Skip to content
Cyber Horizon
All frameworks

// Governance

ISO 31000 Risk Management Compliance Software

Guidelines providing principles on risk management for any organisation.

Framework at a glance

Short name

ISO 31000

Version

Category

Governance

Controls

22

What ISO 31000 covers

22 controls across 20 domains — every one tracked, owned and evidenced in Cyber Horizon.

Value

1 controls
  • P1 Value creation and protection

Integration

2 controls
  • P2 Integrated
  • F2 Integration

Approach

1 controls
  • P3 Structured and comprehensive

Customisation

1 controls
  • P4 Customised

Inclusivity

1 controls
  • P5 Inclusive

Adaptability

1 controls
  • P6 Dynamic

Information Quality

1 controls
  • P7 Best available information

People

1 controls
  • P8 Human and cultural factors

Improvement

2 controls
  • P9 Continual improvement
  • F6 Improvement

Leadership

1 controls
  • F1 Leadership and commitment

Design

1 controls
  • F3 Design

Implementation

1 controls
  • F4 Implementation

Evaluation

1 controls
  • F5 Evaluation

Communication

1 controls
  • PR1 Communication and consultation

Context

1 controls
  • PR2 Scope, context and criteria

Assessment

1 controls
  • PR3 Risk assessment

Treatment

1 controls
  • PR4 Risk treatment

Monitoring

1 controls
  • PR5 Monitoring and review

Reporting

1 controls
  • PR6 Recording and reporting

Documentation

1 controls
  • PR7 Risk register

How Cyber Horizon automates ISO 31000

Every ISO 31000 control lives in a shared control library, crosswalked to the other frameworks you run — evidence collected once counts everywhere it applies.

Evidence is collected automatically from your connected tools, with owners, review cadences and gaps tracked continuously instead of at audit time.

Audit packs generate on demand, and the risk register, vendor risk and threat intelligence sit in the same platform — one evidence trail across your whole programme.

Frequently asked questions

What is ISO 31000 Risk Management?

Guidelines providing principles on risk management for any organisation.

How many controls does ISO 31000 Risk Management have?

ISO 31000 Risk Management has 22 controls in Cyber Horizon's catalogue, organised across 20 domains.

How does Cyber Horizon help with ISO 31000 Risk Management?

Cyber Horizon maps ISO 31000 Risk Management into a shared control library alongside every other framework you run, so evidence collected once counts towards ISO 31000 and everything else it overlaps with. Controls, evidence status and audit packs live in one place, with automated collection from your connected tools.

See ISO 31000 mapped to your environment

Start with the free 20-question readiness check — no signup — or get a personal walkthrough of ISO 31000 in Cyber Horizon.