Risk Management - Typical Notifications

This is a list of the most typical Dynamic Status we see community users using on all three Risk modules. Remember these Dynamic Status can trigger notifications as well:

Risk Module:

  • High Risk Created
  • Low/Medium risk updated to High Risk
  • Risk mitigating Control set as Failed / Expired / Issues
  • Risk mitigating Policy set as Expired
  • Risk mitigating Exception set as Expired
  • Risk mitigating Project set as Expired / Closed
  • New Risks affecting a Department

Risk Module / Reviews:

  • Risk Review Deadlines in two weeks
  • Risk Review Completed
  • Review Missing Evidence
  • Review Duration too Long
  • Poor Review Evidence Quality

Risk Exceptions:

  • Exception Deadline in two weeks
  • Exception Expired
  • Exception Created
  • Exception linked to a High Risk Created
  • Exception linked to more than 5 High Risks

Organization / Third Parties:

  • When Third Party is Created
  • When TP passed Vendor Assessment
  • When TP has Findings Open related to Online Assessments
  • When TP is Compliant / Non Compliant
  • TP with High Risks associated
  • TP with No Risks

Organization / Business Units:

  • BU has no Risks
  • BU has High Risks associated