: Managing Cyber Risk Using Quantitative AnalysisCrash Course: Managing Cyber Risk Using Quantitative Analysis
Crash Course: Managing Cyber Risk Using Quantitative Analysis
 
Session 02 Risk Assessment Program for YSP_The Risk Assessment Process
Session 02 Risk Assessment Program for YSP_The Risk Assessment ProcessSession 02 Risk Assessment Program for YSP_The Risk Assessment Process
Session 02 Risk Assessment Program for YSP_The Risk Assessment Process
 
Risk Management
Risk ManagementRisk Management
Risk Management
 
Comprehensive Overview Of Risk Management
Comprehensive Overview Of Risk ManagementComprehensive Overview Of Risk Management
Comprehensive Overview Of Risk Management
 
Risk Assessment and Management
Risk Assessment and ManagementRisk Assessment and Management
Risk Assessment and Management
 
Lecture 02. OSH Risk Assessment
Lecture 02. OSH Risk Assessment Lecture 02. OSH Risk Assessment
Lecture 02. OSH Risk Assessment
 
Bow Tie Risk Analysis
Bow Tie Risk AnalysisBow Tie Risk Analysis
Bow Tie Risk Analysis
 
Risk Mitigation Strategies PowerPoint Presentation Slides
Risk Mitigation Strategies PowerPoint Presentation SlidesRisk Mitigation Strategies PowerPoint Presentation Slides
Risk Mitigation Strategies PowerPoint Presentation Slides
 
06 overview of_ra1
06 overview of_ra106 overview of_ra1
06 overview of_ra1
 

Recently uploaded

Beyond the Basics of A/B Tests: Highly Innovative Experimentation Tactics You...
Beyond the Basics of A/B Tests: Highly Innovative Experimentation Tactics You...Beyond the Basics of A/B Tests: Highly Innovative Experimentation Tactics You...
Beyond the Basics of A/B Tests: Highly Innovative Experimentation Tactics You...
Aggregage
 
Learn SQL from basic queries to Advance queries
Learn SQL from basic queries to Advance queriesLearn SQL from basic queries to Advance queries
Learn SQL from basic queries to Advance queries
manishkhaire30
 
DSSML24_tspann_CodelessGenerativeAIPipelines
DSSML24_tspann_CodelessGenerativeAIPipelinesDSSML24_tspann_CodelessGenerativeAIPipelines
DSSML24_tspann_CodelessGenerativeAIPipelines
Timothy Spann
 
06-12-2024-BudapestDataForum-BuildingReal-timePipelineswithFLaNK AIM
06-12-2024-BudapestDataForum-BuildingReal-timePipelineswithFLaNK AIM06-12-2024-BudapestDataForum-BuildingReal-timePipelineswithFLaNK AIM
06-12-2024-BudapestDataForum-BuildingReal-timePipelineswithFLaNK AIM
Timothy Spann
 
Global Situational Awareness of A.I. and where its headed
Global Situational Awareness of A.I. and where its headedGlobal Situational Awareness of A.I. and where its headed
Global Situational Awareness of A.I. and where its headed
vikram sood
 
一比一原版(UO毕业证)渥太华大学毕业证如何办理
一比一原版(UO毕业证)渥太华大学毕业证如何办理一比一原版(UO毕业证)渥太华大学毕业证如何办理
一比一原版(UO毕业证)渥太华大学毕业证如何办理
aqzctr7x
 
Population Growth in Bataan: The effects of population growth around rural pl...
Population Growth in Bataan: The effects of population growth around rural pl...Population Growth in Bataan: The effects of population growth around rural pl...
Population Growth in Bataan: The effects of population growth around rural pl...
Bill641377
 
Challenges of Nation Building-1.pptx with more important
Challenges of Nation Building-1.pptx with more importantChallenges of Nation Building-1.pptx with more important
Challenges of Nation Building-1.pptx with more important
Sm321
 
DATA COMMS-NETWORKS YR2 lecture 08 NAT & CLOUD.docx
DATA COMMS-NETWORKS YR2 lecture 08 NAT & CLOUD.docxDATA COMMS-NETWORKS YR2 lecture 08 NAT & CLOUD.docx
DATA COMMS-NETWORKS YR2 lecture 08 NAT & CLOUD.docx
SaffaIbrahim1
 
一比一原版(harvard毕业证书)哈佛大学毕业证如何办理
一比一原版(harvard毕业证书)哈佛大学毕业证如何办理一比一原版(harvard毕业证书)哈佛大学毕业证如何办理
一比一原版(harvard毕业证书)哈佛大学毕业证如何办理
taqyea
 
STATATHON: Unleashing the Power of Statistics in a 48-Hour Knowledge Extravag...
STATATHON: Unleashing the Power of Statistics in a 48-Hour Knowledge Extravag...STATATHON: Unleashing the Power of Statistics in a 48-Hour Knowledge Extravag...
STATATHON: Unleashing the Power of Statistics in a 48-Hour Knowledge Extravag...
sameer shah
 
一比一原版兰加拉学院毕业证(Langara毕业证书)学历如何办理
一比一原版兰加拉学院毕业证(Langara毕业证书)学历如何办理一比一原版兰加拉学院毕业证(Langara毕业证书)学历如何办理
一比一原版兰加拉学院毕业证(Langara毕业证书)学历如何办理
hyfjgavov
 
"Financial Odyssey: Navigating Past Performance Through Diverse Analytical Lens"
"Financial Odyssey: Navigating Past Performance Through Diverse Analytical Lens""Financial Odyssey: Navigating Past Performance Through Diverse Analytical Lens"
"Financial Odyssey: Navigating Past Performance Through Diverse Analytical Lens"
sameer shah
 
一比一原版(UMN文凭证书)明尼苏达大学毕业证如何办理
一比一原版(UMN文凭证书)明尼苏达大学毕业证如何办理一比一原版(UMN文凭证书)明尼苏达大学毕业证如何办理
一比一原版(UMN文凭证书)明尼苏达大学毕业证如何办理
nyfuhyz
 
Build applications with generative AI on Google Cloud
Build applications with generative AI on Google CloudBuild applications with generative AI on Google Cloud
Build applications with generative AI on Google Cloud
Márton Kodok
 
在线办理(英国UCA毕业证书)创意艺术大学毕业证在读证明一模一样
在线办理(英国UCA毕业证书)创意艺术大学毕业证在读证明一模一样在线办理(英国UCA毕业证书)创意艺术大学毕业证在读证明一模一样
在线办理(英国UCA毕业证书)创意艺术大学毕业证在读证明一模一样
v7oacc3l
 
Predictably Improve Your B2B Tech Company's Performance by Leveraging Data
Predictably Improve Your B2B Tech Company's Performance by Leveraging DataPredictably Improve Your B2B Tech Company's Performance by Leveraging Data
Predictably Improve Your B2B Tech Company's Performance by Leveraging Data
Kiwi Creative
 
Intelligence supported media monitoring in veterinary medicine
Intelligence supported media monitoring in veterinary medicineIntelligence supported media monitoring in veterinary medicine
Intelligence supported media monitoring in veterinary medicine
AndrzejJarynowski
 
ViewShift: Hassle-free Dynamic Policy Enforcement for Every Data Lake
ViewShift: Hassle-free Dynamic Policy Enforcement for Every Data LakeViewShift: Hassle-free Dynamic Policy Enforcement for Every Data Lake
ViewShift: Hassle-free Dynamic Policy Enforcement for Every Data Lake
Walaa Eldin Moustafa
 
University of New South Wales degree offer diploma Transcript
University of New South Wales degree offer diploma TranscriptUniversity of New South Wales degree offer diploma Transcript
University of New South Wales degree offer diploma Transcript
soxrziqu
 

Recently uploaded (20)

Beyond the Basics of A/B Tests: Highly Innovative Experimentation Tactics You...
Beyond the Basics of A/B Tests: Highly Innovative Experimentation Tactics You...Beyond the Basics of A/B Tests: Highly Innovative Experimentation Tactics You...
Beyond the Basics of A/B Tests: Highly Innovative Experimentation Tactics You...
 
Learn SQL from basic queries to Advance queries
Learn SQL from basic queries to Advance queriesLearn SQL from basic queries to Advance queries
Learn SQL from basic queries to Advance queries
 
DSSML24_tspann_CodelessGenerativeAIPipelines
DSSML24_tspann_CodelessGenerativeAIPipelinesDSSML24_tspann_CodelessGenerativeAIPipelines
DSSML24_tspann_CodelessGenerativeAIPipelines
 
06-12-2024-BudapestDataForum-BuildingReal-timePipelineswithFLaNK AIM
06-12-2024-BudapestDataForum-BuildingReal-timePipelineswithFLaNK AIM06-12-2024-BudapestDataForum-BuildingReal-timePipelineswithFLaNK AIM
06-12-2024-BudapestDataForum-BuildingReal-timePipelineswithFLaNK AIM
 
Global Situational Awareness of A.I. and where its headed
Global Situational Awareness of A.I. and where its headedGlobal Situational Awareness of A.I. and where its headed
Global Situational Awareness of A.I. and where its headed
 
一比一原版(UO毕业证)渥太华大学毕业证如何办理
一比一原版(UO毕业证)渥太华大学毕业证如何办理一比一原版(UO毕业证)渥太华大学毕业证如何办理
一比一原版(UO毕业证)渥太华大学毕业证如何办理
 
Population Growth in Bataan: The effects of population growth around rural pl...
Population Growth in Bataan: The effects of population growth around rural pl...Population Growth in Bataan: The effects of population growth around rural pl...
Population Growth in Bataan: The effects of population growth around rural pl...
 
Challenges of Nation Building-1.pptx with more important
Challenges of Nation Building-1.pptx with more importantChallenges of Nation Building-1.pptx with more important
Challenges of Nation Building-1.pptx with more important
 
DATA COMMS-NETWORKS YR2 lecture 08 NAT & CLOUD.docx
DATA COMMS-NETWORKS YR2 lecture 08 NAT & CLOUD.docxDATA COMMS-NETWORKS YR2 lecture 08 NAT & CLOUD.docx
DATA COMMS-NETWORKS YR2 lecture 08 NAT & CLOUD.docx
 
一比一原版(harvard毕业证书)哈佛大学毕业证如何办理
一比一原版(harvard毕业证书)哈佛大学毕业证如何办理一比一原版(harvard毕业证书)哈佛大学毕业证如何办理
一比一原版(harvard毕业证书)哈佛大学毕业证如何办理
 
STATATHON: Unleashing the Power of Statistics in a 48-Hour Knowledge Extravag...
STATATHON: Unleashing the Power of Statistics in a 48-Hour Knowledge Extravag...STATATHON: Unleashing the Power of Statistics in a 48-Hour Knowledge Extravag...
STATATHON: Unleashing the Power of Statistics in a 48-Hour Knowledge Extravag...
 
一比一原版兰加拉学院毕业证(Langara毕业证书)学历如何办理
一比一原版兰加拉学院毕业证(Langara毕业证书)学历如何办理一比一原版兰加拉学院毕业证(Langara毕业证书)学历如何办理
一比一原版兰加拉学院毕业证(Langara毕业证书)学历如何办理
 
"Financial Odyssey: Navigating Past Performance Through Diverse Analytical Lens"
"Financial Odyssey: Navigating Past Performance Through Diverse Analytical Lens""Financial Odyssey: Navigating Past Performance Through Diverse Analytical Lens"
"Financial Odyssey: Navigating Past Performance Through Diverse Analytical Lens"
 
一比一原版(UMN文凭证书)明尼苏达大学毕业证如何办理
一比一原版(UMN文凭证书)明尼苏达大学毕业证如何办理一比一原版(UMN文凭证书)明尼苏达大学毕业证如何办理
一比一原版(UMN文凭证书)明尼苏达大学毕业证如何办理
 
Build applications with generative AI on Google Cloud
Build applications with generative AI on Google CloudBuild applications with generative AI on Google Cloud
Build applications with generative AI on Google Cloud
 
在线办理(英国UCA毕业证书)创意艺术大学毕业证在读证明一模一样
在线办理(英国UCA毕业证书)创意艺术大学毕业证在读证明一模一样在线办理(英国UCA毕业证书)创意艺术大学毕业证在读证明一模一样
在线办理(英国UCA毕业证书)创意艺术大学毕业证在读证明一模一样
 
Predictably Improve Your B2B Tech Company's Performance by Leveraging Data
Predictably Improve Your B2B Tech Company's Performance by Leveraging DataPredictably Improve Your B2B Tech Company's Performance by Leveraging Data
Predictably Improve Your B2B Tech Company's Performance by Leveraging Data
 
Intelligence supported media monitoring in veterinary medicine
Intelligence supported media monitoring in veterinary medicineIntelligence supported media monitoring in veterinary medicine
Intelligence supported media monitoring in veterinary medicine
 
