// Governance
ISO 31000 Risk Management Compliance Software
Guidelines providing principles on risk management for any organisation.
Framework at a glance
Short name
ISO 31000
Version
—
Category
Governance
Controls
22
What ISO 31000 covers
22 controls across 20 domains — every one tracked, owned and evidenced in Cyber Horizon.
Value
1 controls- P1 Value creation and protection
Integration
2 controls- P2 Integrated
- F2 Integration
Approach
1 controls- P3 Structured and comprehensive
Customisation
1 controls- P4 Customised
Inclusivity
1 controls- P5 Inclusive
Adaptability
1 controls- P6 Dynamic
Information Quality
1 controls- P7 Best available information
People
1 controls- P8 Human and cultural factors
Improvement
2 controls- P9 Continual improvement
- F6 Improvement
Leadership
1 controls- F1 Leadership and commitment
Design
1 controls- F3 Design
Implementation
1 controls- F4 Implementation
Evaluation
1 controls- F5 Evaluation
Communication
1 controls- PR1 Communication and consultation
Context
1 controls- PR2 Scope, context and criteria
Assessment
1 controls- PR3 Risk assessment
Treatment
1 controls- PR4 Risk treatment
Monitoring
1 controls- PR5 Monitoring and review
Reporting
1 controls- PR6 Recording and reporting
Documentation
1 controls- PR7 Risk register
How Cyber Horizon automates ISO 31000
Every ISO 31000 control lives in a shared control library, crosswalked to the other frameworks you run — evidence collected once counts everywhere it applies.
Evidence is collected automatically from your connected tools, with owners, review cadences and gaps tracked continuously instead of at audit time.
Audit packs generate on demand, and the risk register, vendor risk and threat intelligence sit in the same platform — one evidence trail across your whole programme.
Frequently asked questions
What is ISO 31000 Risk Management?
Guidelines providing principles on risk management for any organisation.
How many controls does ISO 31000 Risk Management have?
ISO 31000 Risk Management has 22 controls in Cyber Horizon's catalogue, organised across 20 domains.
How does Cyber Horizon help with ISO 31000 Risk Management?
Cyber Horizon maps ISO 31000 Risk Management into a shared control library alongside every other framework you run, so evidence collected once counts towards ISO 31000 and everything else it overlaps with. Controls, evidence status and audit packs live in one place, with automated collection from your connected tools.
More Governance frameworks
See ISO 31000 mapped to your environment
Start with the free 20-question readiness check — no signup — or get a personal walkthrough of ISO 31000 in Cyber Horizon.