Skip to main content
Risk Register

Overview

The Risk Register is the central workspace for identifying and managing project risks. It tracks each risk’s probability, cost and schedule impact, mitigation plans, and status throughout the project lifecycle. The register is organized into collapsible sections: the main risk grid, heatmaps, and burn down / analytics charts.
The cost and schedule Monte Carlo simulation now lives on the Risk Analysis page, where it runs as one unified engine over these same risks. See How the Dash360 Monte Carlo Works for the full methodology.
URL: /Risk/RiskRegister/Index

Video walkthrough

A full tour of the Risk Register: adding and editing risks, the Risk and Mitigated Risk impact model, heat maps, delta analysis, and the burn down charts.
Setting the register up for the first time (risk IDs, categories, types, and thresholds) is covered separately in How to Set Up Risk.

Prerequisites

  • A project must be selected to view the Risk Register.
  • To add or edit risks, your account must have Full Access to the Risk module for the selected project. Accounts with Read-Only access can view risks but cannot make changes.
  • Risk ID Prefixes must be configured before adding risks. An administrator sets these up in Admin > Projects > Edit Project. Examples: PR-, SED-, RISK-.
  • Risk thresholds (Cost, Probability, and Schedule) must be configured for the project before the Add/Edit modal can be opened. If thresholds are missing, an error message appears and the modal does not open.

Risk Register Table

The filter bar

Risk Register A floating filter bar controls which risks are shown. It is collapsed by default to a compact Filters pill that rides on the Project: row and stays pinned as you scroll. Click it to expand the full bar, which shows a “Showing X of Y risks” count, the active filters as chips, and Change Filters and Clear all buttons. A read-only Project chip is always shown so the selected project is visible at a glance. The same controls are also available from the left-menu Risk Register Filters flyout. The two filters surfaced by default are:
  • Risk Status (multi-select): one or more statuses to show. Defaults to Active.
  • Classification: Threats Only, Opportunities Only, or All. Defaults to Threats Only.
The flyout also offers WBS, Work Package, Risk ID, Risk Category, Risk Type, and a “Not Reviewed/Updated Since” filter. Changing any filter also updates the heatmaps to match. Risk Register

Available Risk Status Definitions:

Grid Columns

The grid exposes a large set of columns. Many are hidden by default and can be turned on with the column chooser (see Grid Features). The impact columns come in two parallel sets, Risk (before your response plan) and Mitigated Risk (after it); see Risk Impact Section for how those values are entered.
The Risk and Mitigated Risk labels are configurable per project (they default to “Risk” and “Mitigated Risk”). An administrator can rename them in the project registry, so your project may show different wording throughout the register, the Add/Edit modal, the heatmaps, and the analytics charts.

Identification, mapping, and people

Impact columns (Risk and Mitigated Risk)

Each column below exists twice: a Risk … version (before the response plan) and a Mitigated Risk … version (after it). For example, Risk Probability and Mitigated Risk Probability, or Risk Total Cost Exposure and Mitigated Risk Total Cost Exposure.

Audit and custom columns

Row Actions

Risk Register Each row has four action buttons:

Toolbar Controls

Above the grid, on a single row:
  • Add a New Risk: opens the Add/Edit modal to create a new risk
  • Response Actions Report: opens a report of all response actions across the register (appears once a project is loaded)
  • Expand All Groups / Collapse All Groups: toggles all grouped rows

Add or Edit a Risk

Click Add a New Risk in the toolbar, or click the Edit icon on any existing risk row. Both open the Add/Edit Risk modal, which contains four collapsible sections.

Validation

The following fields are required. Saving without them shows an error and the modal does not close:
  • Risk ID Prefix (add only)
  • Title
  • Risk Category
  • Risk Type
  • Cost Impact
  • Probability
  • Schedule Impact

General Section

Risk Register The General section identifies the risk, classifies it, sets its timing, and maps it to the project structure (WBS, work packages, and schedule activities).
Risk IDs are assigned sequentially at save time and cannot be manually entered on a new risk. The Risk Id and Risk Id Prefix fields are locked (disabled) when editing an existing risk. To change a Risk ID, use Rename Risk ID from the process icon menu.

Activity Mapping

Risk Register The bottom of the General section maps the risk to specific schedule activities. This mapping is what lets the schedule Monte Carlo on the Risk Analysis page apply the risk’s schedule impact to the right activities on the critical path. (A risk with no activity mapping still contributes, but its schedule impact is applied to the project finish directly.)
Activity Mapping is routing, not correlation. It decides where a risk’s schedule impact lands; it does not link risks together. For how mapping differs from Risk-to-Risk and Activity-to-Activity correlation, see Correlation and Activity Mapping.
  • Add Activities: a multi-select of project activities. Choose one or more, then click Add Selected to move them into the Mapped Activities grid.
  • Mapping Mode: how the risk’s schedule impact is routed across its mapped activities:
    • Relative (default): distribute the impact across activities by each activity’s Weight (%).
    • Absolute: apply the full impact to each mapped activity.
  • Mapped Activities grid: lists each mapped activity with its ID, Name, and editable Weight (%), plus a remove button. A running Total is shown; use Normalize to scale the weights so they sum to 100%. A warning appears if the weights do not total 100%.

