Is it possible to have a separate risk assessment methodology for each risk within an entity?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
09-26-2023 02:43 AM
Is it possible to realize the following requirements?
・I would like to use the same risk methodology for the same risk (generated by the same risk statement) for different entities.
・I would like to use different methodologies for each risk within an entity.
The following is the data structure
Entity ①
- Risk A
- Risk B
- Risk C
Entity ②
- Risk A
- Risk B
- Risk C
In other words, I want to use Methodology A for Entity ① Risk A and Entity ② Risk A, and Methodology B for Entity ① Risk B and Entity ② Risk B.
The barrier to achieving this requirement is that one primary risk assessment methodology is set up for an entity class, and risk scores only reflect the results of risk assessments made in that primary risk assessment methodology.
Can only one risk assessment methodology be used for essentially one entity class?