Reviewing and Uploading Risks
This guide ensures your security documentation remains updated by showing you how to link specific vulnerability mitigations to critical business risks.
To review your organisation’s risks, select Risk Register from the main navigation bar.

Select the risk you wish to review or update from the register and it will open a side panel.

You can update any details within the side panel.
Update the Title and Description: Make the risk name more descriptive as your understanding evolves. You can also adjust the risk description to provide further detail about it.
Adjust the Category: Switch the risk between Operational, technical, Legal, or Financial if it was categorised incorrectly at the start, or the risk has evolved.
You can also change the Treatment decision, and adjust the Likelihood, Impact, Residual Likelihood, and Residual Impact of the risk.
Note: Residual score get calculated automatically based on the Residual Likelihood and Residual Impact.
Status: You can change the status of the risk accordingly whether it is open, mitigated, accepted, or transferred.
Review Date: Use this field to set a follow-up date, ensuring the risk is regularly monitored rather than forgotten.

Under the Linked Treatments, click Link an existing treatment.
Note: To add new risk mitigation strategies/treatments, please refer to our dedicated article on Adding & Managing Treatments.

Selecting that will open a list of appropriate treatments. Once you’ve found the right match, click on the treatment.

Click Link button, once you find the right treatment.

After you’ve update the details and linked your treatments, don’t forget to click the Save button in the top-right corner of the panel. This will ensure that your Risk Register and Heat Map stay updated with this current information.

Deleting the Risk
In order to delete the logged risk, click the delete icon located in the top-right corner of the panel.

Then click on the Delete risk button and it will delete the risk from the Risk Register.
