A living register your board can read.
Everything the platform carries under risk: the register and who owns what, the library to start from, assessment, resilience and acceptance, monitoring, and the third parties.
Request a demo17 screens in 6 groups, all of it on your own infrastructure.
Register & assignments
My Control Assignments
Every control assigned to you, with what it needs and when it is due.
New Register Entry
Raise a risk in a guided form that asks only what your methodology needs.
Risk Register (operational)
The living register: inherent and residual scoring, owners, treatment and dates.
Risk library
Recommended Risks
A library of risks suggested for your sector and the frameworks you carry.
Risk Projects
Related risks grouped into a project with its own scope, owner and timeline.
Assessment
Assessments
Risk assessments run against a scope, a framework, a process or an asset.
Questionnaires
Dispatched to owners and to third parties; answers come back into the record.
Methodology & Scale
3×3 to 5×5 scales, FAIR-style monetary quantification, appetite and tolerance you set.
Resilience & acceptance
Business Impact Analysis
Each process rated for impact and recovery time, with what depends on it in view.
Business Continuity
Continuity and recovery plans kept with the processes and assets they protect.
Acceptance Register
Accepted risks with who accepted them, on what grounds, and when that expires.
Monitoring & analytics
Key Risk Indicators
Thresholds that fire while a risk is moving, before it becomes an event.
Risk Events
What actually happened, with loss, cause and the control that should have caught it.
Risk Map
A heat map by likelihood and impact, filtered by department, asset or framework.
Third-Party Risk
Vendor Tiering
Vendors tiered 1 to 4 by what they reach and how critical it is to you.
Tier-Matched Questionnaires
Each tier receives the questionnaire it warrants; nobody answers what does not apply.
Supplier Portal
Suppliers answer in an isolated portal of their own; nothing else is exposed.
One record, three disciplines.
The same record carries governance, risk and compliance. Nothing is re-entered when it crosses from one to the next.
See it in the clear.
Tell us a little about your entity and what you would like to see, and we will arrange a private demonstration on your frameworks, in your language.