Skip to content
  • There are no suggestions because the search field is empty.

Add the entities a risk area assesses

Choose the processes, assets and suppliers the risk area should cover before you start assessing.

Before you can assess anything, select the entities your risk area will cover. Entities are the concrete objects that risk attaches to: processes, assets and systems, and suppliers. Once added, you can begin creating risk scenarios against them.

  1. To add entities to a risk area, follow these steps:

    Open the risk area and go to the Operational overview.
  2. Click Add entities.
  3. Select the processes, assets and systems, and suppliers/legal entities the risk area should cover.
  4. Click Save.

add-entities

Keep the scope focused. A risk area covering only supplier security should not include processing activities, while one covering information security will likely need all three entity types.

You can add more entities at any time as your scope evolves.


Related Articles