Risks yet not assessed are not included in any of the available risk reports, which means these risks remain under the radar, and could potentially not be escalated and brought the attention of appropriate decision makers.
I would like to be able to:
- create a report on these 'hidden' risks as part of our risk governance
- send out reminders to risk owners to assess risks
Thanks for considering this suggestion.3 votes
When a user is creating a new risk and when they are reassessing a risk, please add “Inherent” before the words “Likelihood” and “Severity” so it keeps in line with the further below 'Residual Likelihood' and 'Residual Severity'. Hopefully this will help users to rate initially and reassess the risk. Simple but effective.2 votes
I administer the Promapp Risks Module. Risk in the module can only be assigned to a person (name) not to a role. This means there is a lot of manual handling when someone leaves. Treatments can be assigned to a role – which works better because you add the role and the person changes automatically. It would be good if risks could also be assigned to a role (or an individual) the same as treatments. This would reduce manual handling and ensure risks remain current.7 votes
We are working on some other transfer/delegation functionality and that may address this issue as well. More to come as we dig in.
- Don't see your idea?