Risk Management is a module within the KnowBe4 KCM Governance, Risk and Compliance (GRC) platform that is available to Gold and Platinum subscriptions. This module is designed to simplify the processes of identifying, assessing, monitoring, and mitigating the various risks faced by your organization. See our Risk Management Module Guide for an introduction to risk management with KCM GRC.
The Risk Dashboard page provides an overview of the risks that you've added to your risk management module. Navigate to the Risk Dashboard by clicking Risk Management > Dashboard from the navigation panel on the left-hand side of your account.
This article explains the four areas that make up the Risk Dashboard. See the following sections to learn more.
Top Risks
This section of the dashboard displays the top ten risks that your organization faces. The top risks are measured by the risks' inherent risk scores. To learn more about inherent risk scores, see the Inherent Risk Score section of our Risk Scoring article.
Use the arrows in each column header to sort your top ten risks by Risk Status, Likelihood, Impact, Inherent Risk Score, Residual Risk Score, or Date Created.
Top Riskiest Tags
This section of the dashboard provides an overview of the ten tags that hold the highest inherent risk scores from the risks in your Risk Register. The top ten riskiest tags are determined by the combined inherent risk scores of all risks that have the respective tag.
You can create custom risk tags and use them to better organize and easily locate risks in your risk register.
- To learn more about creating and adding tags to a risk, see the Viewing and Editing Risks section of our How to Use Your Risk Register article.
- Alternatively, you can create new tags for your risk management module from the Tags under your Account Settings area.
The table on the left-hand side under the Top Riskiest Tags area includes the details outlined below.
- Tag: The name of the tag.
- Tagged Risk Items: The number of risks that have the tag.
- Score: The total of all inherent risk scores for all risks with this tag.
- Average: The average of all inherent risk scores for all risks with this tag.
The bar graph displays the risk tags and the total of all inherent risk scores for all risks with this tag.
Risk Graphs
This section of the dashboard includes two interactive heat maps that display a matrix for the two risk scores in your account: inherent risk score and residual risk score. Each heat map's X and Y axis reflects the likelihood and impact scoring scales. To learn more, see the Risk Likelihood and Impact section of our Risk Management Module Guide.
Risk Category Overview
This section of the dashboard provides a breakdown of your risks by category. Here, you can view the percentage of risks in each category of your risk register on the Risks by Category graph. You can also view data about the inherent risk score for each category of your risk register on the Inherent Risk Score by Category graph. To learn more about risk categories, see our How to Use Your Risk Register article.
For more information about each graph, please see the descriptions below.
The Risks by Category pie graph shows the percentage of risk for each category. This graph helps you compare the number of risks for the different categories so that you can identify which categories have the largest number of risks. For example, in the graph below, the Operational & Infrastructure category has the largest number of risks. You can use this information to prioritize your compliance efforts in that category.
The Inherent Risk Score by Category pie graph shows the percentage of inherent risk for each category. This percentage accounts for both the average inherent risk score for each category and the total number of risks in each category. This graph helps you compare the inherent risk scores for the different categories so that you can identify which risk categories pose the most inherent risk for your organization. For example, in the graph below, the Operational & Infrastructure category poses the highest inherent risk. You can use this information to focus your compliance efforts on helping to mitigate risks within that category.