Press ESC to close or Enter to search

Home
About Us
Services
Pricing
Tools
Resources
Contact
Get Started
Live Security Feed
Your IPDetecting...
NCSCUK organisations urged to strengthen cyber defences ALERTPhishing attacks targeting Microsoft 365 users on the rise CISACritical vulnerabilities identified in popular software NEWSRansomware groups increasingly targeting SME businesses NCSCNew guidance released for securing remote workers ALERTBusiness email compromise attacks cost UK firms millions CISAZero-day exploits require immediate patching attention NEWSAI-powered threats becoming more sophisticated in 2025 NCSCUK organisations urged to strengthen cyber defences ALERTPhishing attacks targeting Microsoft 365 users on the rise CISACritical vulnerabilities identified in popular software NEWSRansomware groups increasingly targeting SME businesses NCSCNew guidance released for securing remote workers ALERTBusiness email compromise attacks cost UK firms millions CISAZero-day exploits require immediate patching attention NEWSAI-powered threats becoming more sophisticated in 2025
View Dashboard

Inherent Risk

GRC

Risk level before any controls or risk treatment measures are applied.

Inherent risk is the risk level that would exist if no controls were in place—the raw exposure before treatment. Assessing inherent risk helps understand the value of existing controls and prioritise where controls are most needed. The difference between inherent and residual risk demonstrates control effectiveness. Some frameworks assess inherent risk first, then evaluate how controls reduce it to residual levels.

Why It Matters

The DSC Perspective:

Inherent risk assessment shows where your greatest exposures are and demonstrates the value of your controls. It helps justify security investments by showing the risk reduction achieved.