What is a risk register?

Prepare for the ServiceNow Integrated Risk Management (IRM) Test. Utilize flashcards and multiple choice questions, each offering hints and explanations. Ensure your success on the exam!

Multiple Choice

What is a risk register?

Explanation:
A risk register is the central, living catalog of risks that have been identified across the organization. It stores each risk with essential details—description, owner, likelihood, impact, and a risk rating—plus information about current status, evidence of controls, and any planned or completed mitigation actions. This makes it a single source of truth for monitoring risk over time, enabling prioritization, reporting to governance bodies, and tracking how controls reduce risk to acceptable levels. It’s not a place for unidentified risks, nor a repository of risk frameworks, nor only a collection of risk statements; the register’s value comes from recording identified risks and how they are being managed.

A risk register is the central, living catalog of risks that have been identified across the organization. It stores each risk with essential details—description, owner, likelihood, impact, and a risk rating—plus information about current status, evidence of controls, and any planned or completed mitigation actions. This makes it a single source of truth for monitoring risk over time, enabling prioritization, reporting to governance bodies, and tracking how controls reduce risk to acceptable levels. It’s not a place for unidentified risks, nor a repository of risk frameworks, nor only a collection of risk statements; the register’s value comes from recording identified risks and how they are being managed.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy