0
23.0.5
Australia Patch 5, Australia Patch 3, Australia, Zurich Patch 12, Zurich Patch 7, Zurich Patch 4, Zurich, Yokohama Patch 12, Yokohama Patch 9, Yokohama Patch 6, Yokohama Patch 2, Yokohama
Standalone Application
The Risk workspace allows the IT Risk Manager and the Operational Risk Manager to view the overall risk posture for your organization, track time-sensitive issues and major losses, and control deficiencies that may increase risks for your organization.
The workspace allows risk managers to:
- Define and manage their organizational risk and control taxonomy.
- Perform risk assessments.
- Assess controls based on design and operational effectiveness.
- Monitor the operational losses and performance of the Key Risk Indicators (KRIs) and the Key Control Indicators (KCIs).
The central issue management capability allows to define a plan of action for remediation and ensure the control gaps are corrected early.
The new user experience highlights the following:
- A default Home page for each user persona displaying actionable insights and quick links.
- A well-organized navigation menu listing modules based on the requirements of each user persona.
- Reimagined conversational risk assessments experience for business users.
- A unified task page to manage and complete GRC tasks efficiently.
- A new visualization that provides a 360° view of GRC relationships.
- Reimagined page layout with contextual information in the side panel for users to complete their tasks more efficiently.
- Record pages that provide a holistic view and actionable insights specific to what is being viewed.
- Persona-based home pages for IT-Risk, Op-Risk, and Business Risk Managers to manage their work efficiently.
- Manage all tasks assigned to a user and their groups from the consolidated task landing page.
- Contextual information about a record to indicate when you need a new 360° relationship viewer and side panels in the records.
- Manage and remediate issues from the comprehensive issue landing page.
- Playbook for seamlessly collecting risk information from first line through guided risk identification workflow.
- Guided experiences for scheduling and managing risk assessments in risk assessment scope and scheduler using the playbook.
- A conversational redesigned guided experience for risk and control assessments with enhanced configurability.
- Redesigned risk heatmap for monitoring and reporting of risk posture.
- Automate risk reporting to senior management and improve risk analysis by visualizing risk trends and movements on the heatmap workbench.
- Review and respond to the metric data efficiently using the Grid UI to provide bulk response and approval for metrics.
- WCAG 2.1 AA compliance making it accessible to all users.
- Enabled Autosave functionality on risk assessment for better user experience.
- New Formula builder in Metric definitions.
- Bulk approval and reassign of risk assessments.
Entity Wise Risk Profile Matrix:
- Matrix Report is a configurable grid-based view in the risk workspace that displays entity-linked data like risks, controls, KRIs, and events. Accessible from the landing and entity pages, it centralizes key details for quick analysis. Users can tailor columns to view relationships clearly and efficiently.
- Risk data is often scattered, making it hard to get a full view of an entity’s risk profile. The Matrix Report brings all related information into one place. This reduces time spent switching views and helps risk managers assess data easily.
- Boosts efficiency by unifying risk insights, helping identify gaps faster. The report improves visibility and supports quicker, informed decisions. This leads to more proactive and streamlined risk management.
New
- Risk assessment projects now support multiple entities. Assessors can perform assessments across several entities within the same project.
- Added an ability to redefine context after Risk assessment project is created.
- Comments can now be configured as mandatory in risk assessments. Administrators can set comments as required for individual factors, group factors, and overall assessment types.
- Added module for "In progress" risk assessments.
- Users with the sn_risk_advanced.ara_planner role can now reassign any risk assessment.
- Users with the sn_risk_advanced.risk_asmt_project_manager role can now reassign risk assessment projects from the record view.
- Added a confirmation modal when retiring a Risk Identification record to prevent records from being retired by mistake.
- Added filtering, sorting, and ability to configure custom columns to GRID mode risk assessments.
Changed
- Improved the load time of assessments in the Risk assessment project grid view. The default page size has changed from 8 to 20.
- Improved the load time of Heatmap workbench.
- Updated Risk Identification configuration to use smart assessment by default.
- Renamed existing Risk Register module to Monitor.
Fixed
- Fixed an issue where the Approve and Reject buttons were not visible on the Risk Workspace approval record.
- Fixed styling issues on the IT Risk Manager home page.
- Fixed an issue where the Risk Statements list header showed only the Risk Statement label. The header now includes the rating label used to filter the list.
- Fixed an issue where Smart Assessment creation failed in the Risk Identification workflow when the template contained a large number of questions. Assessment creation is now asynchronous and completes before the workflow proceeds.
Not applicable for this application version.
The following applications are installed automatically when you activate the Risk Management Workspace application:
- GRC: Risk Management (com.sn_risk)
- GRC: Common Workspace Elements (com.sn_grc_workspace)
Permissions and roles:
Role required to install the app: System Admin (admin)