PartnerAlly Docs
Risks

Risk Registry

View and manage all organizational risks in the Risk Registry.

Risk Registry

The Risk Registry is your central repository for all identified organizational risks. It provides a comprehensive view of your risk landscape and tools to manage each risk effectively.

Accessing the Risk Registry

Navigate to risks via:

  • Sidebar - Click "Risks" then "Registry"
  • Dashboard - Click the Risk Exposure card
  • Keyboard - Press G then R

Registry Layout

List View

The default view shows risks in a table:

ColumnDescription
TitleRisk name (click to open details)
SeverityColor-coded severity badge
StatusCurrent status (Open, Mitigating, etc.)
CategoryRisk category
OwnerAssigned owner
ScoreCalculated risk score
CreatedWhen risk was added

Summary Bar

Above the list:

  • Total risks - Count of all risks
  • Severity breakdown - Visual bar showing distribution
  • Status summary - Open, mitigating, closed counts

Filtering Risks

By Severity

Filter to show only specific severity levels:

  • All severities
  • Critical only
  • High only
  • Medium only
  • Low only

By Status

Filter by risk status:

  • All statuses
  • Open
  • Mitigating
  • Mitigated
  • Accepted
  • Closed

By Category

Filter by risk category:

  • Security
  • Compliance
  • Operational
  • Vendor/Third-Party
  • Financial
  • Reputational
  • Strategic

By Owner

Filter to see:

  • Unassigned risks
  • Risks you own
  • Risks owned by specific team members

Combine filters to create focused views. For example: "Critical + Open + Security" shows critical open security risks.

Sorting Options

Click column headers to sort:

Sort OptionDescription
SeverityCritical first or Low first
ScoreHighest or lowest risk score
StatusGroup by status
CreatedNewest or oldest
TitleAlphabetically
OwnerGrouped by owner

Searching Risks

Use the search bar to find risks by:

  • Risk title
  • Description content
  • Category name
  • Owner name
  • Linked items

Search Tips

  • Use quotes for exact phrases
  • Combine with filters for precision
  • Search is case-insensitive

Risk Scores

Understanding the Score

Each risk has a calculated score:

Score RangeMeaning
81-100Critical risk level
61-80High risk level
41-60Medium risk level
21-40Low risk level
1-20Minimal risk level

Score Calculation

Score = Likelihood × Impact

Where:

  • Likelihood = 1-5 scale (rare to almost certain)
  • Impact = 1-5 scale (negligible to catastrophic)

Example: Likelihood 4 × Impact 5 = Score 20 (normalized to scale)

Working with Risks

Quick Actions

Hover over any risk row to see:

  • View - Open risk details
  • Edit - Modify risk properties
  • Create Workflow - Start remediation
  • Delete - Remove risk (with confirmation)

Bulk Actions

Select multiple risks to:

  • Change status
  • Assign owner
  • Change severity
  • Export selection
  • Delete

Risk Categories

Security Risks

  • Data breaches
  • Unauthorized access
  • Malware and viruses
  • Insider threats

Compliance Risks

  • Regulatory violations
  • Audit failures
  • Framework non-compliance
  • Reporting failures

Operational Risks

  • System downtime
  • Process failures
  • Human errors
  • Resource constraints

Vendor Risks

  • Third-party breaches
  • Service interruptions
  • Contract violations
  • Dependency risks

Financial Risks

  • Fraud
  • Revenue loss
  • Cost overruns
  • Currency exposure

Registry Management

Adding Risks

Click "Add Risk" to create new entries:

  1. Enter risk details
  2. Assess likelihood and impact
  3. Assign owner
  4. Link to gaps if applicable
  5. Save

See Adding Risks for details.

Updating Risks

Click the Risk

Open the risk detail view.

Click Edit

Modify any risk property.

Update Fields

Change status, severity, owner, or details.

Save Changes

All changes are logged in the audit trail.

Closing Risks

When a risk is no longer relevant:

  1. Open the risk details
  2. Change status to "Closed"
  3. Add closure notes explaining why
  4. Risk moves to closed view

Don't delete risks to keep a clean registry. Close them instead. Deleted risks lose all history and audit trail.

Exporting the Registry

Export your risk data for reporting:

  1. Apply desired filters
  2. Click "Export"
  3. Choose format (CSV or PDF)
  4. Select columns to include
  5. Download

Export Uses

  • Management reporting
  • Board presentations
  • Audit evidence
  • Backup purposes

Registry Health

Signs of a healthy registry:

IndicatorHealthyConcerning
Open risksReasonable countExcessive backlog
Age of risksRecently reviewedStale, untouched
Owner assignmentAll risks ownedMany unassigned
Status updatesRegular progressNo movement

Maintaining the Registry

  • Review all risks monthly
  • Archive closed risks quarterly
  • Reassess severities annually
  • Clean up duplicates regularly

Saved Views

Create saved views for common filters:

Example Views

View NameFilters
My RisksOwner = Me
Critical OpenSeverity = Critical, Status = Open
Security RisksCategory = Security
Needs OwnerOwner = Unassigned

Creating a View

  1. Apply filters
  2. Click "Save View"
  3. Name your view
  4. Access from Views dropdown

Common Questions

Can I import risks?

Yes. Use the import feature:

  1. Download the template CSV
  2. Fill in your risk data
  3. Upload the completed file
  4. Review and confirm import

How do I merge duplicate risks?

  1. Identify the duplicate
  2. Copy relevant information to the primary risk
  3. Close the duplicate with a note
  4. Link related items to the primary

Who can edit risks?

  • Admins can edit any risk
  • Risk owners can edit their risks
  • Team members can add risks
  • Viewers can only read

Next Steps

On this page