Risk Types
Through the risk identification process, three levels of risk can be measured. The names of these can be customised.
Default names;
- Absolute - The risk if no controls were in place. Can be replaced with Inherent or Gross.
- Residual - The current risk taking into account existing controls. Can be replaced with Controlled or Current.
- Target - The projected risk once the proposed controls are implemented. Can be replaced with Treated or Proposed.
Back to Enterprise Risk Management or Configuration for Information Security.
