1. Which formula is commonly used to express risk in a compliance context?
In risk management, one common model expresses risk as the product of threat, vulnerability and impact. This helps organisations prioritise risks and allocate resources accordingly. By quantifying risk this way, teams can identify which combinations of threat and vulnerability result in greatest impact and then design appropriate controls or mitigation plans.