Enterprise IT Risk Assessment Form Part I—Description Entity Entity strategic role and objectives Major business processes
IT infrastructure and applications supporting major business processes
Important dependencies
Enterprise IT Risk Assessment Form Part II—Risk Factor Assessment Risk Factor External Environment Market Rate of change Industry/competition Geopolitical situation Regulatory environment Technology status and evolution
Internal Environment Strategic importance of IT for the entity Operational importance of IT for the entity Complexity of IT Complexity of organisation Degree of change Change management capability Risk management philosophy and values Risk Appetite of the entity and justify/explain Operating model
Assessment