Level 3
Category: Project and Work Management
SG 1 Prepare for Risk Management
SP 1.1 Determine Risk Sources and Categories
SP 1.2 Define Risk Parameters
SP 1.3 Establish a Risk Management Strategy
SG 2 Identify and Analyze Risks
SP 2.1 Identify Risks
SP 2.2 Evaluate, Categorize, and Prioritize Risks
SG 3 Mitigate Risks
SP 3.1 Develop Risk Mitigation Plans
SP 3.2 Implement Risk Mitigation Plans
Risk source lists (external and internal)
Risk categories list
Determine risk sources.
Determine risk categories.
Risk evaluation, categorization, and prioritization criteria
Risk management requirements (e.g., control and approval levels, reassessment intervals)
Define consistent criteria for evaluating and quantifying risk likelihood and severity levels.
Define thresholds for each risk category.
Define bounds on the extent to which thresholds are applied against or within a category.
Risk management strategy
None
List of identified risks, including the context, conditions, and consequences of risk occurrence
Identify the risks associated with cost, schedule, and performance.
Review environmental elements that can affect the work.
Review all elements of the work breakdown structure as part of identifying risks to help ensure that all aspects of the work effort have been considered.
Review all elements of the work plan as part of identifying risks to help ensure that all aspects of the work have been considered.
Document the context, conditions, and potential consequences of each risk.
Identify the relevant stakeholders associated with each risk.
List of risks and their assigned priority
Evaluate identified risks using defined risk parameters.
Categorize and group risks according to defined risk categories.
Prioritize risks for mitigation.
Documented handling options for each identified risk
Risk mitigation plans
Contingency plans
List of those who are responsible for tracking and addressing each risk
Determine the levels and thresholds that define when a risk becomes unacceptable and triggers the execution of a risk mitigation plan or contingency plan.
Identify the person or group responsible for addressing each risk.
Determine the costs and benefits of implementing the risk mitigation plan for each risk.
Develop an overall risk mitigation plan for the work to orchestrate the implementation of individual risk mitigation and contingency plans.
Develop contingency plans for selected critical risks in the event their impacts are realized.
Updated lists of risk status
Updated assessments of risk likelihood, consequence, and thresholds
Updated list of risk handling options
Updated list of actions taken to handle risks
Risk mitigation plans of risk handling options
Monitor risk status.
Provide a method for tracking open risk handling action items to closure.
Invoke selected risk handling options when monitored risks exceed defined thresholds.
Establish a schedule or period of performance for each risk handling activity that includes a start date and anticipated completion date.
Provide a continued commitment of resources for each plan to allow the successful execution of risk handling activities.
Collect performance measures on risk handling activities.