Case studyFortune 100: 80% less compliance workRead the Story
RiskWatch
Risk support · documentation

Vulnerabilities for Risk Assessment Application

User Guide: Vulnerabilities for Risk Assessment Application Welcome to the Vulnerabilities of our Risk Assessment application! This feature allows users to create, edit and delete the Vulnerabilities. This guide will walk you through the functionality and capabilities of the Vulnerabilities in detail. Overview of Vulnerabilities: In a Risk Assessment product (like SecureWatch or similar platforms), vulnerabilities in the Risk Register represent weaknesses in systems, processes, or controls that could be exploited to increase the likelihood or impact of a risk event.

Updated 2026-05-14DocumentationRiskWatch platform

What is the Vulnerabilities for Risk Assessment Application module in RiskWatch?

User Guide: Vulnerabilities for Risk Assessment Application Welcome to the Vulnerabilities of our Risk Assessment application! This feature allows users to create, edit and delete the Vulnerabilities. This guide will walk you through the functionality and capabilities of the Vulnerabilities in detail. Overview of Vulnerabilities: In a Risk Assessment product (like SecureWatch or similar platforms), vulnerabilities in the Risk Register represent weaknesses in systems, processes, or controls that could be exploited to increase the likelihood or impact of a risk event. It sits inside the RiskWatch risk workspace and shares its data with assessments, the evidence vault, and the audit-pack export so a single change updates every downstream view.

How do I use the Vulnerabilities for Risk Assessment Application screen?

Open the RiskWatch app, navigate to the Vulnerabilities for Risk Assessment Application module from the main menu, and apply the filters or actions described in the guide below. Permissions follow your role profile, so admins see configuration, assessors see workflow actions, and viewers see read-only data. Saved views and filters persist per user across sessions.

Key concepts in this module
VulnerabilitiesOverview of VulnerabilitiesSecureWatchvulnerabilitiesRisk RegisterRisk Register module

User Guide: Vulnerabilities for Risk Assessment Application

Welcome to the Vulnerabilities of our Risk Assessment application! This feature allows users to create, edit and delete the Vulnerabilities. This guide will walk you through the functionality and capabilities of the Vulnerabilities in detail.

  1. Overview of Vulnerabilities:
  • In a Risk Assessment product (like SecureWatch or similar platforms), vulnerabilities in the Risk Register represent weaknesses in systems, processes, or controls that could be exploited to increase the likelihood or impact of a risk event. Identifying vulnerabilities is a critical part of risk management, as they help determine the root causes and exposure level of a risk.
  1. What Are Vulnerabilities in risk register module?
  • Vulnerability is a flaw, gap, or deficiency in a system, process, resource, or control that makes it susceptible to threats.
  • In Risk Register Each risk entry can have one or more vulnerability associated with it to provide context on why the risk exists or how it can be triggered.
  • In the Risk Register module of a Risk Assessment product, vulnerabilities refer to the internal weaknesses or gaps in systems, processes, people, or controls that can increase the likelihood or impact of a risk event occurring.
  1. Vulnerabilities Questionnaires:
  2. How to open vulnerabilities sub module in risk register module?
  • To access and manage vulnerabilities within the Risk Register module of a Risk Assessment product, follow these steps:
  • Step-by-Step Navigation:
  • Log in to the Risk Assessment application using valid credentials.
  • From the Main Menu, go to the Risk Register module.
  • Locate and select a specific risk from the list to view its details.
  • Inside the Risk Details page, navigate to the Vulnerabilities tab or section.
  1. How to create New Vulnerability in Risk Register sub module in Risk Assessment Product?
  • In a Risk Assessment product, the Vulnerabilities section under the Risk Register allows users to identify and document internal weaknesses or control gaps associated with specific risks. This helps in understanding why a risk exists and how it might be exploited.
  • Step-by-Step Guide to Create a New Vulnerability:
  • Navigate to the Main Menu and select the Risk Register module.
  • Click on a specific risk entry from the risk list/grid that you want to associate the vulnerability with.
  • On the Risk Details page, locate and click on the "Vulnerabilities" tab or section.
  • Click on the “Add Vulnerability” or “New Vulnerability” button.
  • Fill in the required fields in the vulnerability creation form:
  • Vulnerability: The vulnerability field in a Risk Assessment product is a data entry field used to identify and document a weakness, flaw, or gap that can increase the likelihood or impact of a risk. It typically appears in the Risk Register module, where vulnerabilities are associated with specific risks.
  • It is mandatory field.
  • Status Type: In the Vulnerability section of the Risk Assessment product, the Status Type (Active/Inactive) is used to indicate the operational state of a vulnerability record—whether it is currently relevant and in use, or not.
  • Vulnerability Category: The Vulnerability Category field in the "Add Vulnerability" page of a Risk Assessment product is used to classify the type or nature of vulnerability. It helps in organizing, filtering, and analyzing vulnerabilities more efficiently.
  • It is Mandatory field.
  • Vulnerability Rating: The Vulnerability Rating field in the "Add New Vulnerability" page is used to assess the severity or exposure level of vulnerability. It helps quantify how much risk vulnerability introduces, based on its potential to be exploited.

