Name |
Name for the risk. Field is auto-populated if the risk is
generated from a risk statement, but can be changed without
affecting the relationship between the risk and risk
statement. |
Number |
Unique identification number. This field automatically
populated. |
State |
Risk state. Possible choices are:
- Draft In this state, all risk
users can modify the risk. Only available when
creating a one-off control. One-off controls are
possible but not recommended.
- Attest When the risk is
created from a risk statement, controls are in this
state.
Note: When a risk is set back to draft, the
assessment is canceled.
- Review Risks are
automatically moved to review from the assessment
phase.
- Monitor In this state, all
risk managers can move the risk from review to
monitor.
- Retired Risk managers or
administrators can move a risk from Monitor to
Retired. Indicators do not run when the risk is in
this state.
Note: When a risk is retired, any
assessment associated with it is
canceled.
|
Owning group |
Owning group for the risk. |
Category |
Category of risk which applies to the profile.
- Legal
- Financial
- Operational
- Reputational
- Legal/Regulatory
- Credit
- Market
- IT
If the risk is generated from a risk statement, the
field is automatically populated/ |
Owner |
Owner for the risk. Note: The owner is always added as a
respondent. |
Risk Statement |
Statement this risk is associated with. |
Inherit from risk statement |
Option to create a risk independent of risk
statement. |
Entity |
Entity related to the risk. Note: Only active entities
are shown. |
Description |
Description of the risk and how it is a threat to the
organization. |
Additional Information |
Details that help others understand the risk
record. |