Featured guide
Create and assess a risk
Learn how to complete CIA and FAIR assessments, add controls, assign treatment actions and manage risk exceptions.
Read the guideBuild the Asset register, consume centrally managed provider data, review technical exposure and supply governed Asset context to Risk, Controls and TPRM.
Assets are created or imported, classified and valued, enriched by connected technical evidence, and then used in Risk, Control and third-party workflows.
Create manually or import from CSV.
Choose class, category, type, owner and lifecycle.
Complete confidentiality, integrity and availability ratings.
Review applicable organisation Controls and Asset-level implementation.
Review imported technical findings, evidence and vulnerability lifecycle where integrations are connected.
Link selected technical evidence to Risk and maintain relevant third-party dependencies.
Create dependable Asset data and use it as governed context for the wider platform.
Create Assets from scratch or use the CSV import workflow for larger inventories.
Risk contextMaintain lifecycle and Asset Control context, then initiate the appropriate Risk assessment.
Technical exposureConfigure the provider centrally in Admin → Integrations, inspect grouped findings and evidence, then link selected technical vulnerabilities to Risk.
Download the practical implementation handbook or the detailed technical reference for this module.
Practical first rollout from taxonomy and CIA setup through integrations, vulnerability review, Controls and Risk linkage.
Technical referenceArchitecture, integration runtime, vulnerability data model, Asset workspace, security, deployment and regression reference.
CIA valuation is a starting point for Risk, while taxonomy, vendor references and explicit links also support Control applicability and TPRM discovery.
No guidance matches that search.