Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Use entity and risk dependencies using the GRC: Workbench

The GRC: Workbench utilizes CMDB information to show the upstream and downstream relationships across all applications. CMDB information is one of the sources. These relationships enable consistent risk mapping and modeling across the enterprise.

The GRC Manager [sn_grc.manager] uses the GRC Workbench to:

  • Create entity classes.
  • Define the upstream/downstream relationships between entity classes. These relationships make up the dependency model and ensure that risks are defined and evaluated consistently across the enterprise.
  • Create entity types, create entities, and classify entities

Note: The GRC Manager cannot view the GRC: Workbench from Risk > GRC Workbench. The GRC Manager [sn_grc.manager] enters /$grc_workbench.do after their instance name in the url to access the GRC: Workbench.

The Risk Manager [sn_risk.manager] uses the GRC: Workbench to:

  • Perform all the same tasks as the GRC Manager
  • Create risk frameworks, risk statements, and risks
  • Define risk relationships

Model Setup tab

The Model Setup tab contains links to perform the following tasks.

LinkAction
Dependency ModelCreate entity classes and develop the organizational relationship model
Entity TypesCreate and edit entity types
Dependency MapCreate and visualize entity relationships

Risk Dependencies tab

The Risk Dependencies tab contains links to perform the following tasks.

LinkAction
Risk FrameworksCreate and edit risk frameworks
Risk StatementsCreate and edit risk statements
RelationshipsCreate and visualize risk relationships

Parent Topic:Using Risk Management