FRM Part I · FRM Exam Part I · Enterprise Risk Management and Future Trends
In an enterprise risk management governance structure using the three lines model, which activity belongs to the second line?
Monitoring limit breaches and challenging business-line risk assessments through an independent risk function is a second-line activity. The first line owns risk, the second oversees and challenges it, and internal audit as the third line provides independent assurance to the board.
- AA trading desk manager taking positions within assigned limits
- BAn independent risk function monitoring limit breaches and challenging business-line risk assessmentsCorrect
- CInternal audit providing independent assurance to the audit committee on the effectiveness of controls
- DThe external auditor certifying the annual financial statements
Explanation
The first line owns and manages risk, the second line (risk management and compliance) oversees, monitors and challenges, and the third line (internal audit) gives independent assurance. Internal audit is third line, not second.
Did you get it right without looking?
One question tells you little. A timed set on Enterprise Risk Management and Future Trends shows your real accuracy, how long you take and where you lose marks.
More Enterprise Risk Management and Future Trends questions
- Which statement about aggregating risk types such as credit, market and operational risk into total economic capital is most accurate?
- Under the three lines of defense model commonly used in risk governance, a trading desk head, the independent market risk function and inter…
- A bank calculates economic capital for credit, market and operational risk separately and then simply adds the three figures to obtain total…
- A bank aggregates two risks with stand-alone economic capital of 60 and 80. Which correlation assumption makes the square-root aggregation f…
- A bank's board wants to translate its overall willingness to take risk into limits that business heads can apply in daily decisions. Which o…
- In a typical enterprise risk management governance structure, which of the following best describes the role of the chief risk officer (CRO)…