Using Risk Metalanguage to Develop Risk Responses (使用推理語言發展風險回應)
In order to understand a risk fully it is helpful to identify its causes as well as its effects. Risk metalanguage can help by separating cause-risk-effect in a three-part description, such as "Because of , might occur, which would lead to ." This structured description not only ensures clear definition of the risk, but can also be useful when developing responses.
同時辨識風險的原因與效果有助於完整地瞭解風險,風險推理語言可藉由將原因風險-後果拆解成三個區塊敘述來達成此一目的,此一敘述方式類似「因為『一個或多個原因』,『某風險』可能發生,將會導致『一個或多個後果』」,此一結構化的敘述,不僅可以確保風險的定義明確,同時也有助於發展風險回應。
There are four basic types of risk response:
- Aggressive responses, either to avoid a threat by making it impossible, or to exploit an opportunity by making it definitely happen
- Involving a third party to manage the risk, either transferring a threat, or sharing an opportunity
- Changing the size of a risk, tackling probability and/or impact to reduce a threat or enhance an opportunity
- Taking residual risks which cannot be managed proactively or cost-effectively, accepting either a threat or an opportunity
風險回應有四種基本型式:
- 積極的回應;規避一個威脅使其不可能發生,或是開拓一個機會使其確定會發生。
- 納入一個第三方以管理風險;移轉一個威脅或是分享一個機會。
- 改變風險的大小;針對機率及/或衝擊以降低一個威脅或增強一個機會。
- 承擔無法主動管理或管理不符成本效益的殘留風險;接受一個威脅或機會.....
 |