Skip to main content

Risk Assessments: how they work in ASR

Understand organisation templates versus site assessments, where to find them, and the path from draft to live.

D
Written by Darragh Jones

Risk assessments are how you identify operational hazards, score the risk, record the controls already in place, and decide what residual risk remains — with a clear owner and review schedule.

This article explains the two kinds of assessment you'll meet, where to find them, and the basic path from draft to live.

Where to find them

Go to Standards > Risk Assessments. The page title is Risk Assessments, with the subtitle Create and edit operational risk assessments with hazard-focused steps.

Your Reporting page may also show a Risk assessments card with counts for high/critical risk, overdue review, and reviews due in 7 days, plus View all risk assessments.

If Risk Assessments doesn't appear under Standards, the feature isn't enabled for your organisation yet — ask your administrator.

Organisation templates and site assessments

There are two related things, and it helps to keep them separate:

  • Organisation templates — the master assessment for the whole organisation (shown as Org-wide on the list). Admins approve them and send copies out to sites.

  • Site assessments — the version that applies at a specific site. Teams refine hazards, controls and residual scores for local reality, then publish.

Filter the list by Scope to show only Organisation templates or only Site assessments.

You can also start a blank assessment with New assessment when you need something that isn't coming from a template. See How to start a risk assessment.

A typical workflow

  1. Open or create an assessment and work through the steps: Hazards & scores, Controls, Residual Scores, then Summary.

  2. Link any SOPs or evidence under Supporting documents.

  3. For a site assessment, choose Publish assessment when it's ready (version 1 becomes Active).

  4. For an organisation template, an admin uses Approve & publish (or later Propagate to sites) so sites receive their copies.

  5. Set an Assessment owner and Review interval (months), and use Record review date when you check it.

Who can do what

  • View — most roles, within their site access. Organisation templates are mainly for admins, auditors and area managers.

  • Create and edit site assessments — admins, auditors, area managers, site managers and members (site scope applies).

  • Approve & publish organisation templates — admins only.

  • Delete — admins only.

  • Viewers — can look, but cannot create, edit or publish.

Details are in Who can view, edit, approve and delete risk assessments.

Related articles

  • How to complete the risk assessment steps

  • How to publish a site risk assessment and manage versions

  • How organisation templates are approved and sent to sites

  • Risk assessment statuses explained

Did this answer your question?