Abstract
While all organizations manage risk to some degree, this International Standard establishes
a number of principles that need to be satisfied to make risk management effective. This International Standard recommends that organizations develop, implement and continuously
improve a framework whose purpose is to integrate the process for managing risk into the
organization’s overall governance, strategy and planning, management, reporting processes,
policies, values and culture.