🎉 VSEC Test v4.0.1 is now live! Release Notes ↗

Risks

A risk is an atomic, evidence-driven finding in your workspace. Risks have an origin (Design, Test, or Monitor), one or more assets (one of them primary), and progress through a status lifecycle from intake to closure. Scoring derives from attached evidence as Inherent and Residual values computed from the evidence model.

Risk Lifecycle

All risks start in Triage regardless of type. From there:

  • Accept moves the risk to Open.
  • Archive hides it from the default list (reversible — see Archived risks).

Once open, risks advance through OpenWIPIn ReviewClosed. Archive is available from any state, not just Triage — archiving a risk that is already past Triage moves it out of the active view in one step without changing its lifecycle status.

These are the status labels on the Risk Details page (Triage, Open, WIP, In Review, Closed). The risks list displays a remapped status per origin: Design and Test rows show Open, In Progress, or Closed, while Monitor rows can also show Triage.

In This Section

Last updated on