The purpose of IPRM assurance is
- To monitor risk responses
- And assess their effectiveness in containing the remaining activity within the tolerance level
Questions to ask
- How well were the original risks defined?
- Are the corresponding responses clearly described?
- Was the risk entry in the Risk Register updated after the event?
- Or closed if it no longer exists?