7.10: Difference between revisions

From Arizona Citizen Voice
Created page with "'''Risk Assessment''' '''Principle 7 - Identify, Analyze, and Respond to Risks''' '''Attribute''' '''7.10''' - Management designs responses to the analyzed risks so that risks are within the defined risk tolerance for the defined objective.<sup>47</sup> Management designs overall risk responses for the analyzed risks based on the significance of the risk, defined risk tolerance, and cost-benefit determination.<sup>48</sup> These risk responses may include the following..."
 
 
(3 intermediate revisions by the same user not shown)
Line 3: Line 3:
'''Principle 7 - Identify, Analyze, and Respond to Risks'''
'''Principle 7 - Identify, Analyze, and Respond to Risks'''


'''Attribute''' '''7.10''' - Management designs responses to the analyzed risks so that risks are within the defined risk tolerance for the defined objective.<sup>47</sup> Management designs overall risk responses for the analyzed risks based on the significance of the risk, defined risk tolerance, and cost-benefit determination.<sup>48</sup> These risk responses may include the following:
'''Attribute''' '''7.10''' - Management designs responses to the analyzed risks so that risks are within the defined risk tolerance for the defined objective. Management designs overall risk responses for the analyzed risks based on the significance of the risk, defined risk tolerance, and cost-benefit determination. These risk responses may include the following:


* '''Acceptance''' - No action is taken to respond to the risk.
* '''Acceptance''' - No action is taken to respond to the risk.
Line 9: Line 9:
* '''Reduction''' - Action is taken to reduce the likelihood or magnitude of the risk.
* '''Reduction''' - Action is taken to reduce the likelihood or magnitude of the risk.
* '''Sharing''' - Action is taken to transfer or share risks across the entity or with external parties, such as insuring against losses.
* '''Sharing''' - Action is taken to transfer or share risks across the entity or with external parties, such as insuring against losses.
'''>>>Navigational Buttons<<<'''
* '''[[Index of Attributes]]'''
* '''Previous Attribute - [[7.09]]'''
* '''Next Attribute - [[7.11]]'''
__FORCETOC__
=== Jamie's Story ===
No examples are available to illustrate governance gaps for this attribute.
=== Election Anomalies ===
Principle 7 addresses the need to Identify, Analyze, and Respond to Risks. The identification and analysis of risk are presumed to have been performed at the state level, which are addressed in the [https://apps.azsos.gov/election/files/epm/2025/Election-Procedures-Manual-2025--FINAL-12-22-25.pdf Arizona Secretary of State's Election Procedure Manual.] The MC leadership team's <u>Response to Risk</u> is the primary governance weakness with respect to the Green Book's Principle #7, including this attribute.
===== [[Dropbox Collection (2020)|Maricopa Dropbox Collection (2020)]] =====
Governance issues identified from [https://www.azag.gov/sites/default/files/2025-06/2020_General_Election_Investigation_Summary.pdf Arizona Attorney General's Office 2020 General Election Investigation] of Arizona Senate allegations of Maricopa County Election Department - Drop Box Collections issues. Section 2 of the AZ AG's inspector's report identifies numerous issues, which present risk to potential fraud.
This attribute identifies the need for risk "'''Avoidance''' - Action is taken to stop the business process or the part of the business process causing the risk." Instead of stopping business processes, MC facilitated five-procedure violations, which may have opened the door to tens of thousands of fraudulent votes.
* See the heading [[Dropbox Collection (2020)#Deviation: Allegations Confirmed|Deviation: Allegations Confirmed]] from Maricopa Dropbox Collection (2020) webpage.

Latest revision as of 08:45, 25 August 2026

Risk Assessment

Principle 7 - Identify, Analyze, and Respond to Risks

Attribute 7.10 - Management designs responses to the analyzed risks so that risks are within the defined risk tolerance for the defined objective. Management designs overall risk responses for the analyzed risks based on the significance of the risk, defined risk tolerance, and cost-benefit determination. These risk responses may include the following:

  • Acceptance - No action is taken to respond to the risk.
  • Avoidance - Action is taken to stop the business process or the part of the business process causing the risk.
  • Reduction - Action is taken to reduce the likelihood or magnitude of the risk.
  • Sharing - Action is taken to transfer or share risks across the entity or with external parties, such as insuring against losses.

>>>Navigational Buttons<<<


Jamie's Story

No examples are available to illustrate governance gaps for this attribute.

Election Anomalies

Principle 7 addresses the need to Identify, Analyze, and Respond to Risks. The identification and analysis of risk are presumed to have been performed at the state level, which are addressed in the Arizona Secretary of State's Election Procedure Manual. The MC leadership team's Response to Risk is the primary governance weakness with respect to the Green Book's Principle #7, including this attribute.

Governance issues identified from Arizona Attorney General's Office 2020 General Election Investigation of Arizona Senate allegations of Maricopa County Election Department - Drop Box Collections issues. Section 2 of the AZ AG's inspector's report identifies numerous issues, which present risk to potential fraud.

This attribute identifies the need for risk "Avoidance - Action is taken to stop the business process or the part of the business process causing the risk." Instead of stopping business processes, MC facilitated five-procedure violations, which may have opened the door to tens of thousands of fraudulent votes.