Coverage Register
Every line of cover · Liability

Environmental and pollution liability

Clean-up costs, third-party injury and damage, and defence costs arising from pollution conditions at, from or caused by your sites and operations, including the gradual pollution most liability policies exclude.

On the schedule

Also calledpollution liability, environmental impairment liability, EIL
FamilyLiability
Responds whenA spill, leak, emission or historical contamination is found at or traced to your site.

Which industries carry it

Usually held byMining and resources, Energy and utilities
Often needed, often lackingFood manufacturing, General manufacturing, Logistics and warehousing, Construction, Agriculture, Property owner, Transport, Public sector

Standards this line engages

8 clauses

Clause text quoted from a human-verified compliance corpus under licence. Clauses marked for APRA-regulated buyers or US insurance licensees appear on a register only for those buyers.

ISO 31000 6.5.2 Selection of risk treatment options

Guidance: choosing treatment options balances the benefits for the objectives against the cost, effort and disadvantages of implementing them. Options are not mutually exclusive and not all fit every situation; they include avoiding the risk by not starting or continuing the activity, taking or increasing the risk to pursue an opportunity, removing the risk ...

Evidence an auditor accepts: Treatment option analysis per risk showing the options considered, their cost and benefit, and the one chosen; Insurance schedule, contracts and other risk-sharing arrangements tied to the risks they transfer; Documented retained and residual risk with the decision maker's acceptance
Common gap: Only mitigation considered; avoiding, taking or sharing never on the table
ISO 31000:2018 on compliance.theartofservice.com
ISO 31000 6.4.2 Risk identification

Guidance: risk identification finds, recognizes and describes the risks that might help or prevent the organization achieving its objectives, and depends on relevant, appropriate and current information. A range of techniques can be used to find the uncertainties that affect objectives, and the following factors and the relationships between them should be c...

Evidence an auditor accepts: Risk register entries with source, event, cause and consequence described; Identification techniques used (workshops, checklists, scenario analysis, indicators) and who took part; Opportunities recorded alongside threats
Common gap: Only threats identified, never opportunities
ISO 31000:2018 on compliance.theartofservice.com
ISO 31000 6.3.3 External and internal context

Guidance: the external and internal context is the environment in which the organization defines and pursues its objectives. The context of the risk management process should be established from an understanding of that environment and should reflect the specific environment of the activity the process is applied to, because risk management happens in the co...

Evidence an auditor accepts: Context statement for the assessment, drawing on the external and internal factors of 5.4.1; Link from the assessment context to the organizational context used for the framework
Common gap: Context copied from the enterprise level and not adjusted to the activity
ISO 31000:2018 on compliance.theartofservice.com
COSO ERM principle 10 Identifies Risk

The organization identifies risk that impacts the performance of strategy and business objectives.

Evidence an auditor accepts: Risk register; Risk workshop outputs; Emerging risk log
Common gap: Static risk register
COSO ERM 2017 on compliance.theartofservice.com
ISO 31000 6.4.3 Risk analysis

Guidance: risk analysis builds an understanding of the nature and characteristics of a risk, including its level where appropriate, by considering in detail uncertainties, sources, consequences, likelihood, events, scenarios, controls and how effective they are; one event can have several causes and consequences and touch several objectives. Analysis can be ...

Evidence an auditor accepts: Analysis record per risk: likelihood, consequence, existing controls and their effectiveness, level of risk; Statement of assumptions, exclusions, information quality and confidence attached to the analysis; Choice of qualitative or quantitative technique and the reason
Common gap: Control effectiveness assumed rather than assessed
ISO 31000:2018 on compliance.theartofservice.com
ISO 31000 6.3.4 Defining risk criteria

Guidance: the organization should specify the amount and type of risk it may or may not take relative to its objectives, and should define criteria for judging the significance of risk and supporting decisions. Risk criteria should align with the framework and be customized to the purpose and scope of the activity; they should reflect the organization's valu...

Evidence an auditor accepts: Documented risk criteria: consequence and likelihood scales, how level of risk is derived, time horizons, treatment of combined risks; Risk appetite or tolerance statement the criteria derive from; Review record showing criteria revisited when context changed
Common gap: A five-by-five matrix with no definition of what a consequence level means
ISO 31000:2018 on compliance.theartofservice.com
COSO ERM principle 13 Implements Risk Responses

The organization identifies and selects risk responses.

Evidence an auditor accepts: Risk treatment plans; Action owner assignments; Cost-benefit analyses
Common gap: Response chosen without analysis
COSO ERM 2017 on compliance.theartofservice.com
COSO ERM principle 11 Assesses Severity of Risk

The organization assesses the severity of risk.

Evidence an auditor accepts: Likelihood-impact matrix; Inherent vs residual risk ratings; Scenario analysis
Common gap: Subjective scoring only
COSO ERM 2017 on compliance.theartofservice.com

Do this for every line on your schedule

Paste the schedule and get this classification for every line at once, with the retained and transferred figures, the rate on line, the loss ratio, the findings and the questions for the broker. Six lines free, no account.

Build my coverage register

Cyber · Intellectual property