Updated
Risk
Record a risk in the Risk register, score it by likelihood and impact, choose how to treat it, link the controls that reduce it, and track it to closure.
- Who can do this: Contributor · Admin
- In the app: Risk › Register
- 10 min
Record a risk
- Open Risk › Register and select Add Risk.
- Enter a name and description, and choose a category.
- Set Likelihood (1-5) and Impact (1-5), from 1 (rare, negligible) to 5 (almost certain, severe). Use the same reading for each risk so scores can be compared. The register then shows the result as a Severity badge.
- Choose a Treatment, a Status and a Due Date. Owner is free text, so it can be someone without an account.
- Select Create.
Link controls, change status and bulk edit
| To | Do this |
|---|---|
| Link a control | Open the risk and, in its relationships, select Link. Choose the relationship type and the control, then select Link. To remove one, select Unlink on its row and confirm. |
| Change status | Select Status on the risk's row, pick the next status offered, add a reason if you want one, and confirm. |
| Change several | Tick the rows, then change their status, treatment or category together. |
| Find or export | Search and filter the register. Use Export for Export as CSV or Export as PDF. Paid plans include export; see pricing. |
Where risks come from
Add risks by hand, or select Propose risks in Actions › Proposals to get suggestions drawn from your open compliance gaps. Dashboard › GRC summarises the register; see Dashboard. Work to reduce a risk is tracked as Actions.