Process for ongoing monitoring    

The organisation has a process for the regular update of its risk profile for changes to its internal and external risk environment.

An effective process for the regular review and update of the risk profile would typically:

  • Take into account all risks identified by the organisation, with more rigorous review of significant risks.
  • Identify, respond to and escalate, to appropriate parties, significant changes in the risk profile.
  • Be continuous and iterative to ensure the risk profile is up to date.
  • Be triggered by changes in the organisation's risk environment, both internal and external.
Last updated on 09 May 2007