ViewShift: Hassle-free Dynamic Policy Enforcement for Every Data Lake
ViewShift: Hassle-free Dynamic Policy Enforcement for Every Data LakeViewShift: Hassle-free Dynamic Policy Enforcement for Every Data Lake
ViewShift: Hassle-free Dynamic Policy Enforcement for Every Data Lake
 
University of New South Wales degree offer diploma Transcript
University of New South Wales degree offer diploma TranscriptUniversity of New South Wales degree offer diploma Transcript
University of New South Wales degree offer diploma Transcript
 

Introduction to Risk Management ISO31000:2009

  • 1. An introduction to Risk Management ISO31000:2009 1
  • 2. ISO 31000:2009 Principles and Guidelines Guidelines  /  References ISO 31010 - Assessment Technique ISO Guide 73:2009 - Vocabulary 2
  • 3. Principle for managing risk a. Create value b. Integral part of organisational processes c. Part of decision making d. Explicitly addresses uncertainty e. Systematic, structured and timely f. Based on the best available information g. Tailored h. Takes human and cultural factors into account i. Transparent and inclusive j. Dynamic, iterative and responsive to change k. Facilitates continual improvement and enhancement of the organisation Framework for managing risk Process for managing risk ISO31000:2009 Risk Management Principles, Framework and Process Mandate & Commitment Design of framework for managing risk Monitoring and review of the framework Continual improvement of the framework Implementing risk management Establishing the context Risk assessment Risk treatment Communicationandconsultation Monitoringandreview Risk identification Risk analysis Risk evaluation 3
  • 4. RISK  –  Defini,on     (ISO/IEC  Guide  73) The  effect  of  uncertainty  on  objec6ves • Outcome  if   deficiency   occurs • Things  that  can  stop   from  achieving   objec:ve   (deficiency) • Aim;  target   • Clarity  of   objec6ves   important   4
  • 6. Risk Management Process Establishing the context Strategic / business objective Internal environment (organisation culture, processes, structure & strategy, roles & accountability, policies etc). External environment (regulatory requirement, stakeholder perceptions, social & cultural, political, legal, economic, technological etc). Set the scope Risk criteria
  • 7. Risk Assessment Risk Identification Identify possible risk to the business objective / project. Interview Brainstorm Checklist ISO31010 Risk Assessment Technique } Process flow Ishikawa (Fishbone): Cause & Effect Checklist People have seen risk occur, use people’s experience. Bowtie Risk Management Process
  • 8. Risk Assessment Risk Analysis Goal of Risk Analysis How threatening the risk are Weigh the risk Risk trend & forecast Qualitative Analysis Quantitative Analysis Likelihood & Consequence Matrix • Trend graph • Pareto Principle • Decision Tree • Monte Carlo Simulation April 2013 0 25 50 75 100 Northern Central Southern East Coast West Coast Minor Modest Severe Major Catastrophic Financial Listenership Downtime Talent Risk Management Process
  • 9. Risk Assessment Risk Evaluation Likelihood Consequence Level of Risk Almost impossible Rare Possible Likely Certain / Almost certain Minor (minimal) Modest (Moderate) Severe (Significant; long reaching effect) Major (Critical) Catastrophic (Potential to lead to collapse) Low Moderate Significant High Qualitative Analysis + Quantitative Analysis Risk Management Process 9
  • 10. Risk Treatment Risk Register Current control or Strategy adopted Implementation status Business Plan Risk Management Process Strategies
  • 11. Monitoring & Review Certain/ Almost certain Likelihood! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! Likely ! ! ! ! ! ! ! ! ! Possible ! ! ! ! ! ! ! ! ! Rare ! ! ! ! ! ! ! ! ! Almost impossible ! ! ! ! ! ! ! ! ! ! ! ! ! Consequence Minor (minimal) Modest (moderate) Severe (Significant; long reaching effect) Major (Critical) Catastrophic (Potential to lead to collapse) CONTROL RISK MATRIX Risk Management Process 11 Minor Modest Severe Major Catastrophic Financial Audience Share Rating Downtime >0.25% >0.25 - 0.50% >0.50 - 0.75% >0.75 - 1% More than 1% People
