Skip to main content

Get help for ARIS Risk and Compliance

Company assets and GRC structures (hierarchies)

Hierarchies and orphaned objects

Corporate assets, like organizational units, processes, systems, and GRC-related structures, such as risk categories, regulations, and control tester organizations, are available in Hierarchies Hierarchies of ARIS Risk and Compliance. Assets and structures are usually structured hierarchically, but can also exist without a structure. In the latter case, they are displayed in Orphaned objects.

Orphaned hierarchy elements

Only a tree structure is allowed for all hierarchies to be transferred to ARIS Risk and Compliance. This means that each element in the hierarchy can have only one superior item.

Transfer of risk and compliance data

If hierarchy elements are used by any object related to an ARIS Risk and Compliance workflow, for example, a risk or a survey scheduler, the hierarchy elements are transferred including their superior hierarchy tree to ARIS Risk and Compliance. To transfer all hierarchy elements of a model to ARIS Risk and Compliance, set the Transfer to ARIS Risk and Compliance attribute to true.

Top hierarchy structure in ARIS Risk and Compliance

The conventions for the hierarchies of ARIS Risk and Compliance are described in the following. For detailed information on conventions for Data hierarchy, refer to GDPR Conventions for ARIS Accelerators manual, only delivered with the ARIS Accelerators for GDPR package.