POET is not designed to serve as the system of record for regulated processes, therefore not subject to GxP requirements. It is designed to enable cross-organizational collaboration and process orchestration while the system of record remains within enterprise systems.
Type = Technical Guides,; Topic = OPUS Solution Environment, Process Orchestration for Empowered Teams (POET), OPUS,;Persona = Solution Designer, Solution Partner, Technology Partner,; Orchestration = Logistics,; Function = Regulatory Affairs, Quality,
Supplier Risk Assessments
Supplier Risk Assessment enables organizations to evaluate, classify, mitigate, and monitor risks associated with suppliers across their lifecycle.
What is a supplier risk assessment
A supplier risk assessment is a structured evaluation used to identify potential operational, regulatory, financial, and compliance risks associated with a supplier relationship. The process enables organizations to assess supplier risks, determine mitigation actions, and monitor supplier performance across the lifecycle.
- Assessment Initiation - Establish the assessment scope, ownership, and supplier being evaluated.
- Information Collection - Gather supplier responses and supporting documentation.
- Risk Evaluation - Analyze supplier data to identify risk categories and impacts.
- Risk Classification - Determine the overall supplier risk level.
- Mitigation Planning - Define mitigation actions and responsible owners.
- Monitoring - Track mitigation progress and reassess supplier risk posture.
- Closure - Complete the assessment and document outcomes.
Types of supplier risk assessments
- Operational Risk Assessments – Evaluate operational stability and supply chain reliability.
- Compliance Risk Assessments – Evaluate regulatory and compliance risks.
- Financial Risk Assessments – Assess supplier financial stability.
- Cybersecurity Risk Assessments – Evaluate cybersecurity posture and information security practices.
- ESG Risk Assessments – Evaluate environmental, social, and governance risks.
Add a supplier risk assessment
Add a supplier risk assessment by entering the required details.
- Select the Main Menu icon.
- Select .
- Select a [POET Network] from the drop-down in the header.
- Select a Partner or location from the drop-down in the header.
- Select .
- Select from the left menu.
- Select .
- In the General section fill in the following fields:
- field – Provide a clear and descriptive title for the supplier risk assessment.
- field – Briefly describe the reason or scope of the assessment.
- Select .
The supplier risk assessment is created in Draft state. - Select to progress the assessment.
Modify a supplier risk assessment
Modify an existing supplier risk assessment by updating the required details.
- Select the Main Menu
icon. - Select .
- Select a [POET Network] from the drop-down in the header.
- Select a Partner or location from the drop-down in the header.
- Select .
- Select from the left menu.
- Select the required assessment.
- Select .
- In the General section update the following fields:
- – Name of the supplier risk assessment.
- – Supplier being assessed.
- – Business function engaging the supplier.
- – Assessment priority.
- – Target completion date.
- In the Participants section update the following fields:
- – Owner responsible for supplier relationship.
- – Primary coordinator of the assessment.
- – Users responsible for evaluating risks.
- – Governance decision makers for high-risk assessments.
- In the Description section update the following fields:
- – Description of the assessment scope and purpose.
- – Supporting documents.
- In the Information Collection section update the following fields:
- – URL to supplier questionnaire.
- – Uploaded supplier questionnaire.
- – Summary of supplier-provided information.
- – Notes from follow-ups with the supplier.
- In the Risk Evaluation section update the following fields:
- – Description of key supplier risks.
- – Applicable risk categories such as compliance, operational, financial, cybersecurity, ESG, and supply chain.
- – Business impact of identified risks.
- In the Risk Classification section update the following fields:
- – Classified risk level (Low, Medium, High, Critical).
- – Justification for risk classification.
- – Consolidated reviewer input.
- In the Risk Mitigation Plan section update the following fields:
- – Steps defined to reduce supplier risk.
- – Expected mitigation completion date.
- In the Monitoring and Review section update the following fields:
- – How supplier risk will be monitored.
- – Frequency of reassessment.
- – Outstanding risks or actions.
- – Monitoring deadline.
- In the Assessment Closure & Attachments section update the following fields:
- – Summary of assessment outcome.
- – Supporting evidence.
