Within the Risk Control Matrix, you can add and manage risks that could impact specific objectives. Once the list of risks is created, then complete the risk evaluation, link existing and new objectives, and add controls to the risk.
OR
In Line View
Risk Form
Note: Do not utilize the following characters when entering information into Portal; & * % # @ ; / \ : , - or ~. .
Note: This field is only applicable if ORM-RCSA has been licensed.
Notes:
|
Note: Click Edit All to place all listed risks in edit mode at the same time.
Note: Click Save All if the Edit All functionality was utilized.
Note: Some fields may already be populated using a conditional calculation created by an administrator. Contact your project lead for information on how the field is calculated. See Calculated Fields on how this functionality works.
Notes:
|
Note: It is likely that your design effectiveness and control adequacy evaluations will come after assessment of a group of controls and not when you are entering the risk for the first time.
Note: A list of users containing, (not equaling), the entered text will display in the search results.
Note: The Risk Evaluation information may be updated at a later time by selecting Edit beside the risk to be edited on the Process Objective form.
Note: Some fields may already be populated using a conditional calculation created by an administrator. Contact your project lead for information on how the field is calculated. See Calculated Fields on how this functionality works.
You have the option of linking the objectives affected by the risk, the controls related to the risk, or dependent controls, which are controls owned by different entities that are relied upon to mitigate risks within the entity being analyzed.
Note: You can also link risks, controls and dependent controls from the Risk form.
Note: Click Edit Search and utilize the list search functionality to modify your selection and focus your results. Utilize List Searches for more information.
New objectives and/or controls can be linked to a given risk.
Note: You can also add risks and controls from the Risk form.
Note: See Add and Manage Objectives and Add and Manage Controls for more information on filling out the forms for the specific objects.
See Quick Reports for additional information on generating, adding, editing and deleting Risk Quick Reports.
Note: The Quick Reports link will not appear on the Risk forms unless they have been configured to do so. For information on adding the Quick Report link to the form, see Configure a form.
Note: Administrators can configure fields in the Risk form to update a field based on a specific value of another field or fields. See Configure a Calculated Field for details.