Manage exceptions and risk acceptance
Request exceptions from gaps with justification and approvers, then monitor the register for expiry, turnaround, and concentration, and renew or withdraw as needed.
Try it in CybervergentOverview
Govern accepted risk with time-bound, approved, and tracked exceptions.
Step-by-step
- 1 From a gap in an initiative, choose 'Request Exception', add the justification, duration, and approvers, then submit for sign-off.
- 2 In the sidebar, open 'Governance' then 'Exception Register'.
- 3 On the 'Overview' tab, review exceptions by type and risk, the expiry forecast, and approval turnaround.
- 4 On the 'Exceptions' tab, filter by status and open an exception to review its full detail and dates.
- 5 Use the row menu to 'Renew' an approved or expiring exception before it lapses, or 'Withdraw' one no longer needed.
- 6 Watch for a build-up of accepted risk and report the exception position to your risk committee.
Related articles
Oversight & Trust Automate approvals and segregation of duties Route control, evidence, and exception approvals through defined approver flows. Oversight & Trust Publish a public trust center Share posture, documents, and certifications externally to reduce inbound questionnaires. Oversight & Trust Stay ahead of regulatory change Track regulatory updates and turn them into assessed, owned actions. Policy Governance Operationalize policy governance Run policies as governed artefacts with ownership, review cycles, and control mapping.