Ultimate access to all questions.
Upgrade Now 🚀
Sign in to unlock AI tutor
A large bank is reviewing its processes and procedures to manage operational risk in accordance with best practices established by the Basel Committee. In implementing the three lines of defense model, which of the following statements is correct?
A
The internal audit function should serve as the first line of defense and continually validate operational procedures used by the business lines.
B
Business line managers, as part of the first line of defense, should provide a credible challenge to the internal audit function.
C
The corporate operational risk function, as part of the second line of defense, should challenge risk inputs from business line managers.
D
The corporate operational risk function should serve as the third line of defense and validate model assumptions made by senior management.