Knowledge base · live

Risk Glossary

AI-curated definitions spanning ERM, cyber, operational, financial, ESG and emerging risk. Re-seeded daily from trending searches.

50 of 238 terms

AI Ethics Review Board

AI

A multidisciplinary committee that evaluates AI initiatives for ethical implications, fairness, bias, and alignment with organizational values.

Detail

AI Risk Assessment

AI

The evaluation of potential harms and failures arising from artificial intelligence systems throughout their lifecycle.

Detail

AI Risk Management Framework

AI

A structured approach to identify, assess, and mitigate risks throughout the AI system lifecycle from design to deployment and monitoring.

Detail

Business Continuity Management

Operational

The holistic management process ensuring critical business functions continue during and after significant disruptions.

Detail

Compliance Management System

Regulatory

An integrated framework of policies, procedures, controls, and monitoring processes to ensure adherence to legal and regulatory requirements.

Detail

Compliance Risk

Regulatory

The current or prospective risk to earnings, capital, or reputation arising from violations of laws, regulations, rules, or organizational standards.

Detail

Compliance Risk Assessment

Regulatory

The systematic process of identifying, analyzing, and prioritizing risks of non-compliance with laws, regulations, and organizational policies.

Detail

Cybersecurity Control Framework

Cyber

A structured set of security controls and practices designed to protect information systems from cyber threats.

Detail

Cybersecurity Risk

Cyber

The potential for loss or harm from threats to information systems, data confidentiality, integrity, or availability.

Detail

Cybersecurity Risk Assessment

Cyber

A systematic evaluation of cyber threats, vulnerabilities, and potential impacts to determine an organization's exposure to cyberattacks and data breaches.

Detail

Cybersecurity Risk Management Framework

Cyber

A systematic approach to identify, assess, prioritize, and mitigate cyber threats to information systems, networks, and digital assets.

Detail

Cybersecurity Risk Management Plan

Cyber

A documented strategy outlining how an organization will identify, assess, mitigate, and monitor cybersecurity risks to protect information assets.

Detail

Cybersecurity Risk Management Program

Cyber

The ongoing organizational initiative encompassing policies, processes, tools, and resources dedicated to managing cybersecurity risks across the enterprise.

Detail

Data Loss Prevention

Cyber

Technologies and policies that detect and prevent unauthorized transmission, use, or exfiltration of sensitive information.

Detail

ESG Risk Integration

ESG

The incorporation of environmental, social, and governance factors into enterprise risk management processes and decision-making.

Detail

Enterprise Risk Management Framework

ERM

An integrated, organization-wide approach to identifying, assessing, and managing all material risks that could affect strategic objectives and value creation.

Detail

IT Risk Management Framework

Cyber

A structured approach to identify, assess, and mitigate risks associated with information technology systems, infrastructure, and digital operations.

Detail

Inherent Risk Rating

ERM

The assessed level of risk before considering the mitigating effects of controls or other management actions.

Detail

Internal Control Framework

Audit

A systematic structure of policies, procedures, and activities designed to provide reasonable assurance of achieving objectives.

Detail

Key Risk Indicator Threshold

ERM

A predetermined trigger point for a risk metric that signals when risk exposure exceeds acceptable levels requiring management action.

Detail

Model Risk Management Framework

Financial

A structured governance approach for identifying, assessing, and controlling risks arising from potential errors in model development, implementation, or use.

Detail

NIST AI Risk Management Framework

AI

A voluntary framework providing a structured approach to identify, assess, and manage risks throughout the AI system lifecycle.

Detail

NIST Risk Management Framework

Cyber

A structured, seven-step process for integrating security, privacy, and cyber supply chain risk management activities into the system development life cycle.

Detail

Operational Risk Appetite

Operational

The amount of operational risk an organization is willing to accept in executing its business strategy and operations.

Detail

Operational Risk Assessment

Operational

The systematic process of identifying, analyzing, and evaluating risks from operational failures, process breakdowns, and business disruption events.

Detail

Operational Risk Capital

Operational

Capital set aside by financial institutions to absorb potential losses from failed processes, people, systems, or external events.

Detail

Operational Risk Event

Operational

An occurrence resulting from inadequate or failed internal processes, people, systems, or external events causing loss.

Detail

Operational Risk Framework

Operational

The governance structure, policies, processes, and tools organizations use to systematically identify, measure, monitor, and control operational risks.

Detail

Operational Risk Management

Operational

The discipline of identifying, assessing, and mitigating risks arising from inadequate or failed internal processes, people, systems, or external events.

Detail

Process Risk Assessment

Operational

A systematic evaluation of risks embedded in business processes to identify control gaps and improvement opportunities.

Detail

Project Risk Log

Project

A living document that tracks identified project risks, their status, assigned owners, and action plans throughout the project lifecycle.

Detail

Ransomware Response Plan

Cyber

A predefined set of procedures for detecting, containing, and recovering from ransomware attacks while managing decisions about payment.

Detail

Regulatory Capital

Financial

The minimum amount of capital financial institutions must hold to absorb losses and protect depositors, as mandated by regulators.

Detail

Regulatory Compliance Risk Assessment

Regulatory

A systematic evaluation of an organization's exposure to penalties, sanctions, or restrictions from failing to meet legal and regulatory requirements.

Detail

Reputational Risk

ERM

The potential for negative stakeholder perceptions to damage an organization's brand, customer relationships, or market position.

Detail

Risk Identification

ERM

The systematic process of discovering, recognizing, and describing risks that could affect organizational objectives.

Detail

Risk Management Framework

ERM

A structured approach defining how an organization identifies, assesses, treats, monitors, and reports risks across all business functions.

Detail

Risk Reporting Dashboard

ERM

A visual interface presenting key risk metrics, indicators, trends, and status information to support management and board decision-making.

Detail

Risk Treatment

Methodology

The process of selecting and implementing measures to modify risk through avoidance, mitigation, transfer, or acceptance strategies.

Detail

Security Risk Management Framework

Cyber

A comprehensive methodology for identifying, assessing, and mitigating security threats to organizational assets, operations, and stakeholders.

Detail

Supply Chain Disruption Risk

Supply Chain

The potential for interruptions in the flow of goods, services, or information through supplier and logistics networks.

Detail

Supply Chain Risk Assessment

Supply Chain

The systematic evaluation of vulnerabilities and threats across the supply chain that could disrupt operations, quality, or regulatory compliance.

Detail

Three Lines Model

ERM

A governance framework defining roles and responsibilities across operational management, risk oversight, and independent assurance.

Detail

Vulnerability Management Program

Cyber

An ongoing process for identifying, classifying, prioritizing, remediating, and reporting security vulnerabilities across IT assets.

Detail

AI Autonomous Decision Risk

AI

The risk that AI systems making decisions without human oversight produce harmful, unintended, or uncontrollable outcomes.

Detail

AI Explainability

AI

The ability to describe in understandable terms how an AI system reached its decisions, predictions, or recommendations.

Detail

AI Hallucination Risk

AI

Tendency of generative AI models to produce convincingly presented but factually incorrect, nonsensical, or fabricated information.

Detail

AI Model Drift Monitoring

AI

The ongoing tracking of machine learning model performance degradation over time as data patterns, relationships, or populations change.

Detail

AI Model Governance

AI

Framework of policies, procedures, and controls ensuring artificial intelligence systems are developed, deployed, and monitored responsibly.

Detail

AI Risk Taxonomy

AI

Hierarchical classification system organizing AI-specific risks into categories such as technical, ethical, legal, operational, and societal domains.

Detail

Made with Emergent