Risk Impact Section

Risk Register This is where you enter the numbers the Monte Carlo samples. The section is strategy-aware: the Handling Strategy chosen in the General section decides how many columns appear and whether the Mitigated Risk side is editable or auto-derived. The layout is up to three columns: Risk (left), Mitigation Response Actions (middle, shown only for Mitigate and Enhance), and Mitigated Risk (right).
In Lite mode, the fields whose only consumer is a Pro feature (Start Date, Finish Date, and Add Activities, which feed time-phasing, the schedule simulation, and the activity drivers) show a PRO badge, and the Correlation grid column is hidden. In Pro mode all of them are fully available.Probability and Cost Impact carry no badge, because they are the primary inputs to the cost Monte Carlo on both tiers.

Risk column

Risk Register The Risk column captures the risk’s natural-state impact (the effect if the risk fires with no response applied). It is organized into collapsible sub-sections:
The Risk Assessment sub-section appears only when it is enabled in the project registry. If it is turned off, the three narrative fields are hidden.
Risk Register
The Distribution Method options each need different inputs: Single Point uses Most Likely only; Triangular and PERT use Min, Most Likely, and Max; Uniform uses Min and Max only. Auto picks PERT when a Min/Max exist, otherwise Single Point. See How the Dash360 Monte Carlo Works for how each shape is sampled.

Response Actions (Mitigate and Enhance)

Risk Register When the strategy is Mitigate (threat) or Enhance (opportunity), a middle column lists the response actions that move the risk from its Risk state to its Mitigated Risk state. The column header reads Mitigation Response Actions for Mitigate and Enhancement Response Actions for Enhance. Each action carries a Probability, Cost, and Schedule reduction; together they justify the Mitigated Risk numbers. Click Add Response Action to open the editor: The action table totals the response cost and the combined reductions so you can see the net effect at a glance.

Mitigated Risk column

The Mitigated Risk column holds the impact after the planned response. How many columns the section shows, and whether the Mitigated Risk side is editable, depends on the Handling Strategy: Risk Register When shown, the Mitigated Risk column carries the same Probability, Cost, and Schedule sub-sections and Monte Carlo distributions as the Risk column. At the bottom is a Consequence narrative field that captures what happens if the risk occurs. Risk Register
These Risk and Mitigated Risk values, their distributions, and the response actions are exactly what the cost and schedule Monte Carlo samples on the Risk Analysis page. Threats add cost and time; opportunities subtract. See How the Dash360 Monte Carlo Works.

Custom Fields Section

Risk Register Contains custom fields configured for your project’s risk register. Field types include text, textarea, rich text (WYSIWYG), date, radio buttons, checkboxes, dropdown, code file, and CAM. This section is empty if no notebook fields have been configured.

Risk Review

Risk Register The Risk Review section lets a team track the last time a risk was reviewed, even when no values changed. Click Add New Risk Review to record a review: the current date, time, and your user name are stamped automatically, and you can add an optional Review Comment. Past reviews are listed (paginated) in the section, and the most recent review surfaces in the grid’s Last Reviewed Date, Last Reviewed By, and Last Review Comment columns.
The Risk Review section appears only when reviews are enabled in the project registry. It is hidden while adding a brand-new risk (you must save the risk first).

Attachments

Risk Register The Attachements section allows you to add URLs to your risk or attach documents such as PDFs, Word documents or Excel files to your risk (Ex: BOEs). These attachments are then attached to this risk.

Rename a Risk ID

Risk Register To assign a risk a different ID without losing any associated data:
  1. Click the process icon (gear icon) on the risk row.
  2. Select Rename Risk ID.
  3. In the modal, the Existing Risk ID Prefix and Existing Risk ID are shown as read-only.
  4. Select a New Risk ID Prefix: the New Risk ID field auto-populates with the next sequential ID for that prefix.
  5. Optionally edit the New Risk ID manually.
  6. Click Save & Close.

Copy a Risk

Risk Register To create a new risk based on an existing one:
  1. Click the process icon (gear icon) on the risk row.
  2. Select Copy Risk.
  3. In the modal:
    • Select a Risk ID Prefix for the new risk; the Risk ID field auto-populates.
    • Enter a Title for the new risk.
  4. Click Copy & Close.
All data from the source risk is copied to the new risk. Edit the copy to adjust any fields as needed.

