Skip to main content

Get help for ARIS Risk and Compliance

Risk object

Use the Risk object to model risks. A risk that has the Transfer to ARIS Risk and Compliance attribute set to true is transferred to ARIS Risk and Compliance. Risk assessments are generated only for risks that are enabled for Risk Management by setting the Risk Management-relevant attribute to true.

Attributes included into the data transfer

ARIS attribute

ARCM attribute (deviating)

M*

Notes

Name

X

Serves as internal risk ID.

Risk ID

Key risk

Risk types

The enumeration is available in ARIS Risk and Compliance when the values are set to true.

Description/

Definition

Risk description

Risk catalog 1

Indicates whether the risk belongs to or is taken from a specific catalogue or industry framework.

Risk catalog 2

Indicates whether the risk belongs to or is taken from a specific catalogue or industry framework.

Assertions

The enumeration is set in ARIS Risk and Compliance depending on the values that are set. A dependency of values exists. The first five values cannot occur in combination with the last entry.

Title (1‑4)

Indicates the titles of linked documents.

Link (1‑4)

Indicates the links of linked documents.

ARIS document storage Title (1‑4)

Indicates the titles of linked documents in ARIS document storage.

ARIS document storage link (1‑4)

Indicates the links of linked documents in ARIS document storage.

*The M column specifies whether the attribute is a mandatory field.

Attributes included into the data transfer only if the risk is marked as Risk Management-relevant

ARIS attribute

ARCM attribute (deviating)

M*

Notes

Risk management-

relevant

Indicates whether the risk generates risk assessments.

Assessment activities

Describes the activities to be performed during an assessment.

Assessment frequency

Task frequency

(X)

Specifies the interval within which an assessment is to be performed. This attribute is only mandatory if the Risk Management-relevant attribute is set to true.

Event-driven assessment allowed

Event-driven task allowed

Specifies whether ad hoc assessments are permitted for the relevant objects. Is automatically set to true during transfer from ARIS to ARIS Risk and Compliance if the Assessment frequency attribute is set to Event-driven.

Time limit for execution in days

Time limit for task processing

(X)

Specifies the duration for executing a risk assessment. This attribute is only mandatory if the Risk Management-relevant attribute is set to true. This attribute is not mandatory if the Assessment frequency attribute has the value Event-driven.

Start date of risk assessment

Start date

(X)

Specifies the date as of which risk assessments are generated. This attribute is only mandatory if the Risk Management-relevant attribute is set to true. This attribute is not mandatory if the Assessment frequency attribute has the value Event-driven.

End date of risk assessment

End date

Specifies the date as of which risk assessments are no longer generated.

*The M column specifies whether the attribute is a mandatory field.