Difference between revisions of "Risk Evaluation"

From CIPedia
Jump to navigation Jump to search
Line 7: Line 7:
  
 
=== National Definitions ===
 
=== National Definitions ===
==== Australia ====  
+
==== [[Australia]] ====  
 
{{definition| Risk evaluation is the process in which judgements are made on the tolerability of the risk on the basis of [[Risk Analysis|risk analysis]]  and taking into account factors such as socioeconomic and environmental aspects.  <ref name="MAIMAus">[https://www.em.gov.au/Documents/Manual03-AEMGlossary.PDF Australian Emergency Management Glossary, Emergency Management Australia (1998)]</ref>}}
 
{{definition| Risk evaluation is the process in which judgements are made on the tolerability of the risk on the basis of [[Risk Analysis|risk analysis]]  and taking into account factors such as socioeconomic and environmental aspects.  <ref name="MAIMAus">[https://www.em.gov.au/Documents/Manual03-AEMGlossary.PDF Australian Emergency Management Glossary, Emergency Management Australia (1998)]</ref>}}
 
<br />
 
<br />
Line 14: Line 14:
 
{{definition|Process of comparing the results of [[Risk Analysis|risk analysis]] with [[Risk Criteria|risk criteria]] to determine whether the risk and/or its magnitude is acceptable or tolerable. <ref> [http://www.risknz.org.nz/files/3114/0868%2F4596%2F5050-2010.pdf Australia AS NZS 5050 (2010)]</ref>}}<br />
 
{{definition|Process of comparing the results of [[Risk Analysis|risk analysis]] with [[Risk Criteria|risk criteria]] to determine whether the risk and/or its magnitude is acceptable or tolerable. <ref> [http://www.risknz.org.nz/files/3114/0868%2F4596%2F5050-2010.pdf Australia AS NZS 5050 (2010)]</ref>}}<br />
  
==== Canada ====
+
==== [[Canada]] ====
 
{{definition|The process of comparing the results of [[Risk Analysis|risk analysis]] with [[Risk Criteria|risk criteria]] to determine whether a [[risk]] and/or its magnitude is acceptable or tolerable. <ref>Derived from ISO 31000:2009</ref><br /><br />Processus de comparaison des résultats de l’analyse de risques avec les critères de risque afin de déterminer si un risque ou son importance sont acceptables ou tolérables. <ref name="canada">[http://www.bt-tb.tpsgc-pwgsc.gc.ca/publications/documents/urgence-emergency.pdf Vocabulaire de la gestion des urgencies/Emergency Management Emergency Management Vocabulary 281 (2012)]</ref>}}  
 
{{definition|The process of comparing the results of [[Risk Analysis|risk analysis]] with [[Risk Criteria|risk criteria]] to determine whether a [[risk]] and/or its magnitude is acceptable or tolerable. <ref>Derived from ISO 31000:2009</ref><br /><br />Processus de comparaison des résultats de l’analyse de risques avec les critères de risque afin de déterminer si un risque ou son importance sont acceptables ou tolérables. <ref name="canada">[http://www.bt-tb.tpsgc-pwgsc.gc.ca/publications/documents/urgence-emergency.pdf Vocabulaire de la gestion des urgencies/Emergency Management Emergency Management Vocabulary 281 (2012)]</ref>}}  
 
<br />
 
<br />
  
 
===Standard Definition===
 
===Standard Definition===
==== ISO/IEC 27000:2014 and ISO 31000:2009 ====
+
==== [[ISO|ISO/IEC 27000:2014 and ISO 31000:2009]] ====
 
{{definition|Process of comparing the results of [[Risk Analysis|risk analysis]] with risk criteria to determine whether the [[risk]] and/or its magnitude is acceptable or tolerable <ref name="ISO27000-14"> [http://www.iso.org/iso/home/store/catalogue_ics/catalogue_detail_ics.htm?csnumber=63411 ISO/IEC 27000:2014, Information technology -- Security techniques -- Information security management systems -- Overview and vocabulary]</ref> <ref name="ISO31000-09"> [http://www.iso.org/iso/home/store/catalogue_tc/catalogue_detail.htm?csnumber=43170 ISO/IEC 31000:2009, Risk management -- Principles and guidelines]</ref> <br />(based on the ISO Guide 73:2009<ref name="ISOGuide73">[http://www.iso.org/iso/catalogue_detail?csnumber=44651 ISO Guide 73:2009 Risk management -- Vocabulary]</ref>)}}
 
{{definition|Process of comparing the results of [[Risk Analysis|risk analysis]] with risk criteria to determine whether the [[risk]] and/or its magnitude is acceptable or tolerable <ref name="ISO27000-14"> [http://www.iso.org/iso/home/store/catalogue_ics/catalogue_detail_ics.htm?csnumber=63411 ISO/IEC 27000:2014, Information technology -- Security techniques -- Information security management systems -- Overview and vocabulary]</ref> <ref name="ISO31000-09"> [http://www.iso.org/iso/home/store/catalogue_tc/catalogue_detail.htm?csnumber=43170 ISO/IEC 31000:2009, Risk management -- Principles and guidelines]</ref> <br />(based on the ISO Guide 73:2009<ref name="ISOGuide73">[http://www.iso.org/iso/catalogue_detail?csnumber=44651 ISO Guide 73:2009 Risk management -- Vocabulary]</ref>)}}
 
<big>
 
<big>

Revision as of 01:47, 19 July 2015

Definitions

European Definitions

Other International Definitions

National Definitions

Australia

Risk evaluation is the process in which judgements are made on the tolerability of the risk on the basis of risk analysis and taking into account factors such as socioeconomic and environmental aspects. [1]


Risk evaluation is the process used to prioritise risks. [1]


Process of comparing the results of risk analysis with risk criteria to determine whether the risk and/or its magnitude is acceptable or tolerable. [2]


Canada

The process of comparing the results of risk analysis with risk criteria to determine whether a risk and/or its magnitude is acceptable or tolerable. [3]

Processus de comparaison des résultats de l’analyse de risques avec les critères de risque afin de déterminer si un risque ou son importance sont acceptables ou tolérables. [4]


Standard Definition

ISO/IEC 27000:2014 and ISO 31000:2009

Process of comparing the results of risk analysis with risk criteria to determine whether the risk and/or its magnitude is acceptable or tolerable [5] [6]
(based on the ISO Guide 73:2009[7])

  • Risk criteria are the terms of reference against which the significance of risk is evaluated [7]. They are based on organizational objectives, and external and internal context, and can be derived from standards, laws, policies and other requirements.
  • Risk evaluation assists in the decision about risk treatment.

See also

Notes