Delete a Risk

Click the Delete icon on the risk row and confirm.
Deleting a risk is permanent. All associated mitigation data, notebook entries, and simulation inputs are removed. Consider changing the status to Retired or Deprecated instead if you want to preserve history.

Risk Register Heatmaps

Risk Register Click the Risk Register Heatmaps accordion to expand it. Within a section, three heatmaps sit side by side, each plotting Probability on one axis against a risk dimension on the other: Each cell shows the count of risks falling in that probability/impact range. Clicking any cell filters the Risk Register grid to show only the risks in that range. To clear the filter, use the grid’s filter panel (the funnel icon above the grid). Two controls reshape what these heatmaps show: the Classification filter (which sets of heatmaps appear) and the Response Mode (which values plot in them).

Threat, Opportunity, or both (Classification filter)

Risk Register The Classification filter on the floating filter bar decides which sets of heatmaps render: Each section shows a Showing: N Threats / N Opportunities count so you can see how many risks are plotted. Because threats and opportunities use opposite color scales, “high” always reads as the corner you care about most in either set.

Risk, Mitigated Risk, or Delta (Response Mode)

Risk Register The Response Mode selector (in the left-menu Change Filters flyout) decides which probability and impact values feed the heatmaps. It drives the burn down charts too. Its options are labeled Mitigated Risk, Risk, and Delta (Risk → Mitigated Risk Movement).
The heatmaps always honor the current Risk Status filter as well, so changing any filter on the bar updates them to match. If risk thresholds have not been configured for the project, the heatmaps display a message prompting your administrator to complete the threshold setup.

Delta Analysis

Risk Register The Delta Analysis accordion compares each risk’s Risk state against its Mitigated Risk state to quantify how effective your response plan is. A negative exposure change is an improvement; a positive change is a regression. It honors the current filter bar (classification and status), and only risks that have both Risk and Mitigated Risk values populated are included; the section reports how many of the filtered risks qualify. The section is built from three pieces, followed by a per-risk comparison chart:

Risk vs Mitigated Risk Exposure Comparison

Risk Register Below the summary, this chart plots each risk’s Risk and Mitigated Risk exposure side by side so you can see, risk by risk, where mitigation moved the needle. Two controls shape it:
  • Exposure Type: Cost Exposure or Schedule Exposure.
  • Sort By: Greatest Improvement (default), Risk Exposure, Mitigated Risk Exposure, or Risk ID.

Risk Analytics Burndown

The Risk Analytics Burndown accordion is the time-phased analytics suite for the register. The charts use Mitigated Risk time-phased exposure, so they reflect your residual risk picture after planned responses.
Most of these charts require risks to have a Start Date and Finish Date (and a Spread Type) so the system can time-phase their exposure. They build up over time as risks are created and updated; a brand-new register has limited data until risks have been saved with date ranges and the register has been in use.

When a chart has no data

If your project does not yet have the data a chart needs, that chart is hidden and a single readiness summary appears at the top of the panel, instead of a separate “No Data Available” message on every chart. The summary groups what is missing, tells you how many risks are affected, and gives you a direct way to fix it:
  • Time-phased charts (Burndown, Exposure Distribution Timeline, Risk Count Trend, Exposure Velocity, Opened vs Closed, Exposure by WBS Level, Risk Exposure by Risk ID) need each risk to have a Start Date and a Finish Date.
  • Driver charts (Activity Drivers, Risk Drivers) need Probability and Cost Impact on each risk; Activity Drivers also needs risks linked to schedule activities through Activity Mapping.
Each line in the summary shows a count (for example, “8 of 12 risks need a Start Date and Finish Date set”) and a Show these risks link that filters the Risk Register Table to exactly those risks, so you can open and complete them. Charts that do have data still display, so a partially completed register shows everything it can. Risk Analytics Burndown readiness summary

Analytics filters

The Analytics group in the left-menu Change Filters flyout drives these charts:

Risk Exposure Over Time

Risk Analytics Burndown The main burndown. It plots total cost or schedule exposure over time, broken down by your chosen Group By (Total, Category, Owner, Status, or Type). This is the headline trend for the register: a steadily decreasing line means your mitigation efforts are reducing exposure, while a rising line means risk is accumulating faster than you are retiring it. Switching the grouping lets you see, for example, which category or owner is driving the trend.

Risk Count Trend

Risk Analytics Burndown A line showing the cumulative number of open risks in the project over time. It is a pulse on risk-management activity: an upward trend suggests new risks are being identified faster than existing ones are being closed. Read it alongside Exposure Velocity below, since a rising count does not always mean rising exposure (many small risks can matter less than one large one).

Exposure Velocity

Risk Analytics Burndown A bar chart of the day-to-day change in total exposure. Green bars going down represent mitigation or risk retirement (exposure removed); red bars going up represent new risks or exposure increases. Consistent downward bars indicate active, steady mitigation; large upward spikes flag a major new risk or a realized event. Use it to pinpoint when mitigation slowed or when significant risk events occurred.