  1. How to Adding Vulnerability using Bulk upload in risk assessment product?
  • The Bulk Upload feature in the New Vulnerability screen allows users to add multiple vulnerabilities at once using a structured Excel template. This is especially useful when importing vulnerability data from audits, assessments, or external sources.
  • Step-by-Step Guide: Bulk Upload Vulnerabilities
  • Navigate to the Risk Register
  • Go to the Main MenuRisk Register.
  • Open the Vulnerabilities Section:
  • Click on a specific risk to open its details.
  • Navigate to the Vulnerabilities tab.
  • Click on Download icon in Add vulnerability page.

Download the Template:

Click on “Download Template” (usually an Excel file).

The template contains predefined columns that must be filled in.

  • Fill in the Template:

Enter all required fields in the correct format.

Double-check for typos or missing mandatory fields.

Avoid special characters unless allowed by the system.

  • Upload the Template:
  • Return to the application’s Vulnerabilities > Bulk Upload screen.
  • Click “Choose File” and select the filled Excel template.
  • Click “Upload” or “Import”.
  • Review and Confirm:
  • The system will validate the data.
  • If errors are found (e.g., missing required fields or invalid categories), an error message will be shown.
  • Correct and re-upload if needed.
  • Once validated, click “Confirm Upload” to complete the process.

  1. How to edit Vulnerability in risk register in risk assessment product?
  • Editing vulnerability in the Risk Register of a Risk Assessment product allows authorized users to update key information such as description, rating, category, status, or ownership. This helps ensure vulnerabilities are kept current and accurately reflect the organization’s risk posture.
  • Step-by-Step Guide to Edit a Vulnerability:
  • Open the Vulnerability screen.
  • Go to the Action column.
  • Click the Edit icon to update the vulnerability details in the following fields:
  • Vulnerability Name
  • Status Type
  • Vulnerability Category
  • Vulnerability Rating
  • Description Text
  • Click the ‘Save’ button.
  • After editing, the updated Vulnerability Name should be reflected in vulnerability home page.

  1. How to delete the Vulnerabilities in risk register in risk assessment product?
  • In the Risk Register module of the Risk Assessment product, authorized users (e.g., Admin or Risk Owner) can delete vulnerabilities that are no longer relevant or were added by mistake.
  • Step-by-Step Guide to Delete a Vulnerability:

 Open the Vulnerability screen.

 Go to the Action column.

 Click on the Delete icon.

 a confirmation message should be displayed.

  • Check whether when user click on “Yes” button selected vulnerability should be deleted. And when user click on “No” button it should be on the same page.
  1. Can we inactive the Vulnerability in risk register in risk assessment product?
  • Yes, we can inactive the vulnerability from vulnerability home page in risk register module.
  • Inactivating vulnerability in the Risk Register of the Risk Assessment product allows users to retire or hide vulnerabilities that are no longer relevant, without permanently deleting them. This helps preserve historical records while keeping active views clean.
  • Step-by-Step Guide to Inactivate a Vulnerability:
  • Open the Vulnerability screen
  • Go to Action Column
  • Click on the Right Symbol to inactive the Vulnerability
  • Successful message should be displayed on the page.

