Search results for "IT risk management"
showing 10 items of 11 documents
Safety regulations : implications of the new risk perspectives
2016
Abstract The current safety regulations for industrial activities are to a large extent functionally oriented and risk-based (informed), expressing what to achieve rather than the means and solutions needed. They are founded on a probability-based perspective on risk, with the use of risk assessment, risk acceptance criteria and tolerability limits. In recent years several risk researchers have argued for the adoption of some new types of risk perspectives which highlight uncertainties rather than probabilities in the way risk is defined, the point being to better reflect the knowledge, and lack of knowledge, dimension of risk. The Norwegian Petroleum Safety Authority has recently implement…
Domain specific simulation language for IT risk assessment
2011
Information technology systems represent the backbone of a company's operational infrastructure. A company's top management typically ensures that computer software and hardware mechanisms are adequate, functional and in adherence with regulatory guidelines and industry practices. Nowadays, due to depressed economic and increased intensity of performed operations, business highly recognizes the influence of effective Information Technology risk management on profitability. Design of Unified Modelling Language (UML) based Domain Specific language (DSL) described in this paper achieves synergy from in IT industry widely used UML modelling technique and the domain specific risk management exte…
Market risk disclosure in banking: an empirical analysis on four global systemically important European banks
2017
Market risk reporting in banking has assumed such importance during the last decade. The purpose of this paper is to provide a methodology to evaluate the qualitative and quantitative profiles of the market risk disclosure in banking. We propose a hybrid methodology to assess whether or not banks are able to provide a satisfactory degree of information about the market risks they are exposed to. In this paper, we conduct an empirical research of market risk disclosure on a sample of four global systemically important European banks. The paper provides evidences that banks differ in their market risk reporting models, even though they are subject to similar regulatory requirements and accoun…
IT Technology Implications Analysis on the Occupational Risk: Cloud Computing Architecture
2014
Abstract The present paper is divided into three major areas: the analysis of occupational risk implications at national and international level, the European priorities in terms of occupational risk and the existing cloud computing services. Since human resource is present within each organization, it is required a comprehensive and actual assessment of the processes in which they participate. Like in any daily activity, processes and people contribute to the emergence of risks. If each organization creates healthy and safe workplaces that means that it contributes to the sustainable development of the area in which it operates. It can be said that occupational risk assessment and occupati…
Unveiling Barriers and Enablers of Risk Management in Interoperability Efforts
2014
eGovernment efforts are, as general IS efforts, associated with considerable risk. As eGovernment matures and interoperability becomes more ingrained in eGovernment efforts, it will be interesting to explore how the increased complexity affects risk. Still, research on risk management in the context of eGovernment is sparse and our understanding of the phenomenon equally so. This qualitative study investigates risk management in the Norwegian public sector. Based on 11 interviews with experts from nine public organizations, we identified six barriers and eight enablers to risk management in eGovernment settings. Our findings suggest that interoperability has important implications for how r…
Components of software development risk: how to address them? A project manager survey
2000
Software risk management can be defined as an attempt to formalize risk oriented correlates of development success into a readily applicable set of principles and practices. By using a survey instrument we investigate this claim further. The investigation addresses the following questions: 1) What are the components of software development risk? 2) how does risk management mitigate risk components, and 3) what environmental factors if any influence them? Using principal component analysis we identify six software risk components: 1) scheduling and timing risks, 2) functionality risks, 3) subcontracting risks, 4) requirements management, 5) resource usage and performance risks, and 6) person…
A critical review on supply chain risk – Definition, measure and modeling
2015
Abstract Economic systems are increasingly prone to complexity and uncertainty. Therefore, making well-informed decisions requires risk analysis, control and mitigation. In some areas such as finance, insurance, crisis management and health care, the importance of considering risk is largely acknowledged and well-elaborated, yet rather heterogeneous concepts and approaches for risk management have been developed. The increased frequency and the severe consequences of past supply chain disruptions have resulted in an increasing interest in risk. This development has led to the adoption of the risk concepts, terminologies and methods from related fields. In this paper, existing approaches for…
Can software risk management improve system development: an exploratory study
1997
Software risk management can be defined as an attempt to formalise risk oriented correlates of development success into a readily applicable set of principles and practices. Earlier research suggests that it can reduce the likelihood of a system failure. Using a survey instrument we investigate this claim further. The investigation addresses the following questions: (1) which characteristics of risk management practices; and (2) which other environmental and process factors (such as development methods, manager's experience) relate to improved performance in managing software risks? Our findings support in general the claim that the use of risk management methods improves system development…
Attention Shaping and Software Risk—A Categorical Analysis of Four Classical Risk Management Approaches
1998
This paper examines software risk management in a novel way, emphasizing the ways in which managers address software risks through sequential attention shaping and intervention. Software risks are interpreted as incongruent states within a socio-technical model of organizational change that includes task, structure, technology, and actors. Such incongruence can lead to failures in developing or implementing the system and thus to major losses. Based on this model we synthesize a set of software risk factors and risk resolution techniques, which cover the socio-technical components and their interactions. We use the model to analyze how four classical risk management approaches—McFarlan's p…
Project Risk Register Analysis Based on the Theoretical Analysis of Project Management Notion of Risk
2016
Abstract The aim of the current research is to examine publicly available project risk registers to find correlations between the project management theory, especially project risk management, and practical results of real project risk management – the risk registers publicly available on the Internet. In the research, the author has analysed the compliance between the theories of the project risk management described in the “Aid Delivery Methods. Volume I. Project Cycle Management Guidelines” and “Caltrans Project Risk Management Handbook, Threats and Opportunities, Second Edition, Revision 0” and the project risk registers. In the previous studies, the author concluded that after analysin…