> For the complete documentation index, see [llms.txt](https://interfacing.gitbook.io/interfacing-help-files/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://interfacing.gitbook.io/interfacing-help-files/risk-analysts/risk-application/creating-and-managing-risk-assessments.md).

# Creating & Managing Risk Assessments

Perform tasks assigned to your role to advance assessments through the Risk Management workflow.

## Workflow Overview

The **Risk** application operates through a single, standardized workflow: the **Risk Management** workflow. This workflow governs the full lifecycle of a risk assessment, from creation through execution, review, and treatment.

<figure><img src="https://1488562728-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FTx7AmE0d2Q4ja20EYjF5%2Fuploads%2FjWmNtIQcW0nMiHO5wb6o%2FRISK-V112-Workflow.png?alt=media&amp;token=55ff2195-ca03-4e4c-842d-54c53d08827a" alt=""><figcaption></figcaption></figure>

***

## Interactive Tour

Explore the **Risk Management** workflow and learn how each stage works.

{% @howdygo/embed url="<https://app.howdygo.com/share/46a693d4-da3f-4d3f-be69-39721d5c3fab>" %}

***

## Workflow Initiation

A risk assessment can be initiated through either of the following triggers.

{% tabs %}
{% tab title="Triggered by Schedule" %}
A risk assessment may be initiated based on a predefined schedule using the [**Schedule Risk Assessment**](/interfacing-help-files/risk-analysts/risk-application/creating-and-managing-risk-assessments/schedule-risk-assessment.md) form.

This trigger is used for structured, forward-looking risk planning where assessments are defined in advance for a specific period, scope, or process.

On the defined **Start of Assessment Period**, the system automatically initiates the risk assessment and assigns it to the designated lead risk assessor for execution.
{% endtab %}

{% tab title="Triggered Ad Hoc" %}
A risk assessment may be initiated immediately using the **Start Risk Assessment Immediately** form.

This trigger is used for unplanned or urgent risk evaluation needs that require immediate assessment initiation outside the regular schedule.

Upon submission, the risk assessment is immediately created and routed into the execution stage, allowing the lead assessor to begin work without delay. Users may optionally enable immediate risk identification and evaluation at initiation.
{% endtab %}
{% endtabs %}

***

## Workflow Stages

The workflow is organized into **eight key stages**, each with specific roles and responsibilities.

{% hint style="success" %}
For detailed instructions on any stage, click the corresponding button.
{% endhint %}

{% stepper %}
{% step %}

### Define Risk Assessment

> **Performed By:** Assessment Creator (e.g., Risk Manager, Project Manager, Compliance Manager)

#### <i class="fa-calendar-range">:calendar-range:</i>  Scheduled Risk Assessment

Use the **Schedule Risk Assessment** form to define and schedule a risk assessment in advance as part of structured risk planning.

**Responsibilities:**

* Identify the need for a planned risk assessment within the organizational risk framework.
* Define and prepare the risk assessment, including its scope, parameters, and  supporting resources.
* Submit the risk assessment to initiate the workflow at the scheduled start date.

<p align="center"><a href="/interfacing-help-files/risk-analysts/risk-application/creating-and-managing-risk-assessments/schedule-risk-assessment.md" class="button primary" data-icon="calendar-pen">Schedule Risk Assessment</a></p>

#### <i class="fa-rocket-launch">:rocket-launch:</i>  Ad Hoc Risk Assessment

Use the **Start Risk Assessment Immediately** form to initiate a risk assessment without delay.

**Responsibilities:**

* Identify the need for an immediate risk assessment based on operational or emerging risks.
* Define and prepare the risk assessment, including its scope, parameters, and  supporting resources.
* Optionally initiate immediate risk identification and evaluation.
* Submit the risk assessment to immediately start the workflow.

<p align="center"><a href="/interfacing-help-files/risk-analysts/risk-application/creating-and-managing-risk-assessments/start-risk-assessment-immediately.md" class="button primary" data-icon="circle-plus">Start Risk Assessment Immediately</a></p>

***

{% endstep %}

{% step %}

### Execute Risk Assessment

> **Performed By:** Assigned Lead Assessor (e.g., Risk Analyst, Subject Matter Expert, Process Owner)

**Responsibilities:**

* Review the assigned scope, objectives, and assessment parameters.
* Complete any assigned questionnaire supporting structured evaluation.
* Identify, document, and evaluate risks within the defined scope.
* Document supporting analysis, findings, and evidence.
* Define risk treatment actions where applicable (mitigation, control, or avoidance).
* Submit the completed assessment for formal review.

<p align="center"><a href="/interfacing-help-files/risk-analysts/risk-application/creating-and-managing-risk-assessments/execute-risk-assessment.md" class="button primary" data-icon="clipboard-list-check">Execute Risk Assessment</a></p>

***

{% endstep %}

{% step %}

### Review Risk Assessment

> **Performed By:** Assigned Assessment Reviewer (e.g., Risk Manager, Compliance Officer, Internal Auditor)

**Responsibilities:**

* Evaluate the completed risk assessment for completeness and accuracy.
* Provide feedback or request revisions where necessary.
* Approve the assessment for closure or return it to the lead assessor for modification.

<p align="center"><a href="/interfacing-help-files/risk-analysts/risk-application/creating-and-managing-risk-assessments/review-risk-assessment.md" class="button primary" data-icon="magnifying-glass">Review Risk Assessment</a></p>

***

{% endstep %}

{% step %}

### Modify Risk Assessment

> **Performed By:** Assigned Lead Assessor (e.g., Risk Analyst, Subject Matter Expert, Process Owner)

**Responsibilities:**

* Review feedback from the assigned reviewer.
* Make necessary revisions (e.g., update analysis, risks, or treatment actions).
* Resubmit the assessment for further review.

<p align="center"><a href="/interfacing-help-files/risk-analysts/risk-application/creating-and-managing-risk-assessments/modify-risk-assessment.md" class="button primary" data-icon="pen">Modify Risk Assessment</a></p>

{% hint style="warning" %}
This stage is triggered only if the assessment is returned for modification after review.
{% endhint %}

***

{% endstep %}

{% step %}

### Execute Action(s)

> **Performed By:** Assigned Action Owners

This stage includes the **Execute Action(s)** subprocess, which manages all actions required to implement risk treatment activities and mitigation measures. It integrates with the [Action Item Management](/interfacing-help-files/quality-managers/action-item-application/creating-and-managing-action-items.md) workflow.

**Responsibilities:**

* Accept or decline assigned action(s).
* Execute assigned items according to instructions.
* Document progress and provide evidence of completion.
* Report any issues or deviations from the plan.
* Submit completed work for approval.

<p align="center"><a href="/interfacing-help-files/risk-analysts/risk-application/creating-and-managing-risk-assessments/execute-action-s.md" class="button primary" data-icon="rocket-launch">Execute Action(s)</a></p>

{% hint style="warning" %}
This stage is triggered only if specific actions were defined during the workflow.
{% endhint %}

***

{% endstep %}
{% endstepper %}

***


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://interfacing.gitbook.io/interfacing-help-files/risk-analysts/risk-application/creating-and-managing-risk-assessments.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
