What is an example of records related to risk management?
The correct answer is A. Incident and audit reports. ISO 31000 distinguishes between records, documents, and procedures within risk management. Records provide evidence that activities have been performed and capture outcomes of events, assessments, and reviews.
Incident reports and audit reports are classic examples of risk management records because they document what actually happened, what was discovered, and what actions were taken. These records support learning from events, monitoring trends, and improving controls and processes.
Option B refers to formal documents that define intent and planned actions, not records of events or outcomes. Option C includes a risk register, which may contain both records and working documents, but ''risk assessment procedure'' is a procedural document, not a record. Option D relates to strategic planning rather than risk management records.
From a PECB ISO 31000 Lead Risk Manager perspective, distinguishing records from policies and procedures is critical for effective documentation and governance. Therefore, the correct answer is incident and audit reports.
Aleta
1 day agoChristiane
6 days agoVerda
11 days agoChantay
17 days agoEmilio
22 days agoVincenza
27 days agoCandra
2 months agoDortha
2 months agoFlo
2 months agoTemeka
2 months agoLashawnda
2 months agoWillis
3 months agoVince
3 months ago