  1. Can we download the Vulnerability data in risk register in risk assessment product?
  • Yes, we can download the vulnerability data.
  • Downloading vulnerability data from the Risk Register in the Risk Assessment product allows users to export records for reporting, audits, or offline review.
  • Step-by-Step Guide to Download Vulnerability Data:
  • Open the Vulnerability screen.
  • Click on Down Arrow symbol right side of the screen.
  • Data exported excel sheet
  1. Can we Search records on the Vulnerabilities screen?
  • Yes, we can search records in vulnerability home page.
  • The Search bar is typically available at the top of the Vulnerabilities list or table.
  • You can search by keywords related to:
  • Vulnerability Name
  • Vulnerability Category
  • Description Text
  • Status Type
  • As you type, the system dynamically filters and displays matching results.
  • Steps to Use the Search Function:
  • Go to the Vulnerabilities section under the Risk Register.
  • Locate the Search field above the list/table.
  • Enter a keyword (e.g., "Firewall", "High", "John Doe").
  • The list wills auto-update based on your input.
  • If no matching records are found, a message like "No records found" will appear.
  1. How to download excel export in vulnerability?
  • The Excel Export feature in the Vulnerability section of the Risk Register allows users to download all listed vulnerability data into an Excel file for reporting, audits, or offline use.
  • Step-by-Step Guide to Download Excel Export:
  • Go to the Main Menu → Select Risk Register.
  • Click on the specific risk record if vulnerabilities are scoped per risk.
  • Or access the Vulnerabilities screen directly if available as a main tab.
  • Look for a button labeled “Export”, “Download Excel”, or a download icon in the top-right corner of the vulnerabilities table.
  • This button may sometimes be named “Excel Export”.
  • Clicking the button will generate and download an Excel file (.xlsx) containing the vulnerability data.
  1. Can we hide/seek Vulnerability screen columns?
  • Yes, you can hide or show columns on the Vulnerability screen in the Risk Register module of the Risk Assessment product, if this feature is enabled in your system.
  • Step By Step guide to Hide/Show Columns:
  • Click on "View/Hide Columns" or "Column Settings"
  • Look for an option such as:
  • "Click here to view/hide details"
  • Column settings icon (⚙️) or a dropdown menu above the vulnerability table.
  • Select/Deselect Columns:
  • A popup or panel will appear listing all available columns.
  • Uncheck the boxes next to the columns you want to hide.
  • Check the boxes for the columns you want to display.
  • Apply Changes:
  • The table will update immediately based on your selection.
  • Some systems may have a “Save” or “Apply” button.

11. What are events in Vulnerability settings module?

  • The Events section in the Vulnerability Settings module of the Risk Assessment product is designed to track and log all user actions or system changes related to vulnerabilities. This ensures full traceability and supports auditing, compliance, and transparency.
  • The Events section will capture all changes made by the user on the General Settings screen.
  • The Events section should include the following features:
  • Search Field:
  • When the user enters text in the Events search field, matching records should be displayed on the page.
  • If no matching data is found, the message "No records found" should be displayed.
  • Excel Export:
  • When the user clicks on the Excel Export link, an Excel sheet containing the General Settings events should be downloaded successfully.

III. Click Here to View/Hide Details

  • When the user clicks on the View/Hide Columns icon, a popup should appear showing a list of columns.
  • If the user unchecks any column, that column should be hidden from the page.
  • Checked columns should remain visible on the page.

IV. View Details

  • When an admin user clicks on the View Details icon, an Audit Details popup should be displayed on the page.

Common questions about Vulnerabilities for Risk Assessment Application

What does the Vulnerabilities for Risk Assessment Application module integrate with?+

The Vulnerabilities for Risk Assessment Application screen shares records with the rest of the RiskWatch risk suite: Vulnerabilities, Overview of Vulnerabilities, SecureWatch, vulnerabilities, plus the cross-mapping engine that connects risk controls to other frameworks like ISO 27001, SOC 2, HIPAA, NIST 800-53, and PCI DSS. There is nothing to wire up, the integrations are native.

Where does the Vulnerabilities for Risk Assessment Application fit in the RiskWatch risk workflow?+

It is one of 27 screens that make up the Risk module. Most teams reach it from the risk dashboard while running an assessment or reviewing posture. See the related-topics sidebar for the workflows it feeds into and the upstream screens that feed it.

References and related standards

Standards and references the Vulnerabilities for Risk Assessment Application module aligns with, plus related RiskWatch documentation.

Stuck on this workflow?

Talk to support, or have a solutions engineer walk you through the workflow on your tenant.

Request a Demo