- work in progress -

Skip to end of metadata
Go to start of metadata

After creating a requirement, a Risk Identification Object (RIO) is automatically created for each affected building block. These objects has a reference to the requirement, as well as to the building block, and it stores the information on the building block owner(s), the requirement fulfillment and who entered the information at that time. After the risk identification objects were created, security surveys are sent to the building block owners.

All the RIOs that have the status "Not Fulfilled" or "Exception" result in a risk being created. This risk will have a reference to the requirement as well as the building block that it affects. A risk always refers to one building block. A generated risk gets its owner from the requirement it references.

You can get to the risks page from the "Security" tab on the home page.

Risks List View

The toolbar for the list contains different categories (2-5) for a better overview.

  1. List view tab
  2. Filter Category:
    1. Number of filtered elements to maximum elements
    2. Quick search
    3. Show only active risks filter switch
    4. Reset button to reset only the Filter Category (only visible if the list is filtered)
  3. View Category:
    1. Add a column
    2. Reset button in the right upper corner to reset only the View Category (only visible if the view is not the default state)
  4. Use for Category:
    1. Export the current list  
  5. Reset Category:
    1. Resets Filter- and View-Category and resets the selected Query
  6. The risks list

Clicking on the risk name in the list opens this risk in the single view tab.

Risks Single View

  1. Risk select dropdown - contains list of all risks. The details of the selected risk are displayed in the details view (3). You can type part of risk name for the quick search.
  2. Risk "Activate"/"Deactivate" button - changes the risk's "Status" property between "Active"/"Inactive". The deactivated risks will not be part of security surveys anymore.
  3. Risk "Delete" button - deletes current risk
  4. Risk details view. Contains all the risk fields and their values. Reference-type fields, like "Requirement", "Affected Building Block", "Solution through action" are links to single-views of corresponding entities.
  5. History section and the history load button. Is available when historicization is enabled in the system settings.


  • No labels