PECB
ISO-31000-Lead-Risk-Manager
Q1:
A risk manager wants to improve organizational resilience by embedding climate-related considerations into performance measures, while also fostering open communication about risks across all levels of the organization. Which of the following practices are they considering?
○
A
Commitment to ongoing learning and strengthening of collaboration○
B
Integration of sustainability and promotion of risk culture○
C
Adoption of new technologies and focus on compliance○
D
Risk avoidance and risk transfer strategies
PECB
ISO-31000-Lead-Risk-Manager
Q2:
Likelihood can be described in various ways, including using descriptive terms. What should risk managers do when using a descriptive term?
○
A
Define the meaning of descriptive terms○
B
Keep the descriptive terms short, a maximum of two words○
C
Ensure that the term has a certain ambiguity to account for different interpretations○
D
Avoid using descriptive terms altogether
PECB
ISO-31000-Lead-Risk-Manager
Q3:
What is an example of a risk management objective at an operational level?
○
A
Become a recognized leader in sustainability by achieving carbon neutrality across all operations by 2030.○
B
Reduce staff turnover rates to 60% per annum.○
C
Expansion of the organization's market share by 25% within the next 3 months.○
D
Increase shareholder value over the long term.
PECB
ISO-31000-Lead-Risk-Manager
Q4:
Why is understanding the context important in risk management?
○
A
It ensures that all risks are treated using the same method across all departments, promoting consistency.○
B
It allows the organization to avoid external risks altogether.○
C
It aligns the risk management process with organizational objectives.○
D
It eliminates uncertainty from decision-making.
PECB
ISO-31000-Lead-Risk-Manager
Q5:
Which statement regarding the risk management policy is correct?
○
A
A risk management policy cannot be aligned with other internal policies○
B
A risk management policy should clearly define the organization's risk appetite○
C
A risk management policy should undergo a review only when the organization's internal context changes○
D
A risk management policy should be developed only after risks are identified