Risk Registry
8 totalAll identified risks across categories and AI systems
5 AI-identified
| Level | Risk | Score | AI Confidence | Status | |
|---|---|---|---|---|---|
| critical | Unvetted LLM in customer-facing workflow ai·AI | 88 | 94% | pending | |
| critical | Customer PII in unencrypted S3 bucket data privacy·AI | 91 | 97% | in review | |
| high | NYDFS 500.07 access privilege review overdue regulatory | 72 | — human | in review | |
| high | Tier 1 vendor SOC 2 certificate expired third party·AI | 68 | 89% | pending | |
| medium | Model training data provenance undocumented ai·AI | 44 | 78% | pending | |
| high | MFA not enforced on admin accounts cyber | 65 | — human | in review | |
| medium | GDPR Article 30 records incomplete regulatory·AI | 38 | 82% | pending | |
| medium | Patch management lag > 30 days cyber | 40 | — human | remediated |