Operational Risk Procedures

Operational Risk Procedures thumbnail
High Impact-High Damage Risks

Operational risk is most often associated with natural disasters, such as hurricanes and terrorist attacks. However, it is increasingly inclusive of the risks associated with a corporation's processes, people, information systems and technology. Operational risk procedures need to be well-planned and documented to be effective.

  1. Significance

    • The significance of operational risk management is measured by consequences. Large, enterprise-wide failures can be so devastating and destructive to a company that their significance cannot be overstated. For example, bank failures are often seen as market and credit risk events, but closer examination of internal processes and individual decision-making actually point to operational failures as well. When a hurricane destroys a company's main buildings, the ability to recover critical data from an offsite data center can mean the difference between survival and failure.

    Function

    • The function of operational risk management within an organization is to analyze and quantify risks in terms of their potential frequency and impact. Some risks and events might occur often but have little or no impact. Other risks, such as the loss of a data center and client or corporate records, might be a very rare potential event, but if it happens, the impact is severe. Careful documentation, mapping and testing of risk procedures and mitigation scenarios must be performed to see if the operational risk planning on paper can be trusted to function in an emergency.

    Types

    • There are as many types of operational risk as there are types of bad things that can happen within a company's processes, systems and individual decision-making. Categories of operational risk types include litigation risk, the risk of fraud, natural and man-made disaster risk and human error. Litigation risk involves exposure of a company to adverse legal action that result from its day-to-day operations. Fraud risk is more closely tied to poor screening, controls and supervision of individuals. Disaster risk can be natural, such as hurricanes, or man-made, such as the 9/11 attacks. Human error involves unintentional mistakes by people that can lead to bad information going into financial statements.

    Features

    • Operational risk management features include measurement of risks in terms of impact and frequency, and then mitigation procedures and processes documented to create preparedness. For example, rules around the management of bank accounts can be designed to prevent theft, and detailed quality control processes can mitigate litigation risk. Redundancy of systems plays a large role in disasters. The use of data centers in areas that are far away from a company's operations can allow for data recovery soon after a disaster hits. With regard to financial information, the use of a do-check-review process will significantly lower the potential of inaccurate information going out to the public. Three separate individuals would be involved at a minimum with financial data. One to do the work, a second to check the work, and a third to review the work.

    Considerations

    • Two important considerations are testing and quantification. A company's disaster recovery capabilities should be tested by live drills that simulate real disasters. Rigorous quantification of the real cash impact of operational failures needs to be considered so that leadership knows the dollar value of vulnerabilities.

Related Searches:

References

  • Photo Credit Image by Flickr.com, courtesy of Ludo

Comments

You May Also Like

  • Operational Audit Procedures

    California State University at Long Beach notes that financial audits are historic in nature, while operational audits are future oriented, relying on...

  • How to Create Documents for Operational Procedures

    Standard Operating Procedures are vital aspects of any routine system management or technical activity within an organization. They provide employees clear, concise...

  • What Is the Difference Between a Financial Plan and an Operational Plan?

    You have goals for your business. Now you need a road map for direction. An operational plan and a financial plan are...

  • Salary of an Operational Risk Executive

    Operational risk executives are integral to the insurance industry and to corporations that wish to minimize operational loss. These financial managers assess...

  • Operation Risk Management Training

    An operational risk management training curriculum familiarizes course participants with the tools and techniques that a corporation typically uses to prevent losses...

  • Operational HR Activities

    There are two kinds of human resources functions: strategic and functional. Strategic human resources functions include developing and implementing long-range ...

  • Risk Game Tutorial

    The game "Risk" first appeared in France as a creation of the celebrated movie director Albert Lamorisse. He called the game "Conquest...

  • Credit Risk Management Structure

    Credit is a pivotal tool in modern economic activities because individuals, nonprofits, government agencies and businesses may need loans for operational or...

  • Risk of Corroded Artery Surgery

    The National Stroke Association estimates that carotid artery surgery reduces the possibility of stroke by as much as 80 percent. However, as...

  • What Is the Difference Between Risk & Financial Risk?

    Broadly speaking, businesses face two types of risk: general business risk and financial risk. Too much of either can be disastrous for...

  • Project Risk Management Procedures

    Project Risk Management Procedures. Project risk management procedures are important tools that corporate senior leaders establish to prevent operating losses. These ...

  • Information Technology Risks

    Beginning in the early 1980s and accelerating through the Internet revolution of the late 1990s, information technology (IT) has become a critical...

  • What Is the Difference in Business Risk & Financial Risk?

    Risky business decisions are a concern for investors, investment firms and business managers. That makes it necessary for economists to define and...

  • Categories of Financial Risk

    Operational risk occurs when a company suffers a financial downturn related to business functions. Though a broad risk category, companies are typically...

  • Financial Statement Audit Procedures

    Financial Statement Audit Procedures. Auditors who review firms' financial statements focus on internal controls and processes, operating guidelines, business risks and ...

  • Definition of Office Procedures

    Office procedures, in reference to medical and surgical procedures, are procedures that your doctor or physician can perform in his office instead...

  • Operational Guidelines on Human Rights & Natural Disasters

    The Indonesian tsunami in 2004, Hurricane Katrina a year later and the Haitian earthquake in 2010 have shown how natural disasters can...

  • Business Process and Risk Analysis

    A business process and risk analysis policy is a program that helps a corporation's top management understand important mechanisms in a company's...

Related Ads

Featured