ISO-31000-CLA Dumps

ISO-31000-CLA Braindumps ISO-31000-CLA Real Questions ISO-31000-CLA Practice Test

ISO-31000-CLA Actual Questions


GAQM


ISO-31000-CLA


ISO 31000 - Certified Lead Risk Manager


https://killexams.com/pass4sure/exam-detail/ISO-31000-CLA

Question: 18


The organizationâs resources and internal support are the risk management strategy.


  1. adjustable to match

  2. inputs in the development of

  3. metrics used to measure the value of

  4. outcomes of the development of


Answer: B


Explanation:


according to page 15 of source 3, the development of a risk management strategy takes into account the organization's resources and internal support. These resources include factors such as human, capital, and technological resources; organizational structure, culture, and governance; communication and consultation mechanisms; and support from senior management and leadership. These inputs have an impact on the feasibility and effectiveness of the risk management strategy.


Question: 19


Risk management is tailored.


  1. True

  2. False


Answer: A


Explanation:


Risk management is tailored4. Tailored means that risk management takes into account the specific needs, objectives, and characteristics of each organization and its context.


Question: 20


When an operational area develops a treatment for a critical risk, the risk management professional MUST


  1. add the risk to the risk map.

  2. communicate the treatment plan directly with internal audit.

  3. evaluate the dollar savings associated with the treatment.

  4. evaluate the impact upon other areas.


Answer: D


Explanation:


When an operational area develops a treatment for a critical risk, the risk management professional must evaluate the impact upon other areas3. This helps to ensure that the treatment does not create new risks or adversely affect other

Question: 21


The accuracy and reliability of the risk assessment should be identified as clearly as possible.


  1. True

  2. False


Answer: A


Explanation:


The accuracy and reliability of the risk assessment should be identified as clearly as possible1. This helps to communicate the level of confidence in the risk assessment results and to inform decision-making.


Question: 22


Treatment plan becomes a living document of defining the direction of the risk treatment and being able to monitor progress against the plan.


  1. True

  2. False


Answer: A


Explanation:


Treatment plan becomes a living document of defining the direction of the risk treatment and being able to monitor progress against the plan3. Treatment plan helps to ensure that risk treatment actions are aligned with the changing context, objectives, and stakeholder expectations.


Question: 23


Who serves as the principal adviser to the CEO, business unit heads, and critical function heads on risk matter?


  1. Chief Risk Officer (CRO)

  2. Chief Information Officer (CIO)

  3. Quality Auditor (QA)

  4. Risk Owner (RO)


Answer: A


Explanation:


Chief Risk Officer (CRO) serves as the principal adviser to the CEO, business unit heads, and critical function heads on risk matter. CRO leads the development and implementation of the organizationâs risk management framework and

Question: 24


Which of the following ensures that uncertainty is managed so the organization can meet its objectives?


  1. Extended risk management

  2. Enhanced risk management

  3. Evasive risk management

  4. Avoidance risk management


Answer: B


Explanation:


Enhanced risk management ensures that uncertainty is managed so the organization can meet its objectives4. Enhanced risk management involves applying a systematic and logical process to identify, analyze, evaluate, treat, monitor, review, and communicate risks.


Question: 25


ISO 31000:2018 risk management process is


  1. descriptive

  2. prescriptive

  3. visionitive

  4. cursive


Answer: A


Explanation:


ISO 31000:2018 risk management process is descriptive6. This means that it provides guidance on what should be done for effective risk management, but not how it should be done. The process can be customized to any organization and its context.


Question: 26


New definition of risk under ISO 31000 and 31010 is:


  1. Danger that injury, damage, or loss will occur

  2. Possibility of investment loss

  3. Probability of loss to an insurer

  4. Probability of an event that will have an impact on objectives


Answer: D

Explanation:


According to ISO/IEC Guide73 (2009), clause 1., risk is defined as âthe effect of uncertainty on objectivesâ. This definition applies to both ISO/IEC Guide73 (2009) and ISO31000 (2018), which are standards for risk management terminology and principles respectively.


Question: 27


Which type of risk framework is expected to improve efficiency by aligning strategy, processes, technology and people?


  1. Controls, risk and supervision.

  2. Corporate, governance and control.

  3. Governance, risk and compliance.

  4. Supervision, audit and compliance


Answer: C


Explanation:


A governance, risk and compliance (GRC) framework is expected to improve efficiency by aligning strategy, processes, technology and people. GRC aims to integrate these elements to achieve organisational objectives while managing risks and complying with regulations.


Question: 28


Which of the following documents information are relevant to the organizationâs risk management framework, process, and system?


  1. Reporting and auditing

  2. Recording and reporting

  3. Visualizing and conceptualizing

  4. Rationalizing and reporting


Answer: B


Explanation:


Recording and reporting documents information that are relevant to the organizationâs risk management framework, process, and system2. These activities help to provide evidence, feedback, learning, and improvement for risk management.


Question: 29


A broker is undertaking a business interruption review on behalf of a client. This would most commonly include an evaluation of the

  1. effectiveness of a business continuity plan.

  2. effectiveness of risk reserving.

  3. level of risk tolerance.

  4. level of self insurance.


Answer: A


Explanation:


A business interruption review is an evaluation of the effectiveness of a business continuity plan, which is a set of procedures and resources to ensure that an organisation can continue its critical functions in the event of a disruption12.


Question: 30


Which of the following is the current trend in auditing, risk management and compliance?


  1. Providing assurance over threats

  2. Performing discrete audits in compliance with internal control

  3. Front office function providing leading indicators about risk


Answer: C


Explanation:


According to 3, page 6, one of the current trends in auditing, risk management and compliance is âmoving from a back-office function providing lagging indicators about risk (e.g., audit findings) to a front-office function providing leading indicators about risk (e.g., key risk indicators)â.