  • 12. Communication & Consultation Risk Management Process Risk / Treatment Owner Group Management Audit & Risk Committee (GMARC) Email / Meeting / Discussion / Awareness with Risk & Treatment Owner Risk Management Committee (RMC) & Board of Subsidiaries 12
  • 14. Likelihood Consequence Level of Risk Almost impossible Rare Possible Likely Certain / Almost certain Minor (minimal) Modest (Moderate) Severe (Significant; long reaching effect) Major (Critical) Catastrophic (Potential to lead to collapse) Feasibility Benefit Level of Opportunity Very Hard Hard Normal Easy Very easy Very Low Low Medium High Very High Risk vs Opportunity 14
  • 15. Benefits of Risk Management Increase the likelihood of achieving objectives; Encourage proactive management; Be aware of the need to identify and treat risk throughout the organisation; Improve the identification of opportunities and threats; Achieve compatible risk management practices between organisation and nation; Improve governance; Improve stakeholder confidence and trust; Established a reliable basis for decision making planning; Improve control; Effectively allocate and use resources for risk treatment; Improve operational effectiveness and efficiency; Enhance health and safety performance and environmental protection; Improve loss prevention and incident management; Minimize losses; Improve organisational learning; and Improve organisational resilience.
  • 16. Tools%and%Techniques% Risk%Assessment%Process% Risk%Iden7fica7on% Risk%Analysis% Risk% evalua7on%Consequence% Probability% Level%of% risk% 1% Brainstorming% !!% B% B% B% B% 2% Structured%or%semiBstructured%interviews%% !!% B% B% B% B% 3% Delphi% !!% B% B% B% B% 4% CheckBlists% !!% B% B% B% B% 5% Primary%hazard%analysis% !!% B% B% B% B% 6% Hazard%and%operability%studies%(HAZOP)% !!% !!% !% !% !% 7% Hazard%Analysis%and%Cri7cal%Control%Point%(HACCP)% !!% !!% B% B% !!% 8% Environmental%risk%assessment% !!% !!% !!% !!% !!% 9% Structure%%<%What%if?%>%(SWIFT)% !!% !!% !!% !!% !!% 10% Scenario%analysis% !!% !!% !% !% !% 11% Business%impact%analysis% !% !!% !% !% !% 12% Root%cause%analysis% B% !!% !!% !!% !!% 13% Failure%mode%effect%analysis% !!% !!% !!% !!% !!% 14% Fault%tree%analysis% !% B% !!% !% !% 15% Event%tree%analysis% !% !!% !% !% B% 16% Cause%and%consequence%%analysis% !% !!% !!% !% !% 17% CauseBandBeffect%analysis% !% !!% !!% !% !% 18% Layer%protec7on%analysis%(LOPA)% !% !!% !% !% B% 19% Decision%tree% B% !!% !!% !% !% 20% Human%reliability%analysis% !!% !!% !!% !!% !% 21% Bow%7e%analysis% B% !% !!% !!% !% 22% Reliability%centered%analysis% !!% !!% !!% !!% !!% 23% Sneak%circuit%analysis% !% B% B% B% B% 24% Markov%analysis% !% !!% B% B% B% 25% Monte%Carlo%simula7on% B% B% B% B% !!% 26% Bayesian%sta7s7cs%and%Bayes%Nets% B% !!% B% B% !!% 27% FN%curves% !% !!% !!% !% !!% 28% Risk%indices% !% !!% !!% !% !!% 29% Consequence/probability%matrix% !!% !!% !!% !!% !% 30% Cost/benefit%analysis% !% !!% !% !% !% 31% Mul7Bcriteria%decision%analysis%(MCDA)% %% %% %% %% %% %% !!%=%Strongly%applicable% !%%%%=%Applicable% B  =%Not%applicable%% Risk  Assessment  Techniques   ISO31010
  • 17. Risk Management Reports 1. Risk Profile Analysis 2. Risk Register 17
  • 18. 18 1. Risk Profile Analyse the effect & uncertainty based on data (internal & external) Risk evaluation or impact = consequence + likelihood Risk level Certain/ Almost certain Likelihood! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! Likely ! ! ! ! ! ! ! ! ! Possible ! ! ! ! ! ! ! ! ! Rare ! ! ! ! ! ! ! ! ! Almost impossible ! ! ! ! ! ! ! ! ! ! ! ! ! Consequence Minor (minimal) Modest (moderate) Severe (Significant; long reaching effect) Major (Critical) Catastrophic (Potential to lead to collapse) CONTROL RISK MATRIX
  • 19. 19 2. Risk Register Control or Strategy adopted Implementation status Risk & Treatment level Risk & Treatment owner
  • 20. By Ahmad Azwang Aisram aisram@gmail.com