Category: Risk management frameworks · Reviewed by Chrissie Anderson, Client Executive · Last reviewed
Risk treatment is the process of selecting and implementing options for modifying risk. ISO 31000 sets out a non-exhaustive list of treatment options, commonly summarised under the “4 Ts”:
ISO 31000:2018 itself lists seven options: avoiding the risk, taking or increasing the risk to pursue an opportunity, removing the risk source, changing likelihood, changing consequences, sharing the risk, and retaining the risk by informed decision.
Choice depends on cost vs benefit, feasibility, secondary risks created by the treatment, regulatory constraints and the residual position required by risk appetite. For each risk, the register should record:
Insurance is the most visible form of risk transfer. It does not eliminate risk — it converts the loss profile from an uncertain large loss to a certain premium plus residual retentions, exclusions and counterparty credit risk.
For material risks, a formal risk treatment plan is recommended (and required by ISO 31000 for high-rated risks). The plan documents the rationale, resources, responsibilities, performance measures and review dates.
Maintained by Matt Bartlett, Director, Apex Insurance Brokers Limited. FCA FRN 724952. Companies House 07014570.
Apex Insurance Brokers serves UK professional services firms and commercial businesses. Call 0117 325 0027, email hello@apexinsurancebrokers.co.uk, or request a quotation.
Get a quote