Every assessment uses the same guided steps. Work through them in order; the header shows how far you've got (N% complete). Use Continue to move on and Back to return. Changes autosave — you'll briefly see Saving changes….
1. Hazards & scores
Set the context, then list the hazards:
Description — what the assessment covers.
People at risk — placeholder e.g. Kitchen staff, contractors, visitors.
Add hazard — dialog Add hazard / Edit hazard, field Hazard detail, then Add hazard or Save changes.
For each hazard, open Set scores (or View scores) and set the Initial score: Severity and Likelihood (each 1–5). ASR shows the Initial risk score and risk band.
Hazards may show From template or Custom. On a site assessment, initial scores that came from the organisation can be locked, with a note that The Initial Score is set at the Organisational Level.
2. Controls
Under Controls, record what's already in place. Choose Add control — dialog Add control / Edit control, field Description.
The left rail lists Hazards in this assessment so you can keep controls tied to the right hazard.
3. Residual Scores
Re-score each hazard after controls: Severity and Likelihood again. You'll see Initial risk vs Residual risk, and notes such as Reduced by N or Residual not assessed.
Where residual risk remains, add follow-up under Actions on the Residual Risk with Add action:
Title
Description (optional)
Due date (optional)
Owner — required if the assessment itself has no owner yet
Actions may be grouped as Immediate, Corrective or Escalation.
You can also start linking Supporting documents here — see How to link supporting documents to a risk assessment.
4. Summary
The Risk Assessment Summary brings it together: Risk outcome, Review due, People impacted, plus metrics for Score reduction, Hazards, Controls and Open actions.
You'll also see the lists of hazards, controls, residual actions and supporting documents.
Under Review schedule, set:
Assessment owner
Review interval (months)
When you've checked the live assessment, use Record review date — confirm in Record review date? with Record date.
Editing vs read-only
Once published, the session may show Read-only. Choose Edit to make changes, then publish a new version when ready. See How to publish a site risk assessment and manage versions.