Skip to main content

Get help for ARIS Risk and Compliance

Regulation hierarchy

The regulatory hierarchy is used to model laws or other legal acts of a regulatory nature. Such regulations generate regulatory requirements for the organization. Use the Regulation model model type and the objects Regulation, Regulation chapter, and Regulation clause to model regulations. The hierarchy between these objects is represented by the contains connection. Regulations can be structured using the Regulation category object. The hierarchy between regulations is represented by the encompasses connection. In ARIS Risk and Compliance, only a tree structure for hierarchies is allowed. Therefore, each hierarchy element can only have one superior hierarchy element.

Object-specific control auditors and control test auditors can be modeled using this hierarchy type. These roles have read access to the control executions and control tests assigned to the hierarchy. The relation between the object-specific auditor role and the hierarchy is represented by the is owner of connection.

Regulation hierarchy structure

Attributes included into the data transfer

ARIS attribute

M*

Notes

Name

X

Short description

Description/Definition

Sign-off-relevant

Used for Sign-off Management.

Review-relevant

Used for Regulatory Change Management.

*The M column specifies whether the attribute is a mandatory field.