Skip to content
English
  • There are no suggestions because the search field is empty.

Mapping Controls for Risk Management

The objective of this SOP is to map relevant risks, rules, or business processes related to a control to understand how this control can help achieve the business's goals effectively.

This guide walks you through how to map a control by configuring its associated business processes, risks, applications, external service providers, and accountability statements. Follow the steps below to complete the mapping accurately.

Key Steps:

  1. Enter Relevant Business Processes:
    • Go to the configuration tab and enter the relevant business processes.
  2. Create a New Risk for the Control:
    • Within the Control section, select Create New Risk and associate it with the relevant control.
  3. Add Applications Used in the Control:
    • Specify the applications that are used in this control. Multiple applications can be added.
  4. Include External Service Providers:
    • Add any external service providers involved in the control process.
  5. Provide Accountability Statements:
    • Lastly, include accountability statements for clear ownership and responsibility.

Cautionary Notes:

  • Ensure the business processes you enter are accurate, current, and reflect the latest operational workflows.
  • Review all applications, external service providers, and accountability statements to confirm they are complete, accurate, and up to date before saving.

Tips for Efficiency:

  • Utilise the sorting feature to organise risks effectively.
  • Regularly review and update your control mappings to ensure they remain aligned with current business goals, risk appetite, and any organisational changes.

Watch a video demonstration: