April 2000
IM218 :INFORMATION MANAGEMENT

QUESTION 4

Total Marks: 15 Marks

Click here to access other questions

Click to access
SUGGESTED SOLUTIONS
for Question 4

(a)Briefly describe the five main components,or steps ,of risk control.[5 marks ]


(b)Risk control may involve:
(i)transfer of risk
(ii)detection of occurrence
(iii)reduction of effects
Explain what is meant by each form of risk control,and discuss how each control
might be implemented with respect to the risk of fire .[6 marks ]


(c)Two general controls that may be placed upon risk are:
•separation and distribution of EDP functions
•backup and recovery procedures
For each of these controls,give two examples of threats that the control may help to counter,or the risks that they may be intended to reduce.[4 marks ]