How to Create and Use Risk Templates
Risk templates are the foundation of all risk assessments. They define:
- Which type of risks you assess (e.g. GDPR, NIS2, internal)
- What object you assess (processing activity or asset)
- The list of risk scenarios to evaluate
You must create a template before any assessments can begin.
How do you create a risk template?
- Go to Risk.
- Choose a Compliance domain (e.g. GDPR, NIS2) and a Scope: Processing Activities or Assets.
- Select the blue Risk Template button.
- Add your risk scenarios.
- Save the template to make it available for assessments.

Templates define which risks are assessed and how
What are good practices for managing risk templates?
- Create separate templates for GDPR and NIS2
- Use concise and actionable risk scenario names
- Keep templates versioned and up-to-date with your policies