1 |
StepCommunications & Consultation
|
Responsible PartyRisk Owner |
Template/Guideline |
Explanatory NotesEngage key stakeholders in risk identification and risk analysis process. Keep the Portfolio and/or Project Board and other stakeholders/partners informed on RM processes at the portfolio and/or project level. |
2 |
StepScope, Context and Criteria |
Responsible PartyPortfolio Developer, Project Developer, Portfolio Manager or Project Manager |
Template/Guideline |
Explanatory NotesIntegrated in Programme and/or Portfolio Document, Project Document, Multi-Year Work Plan. |
3 |
StepRisk Assessment: |
Responsible PartyPortfolio Developer, Project Developer, Portfolio Manager or Project Manager, Portfolio Manager and/or Project Manager |
Template/Guideline |
Explanatory NotesAssess risks during Portfolio/Project Design and as often as needed during implementation, once a year at a minimum. Track in Risk Register. In consultation with relevant stakeholders, identify major risks for the portfolio/project objectives. Analyze likelihood and impact of the portfolio/project risks by applying the ERM Criteria Model and record in Risk Register. Evaluate each portfolio/project risk to determine which risks can be accepted and which risks require a priority treatment in order to meet portfolio/project objectives and avoid harm. |
4 |
StepRisk Treatment |
Responsible PartyPortfolio/Project Developer or Portfolio/Project Manager |
Template/Guideline |
Explanatory NotesIdentify risk treatment measures in Risk Register during portfolio/project design, prior to portfolio/project approval. During implementation, update/confirm risk treatment measures to address changes in context, new information and new risks, as necessary and based on Step 4. Implement identified risk treatment measures. Escalate/transfer the risks that meet any of the escalation conditions to the applicable line management. |
5 |
StepRisk Monitoring & Review |
Responsible PartyRisk Owner |
Template/Guideline |
Explanatory NotesMonitor and review risks at the frequency that is best fit for the risk and complexity of the portfolio/project. Update Risk Register once a year at a minimum. |
6 |
StepRisk Recording and Reporting |
Responsible PartyPortfolio/Project Manager |
Template/Guideline |
Explanatory NotesRisks are to be recorded in ERM Risk Register and risk reporting is integrated in agreed portfolio/project reporting cycle, once a year at a minimum. Portfolio/Project risks presented to the Portfolio/Project Board. |