Governance & assurance
Risk assessment
Published Reviewed
A risk assessment is the systematic identification, analysis, and evaluation of risks against defined criteria, producing a prioritised basis for decisions and controls. It is the load-bearing step in nearly every compliance framework — ISO 27001 builds the ISMS on it, NIS2 demands an all-hazards version, AML law requires a business-wide one — and regulators judge it on evidence: what was considered, what was decided, and why.
Läs definitionen på svenska: Riskbedömning
Where this term does its work
Related terms
This definition is general information, not legal advice. Always verify the current official source.