Risk Activity (Opened vs Closed)

Risk Analytics Burndown A side-by-side bar comparison of risks opened (orange) versus risks closed (green) in each period. It visualizes the balance between identifying new risks and resolving old ones. Healthy risk management shows activity in both colors, with closures eventually outpacing openings as the project matures.

Exposure Distribution Timeline (Cash Flow View)

Risk Analytics Burndown Rather than total exposure at a point in time, this chart shows when exposure is expected to land within each risk’s timeframe, spread across the project timeline using each risk’s Start/Finish dates and Spread Type. Peaks indicate periods where you may need higher contingency reserves, which makes this the chart to use for budget planning and cash-reserve timing.

Exposure by WBS Level

Risk Analytics Burndown A pie chart of how risk exposure is distributed across WBS elements at the level you select. The WBS Level selector (Level 1 through 5) drills between a summary view and a detailed view, and the Risk Register WBS filter scopes the chart to a parent branch. Larger slices are the higher-risk work areas, which helps you focus mitigation resources and communicate where risk is concentrated by work area.

Risk Exposure by Risk ID Over Time

Risk Analytics Burndown A stacked bar chart where each colored segment is one risk’s exposure contribution in a given monthly or yearly period. Each bar is the period total; the segments show which individual risks make it up. Hover a segment for the risk’s details and amount. Use it to identify persistent high-exposure risks and to track a specific risk’s mitigation progress over time.

Activity Drivers

Risk Analytics Burndown A horizontal bar chart of which schedule activities carry the most risk exposure, with each bar’s segments showing the contribution of every risk mapped to that activity. The Summarized view toggle collapses the stack into a single solid total bar per activity. This view requires risks to be linked to activities through the Activity Mapping section of the Add/Edit Risk form. Use it to prioritize activities for mitigation and to alert activity owners to concentrated risk.

Risk Drivers

Risk Analytics Burndown A horizontal bar chart of which risks contribute the most exposure, sorted highest-first (a Pareto-style view), with each bar showing the associated activity. The Summarized view toggle shows one solid total bar per risk. It requires Probability and Cost Impact on each risk. Use it to quickly see the handful of risks driving the bulk of your exposure so you can direct mitigation where it matters most.

Monte Carlo Simulations

The cost and schedule Monte Carlo has moved to the Risk Analysis page, where one unified engine simulates both the project cost distribution and the project finish-date distribution from the same risks and uncertainty inputs, with modes, a Scenario Planner, contingency decomposition, and a WBS rollup. See How the Dash360 Monte Carlo Works for the full methodology.

Saved Views

The Risk Register grid supports Dash360’s saved views: name and reload a column layout (which columns are visible, their order and widths, grouping, and sort order) so different audiences can each have a purpose-built view. The view selector sits above the grid, split into your own User Views and shared System Views, with options to create a new view, set a default, and import a view. For how to create, load, default, and manage views, see Saved Views.

Grid Features


Exporting

Click the Download icon in the page header to open Export Options, then choose Export as Excel or Export as PDF. Each opens a configurable modal so you can build the exact report you need rather than dumping the whole page. Both modals share the same building blocks: Quick Presets at the top, an optional cover, and a checklist of sections to include, each with its own sub-options. Risk Register Both exports honor the filter bar: the heatmaps, Delta Analysis, and analytics charts in the export reflect whatever Status and Classification filters are active. A summary of the active filters is shown at the bottom of each modal (and can be printed on the cover).

Quick Presets

Presets are one-click starting points; selecting one checks the matching sections, and you can then fine-tune anything (which switches the preset to Custom).

Export as Excel

Risk Register Produces a multi-sheet .xlsx workbook. Options:
  • Cover Sheet: toggle a cover sheet with a Report title (auto-fills the project name), a Subtitle (defaults to “Risk Analysis Report”), a generation timestamp, and an active-filters summary.
  • Sheets to Include (each is a checkbox, with Select all / Clear):
The Risk Register sheet honors the scope choice above; the chart sheets reflect the active filters. Click Export Excel to generate and download the workbook.

Export as PDF

Risk Register Produces a single formatted PDF report. Options:
  • Cover Page: toggle a cover page with a Report title, Subtitle, generation timestamp, and active-filters summary.
  • Layout: Orientation (Portrait by default, or Landscape) and Page size (Letter, Legal, or Ledger; Ledger by default for the wide tables and charts).
  • Sections to Include (with Select all / Clear):
Charts reflect the active filters; the Risk Register Table section renders the filtered risks in their current sort order. Click Export PDF to generate and download the report.
When the modal opens it pre-warms the page’s charts in the background so they are ready to capture by the time you click Export. If a chart has never been rendered (its accordion was never opened), give the export a moment to lay it out.