unified

UC-RISK-07 — Identify and analyze risks and opportunities to objectives

Risks and strategic opportunities (positive risks) are systematically identified at entity and process levels, and each identified risk is analyzed for likelihood and potential impact using the best available historical, current, and forward-looking information. Severity is assessed with consistent scales to support comparison across the risk universe. Results, sources, and analysis assumptions are recorded.

Record JSON · Open in map · Data retrieval guide

Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.

Attributes

domain
Risk Assessment & Management
type
preventive
category
administrative

Details

unified_id
UC-RISK-07
title
Identify and analyze risks and opportunities to objectives
statement
Risks and strategic opportunities (positive risks) are systematically identified at entity and process levels, and each identified risk is analyzed for likelihood and potential impact using the best available historical, current, and forward-looking information. Severity is assessed with consistent scales to support comparison across the risk universe. Results, sources, and analysis assumptions are recorded.
domain
Risk Assessment & Management
control_type
preventive
control_category
administrative
members
  • framework
    iso-31000
    control_id
    31000-PR3
    coverage
    full
    relationship
    superset_of
  • framework
    iso-31000
    control_id
    31000-PR4
    coverage
    full
    relationship
    superset_of
  • framework
    iso-31000
    control_id
    31000-P6
    coverage
    full
    relationship
    superset_of
  • framework
    coso-erm
    control_id
    E10
    coverage
    full
    relationship
    superset_of
  • framework
    coso-erm
    control_id
    E11
    coverage
    full
    relationship
    superset_of
  • framework
    nist-csf-2
    control_id
    ID.RA-04
    coverage
    full
    relationship
    superset_of
  • framework
    nist-csf-2
    control_id
    GV.RM-07
    coverage
    full
    relationship
    superset_of
guidance

    Source

    No record-specific source URL is provided.

    Connections