Risk Register
Disclaimer: risk management is a management responsibility. This skill helps with methodology and documentation; risk appetite, acceptance decisions, and treatment choices require ownership at the management body.
When to use
This skill is methodological, not framework-specific. It is invoked from nearly every other GRC skill — iso27001 (Cl 6.1), soc2 (CC3 Risk Assessment), nis2 (Art 21 first measure), dora (Art 5-14), gdpr-pia (Art 35 via the risk-analysis
[Description truncada. Veja o README completo no GitHub.]