Risk assessments are plagued by subjectivity which means they simply cannot be relied upon to meet their objective. Subjectivity prevents risk assessments from being used across business silos and makes verification by audit or compliance review impossible. Subjectivity can be overcome by using a risk assessment template framework with the following best practice attributes:
- Adopt a uniform numerical scale -Use a scale of 1 to 10, Scoring is based on a scale from 1 to 10, with 10 having the most