CAQA Risk brings strategic, operational, project, financial and cyber risk into one governed register — with the controls, treatments, appetite statements and indicators that keep leaders ahead of what could go wrong.
Part of the CAQA ERP suite and the GRC family — built by CAQA Groups.
From the risks you name at board level to the indicators that watch them overnight — every function reads and writes the same governed register.
Register and rate the risks that threaten organisational objectives, direction and reputation.
In detail →Capture day-to-day exposure across processes, people, facilities and service delivery.
In detail →Track delivery risk inside every initiative — scope, schedule, resourcing and dependencies.
In detail →Record and rate cashflow, credit, liquidity, budget and market exposure.
In detail →Assess threats to systems, data, privacy and continuity alongside the controls that defend them.
In detail →Map the safeguards already in place to the risks they mitigate, with effectiveness ratings.
In detail →Run treatment plans as real work — actions with owners, due dates and progress to completion.
In detail →Turn board-approved tolerance statements into boundaries the register enforces.
In detail →See the whole risk profile at a glance — likelihood by consequence, by unit or organisation-wide.
In detail →Watch measurable thresholds that warn before a risk materialises.
In detail →Keep the register honest with scheduled, evidenced re-assessment cycles.
In detail →Route breaches and stalled actions to the right owner, committee or executive automatically.
In detail →Log risks into governed registers across strategic, operational, project, financial and cyber categories — from any team, in plain language.
Rate likelihood and consequence on shared scales, map the results on live heat maps and test every rating against your stated risk appetite.
Assign controls and treatments with named owners and due dates, and track each action through to evidenced completion.
Key risk indicators, scheduled reviews and automatic escalations keep the register live between board cycles.
CAQA Risk is part of the GRC family. It works alongside CAQA GRC, the umbrella governance platform, which brings governance, risk and compliance together in one place.
CAQA Risk is one module of the CAQA ERP suite — sharing its people, data and design language with the rest of the family, so risk sits beside the systems your teams already run.
Tell us how risk is managed today and we’ll walk you through what a governed register would look like for your organisation.
See Your Risk PictureTo Receive Updates And Offers