- – Link related records.
Monitor supplier risk assessments
Monitor supplier risk assessments records using dashboards and search to track progress, monitor key activities, and analyze performance.
- Select the Main Menu
icon. - Select .
- Select a [POET Network] from the drop-down in the header.
- Select a Partner or location from the drop-down in the header.
- Select .
- Select .
- Select .
| Metric | Description |
|---|---|
| Current Trends | |
| Supplier Risk Assessments by Status – Open | Total number of Supplier Risk Assessments categorized by Status (Draft, To Do, In Progress). |
| Supplier Risk Assessments by Business Priority | Number of Supplier Risk Assessments categorized by Business Priority (Critical, High, Medium, Low) and Status (Draft, To Do, In Progress). |
| Supplier Risk Assessments by Overall Risk Level | Number of Supplier Risk Assessments categorized by Overall Risk Level (Critical, High, Medium, Low) and Status (Draft, To Do, In Progress). |
| Supplier Risk Assessments by Business Function | Number of Supplier Risk Assessments categorized by Business Function and Status (Draft, To Do, In Progress). |
| Due Date Monitoring | |
| Overdue Supplier Risk Assessments | Total number of assessments with Due Date less than current date, categorized by Status (Draft, To Do, In Progress). |
| Due in Next 24 Hours | Total number of assessments due within next 24 hours, categorized by Status. |
| Due in Next 7 Days | Total number of assessments due within next 7 days, categorized by Status. |
| Due in Future | Total number of assessments due beyond 7 days by categorized by Status. |
| Network Performance | |
| Supplier Risk Assessments by Assignee Company | Total number of assessments grouped by assignee company and categorized by Status. |
| Supplier Risk Assessments by Supplier Coordinator | Total number of assessments grouped by supplier coordinator and categorized by Status. |
| Organizational Performance | |
| Supplier Risk Assessments by Assessment Coordinator | Total number of Supplier Risk Assessments grouped by Assessment Coordinator and categorized by Status (Draft, To Do, In Progress). |
| Supplier Risk Assessments by Risk Rating | Total number of Supplier Risk Assessments categorized by Risk Rating (Critical, High, Medium, Low) and Status (Draft, To Do, In Progress). |
| Average Time to Close Supplier Risk Assessments by Risk Rating | Average time taken to close Supplier Risk Assessments, segmented by Risk Rating (Critical, High, Medium, Low). |
Steps to access
- Select the Main Menu
icon. - Select .
- Select a [POET Network] from the drop-down in the header.
- Select a Partner or location from the drop-down in the header.
- Select .
- Select .
- Select .
| Metric | Description |
|---|---|
| Current Trends | |
| Supplier Risk Assessments by Status – Open | Total number of Supplier Risk Assessments categorized by Status (Draft, To Do, In Progress). |
| Supplier Risk Assessments by Business Priority | Number of Supplier Risk Assessments categorized by Business Priority (Critical, High, Medium, Low) and Status (Draft, To Do, In Progress). |
| Supplier Risk Assessments by Overall Risk Level | Number of Supplier Risk Assessments categorized by Overall Risk Level (Critical, High, Medium, Low) and Status (Draft, To Do, In Progress). |
| Supplier Risk Assessments by Business Function | Number of Supplier Risk Assessments categorized by Business Function and Status (Draft, To Do, In Progress). |
| Due Date Monitoring | |
| Overdue Supplier Risk Assessments | Total number of assessments with Due Date less than current date, categorized by Status (Draft, To Do, In Progress). |
| Due in Next 24 Hours | Total number of assessments due within next 24 hours, categorized by Status. |
| Due in Next 7 Days | Total number of assessments due within next 7 days, categorized by Status. |
| Due in Future | Total number of assessments due beyond 7 days by categorized by Status. |
| Mitigation Plans Overdue | Total number of Supplier Risk Assessments in Mitigation Planning where the Target Completion Date has passed, indicating delayed risk mitigation actions. |
| Network Performance | |
| Supplier Risk Assessments by Supplier Coordinator | Total number of assessments grouped by supplier coordinator and categorized by Status. |
| Organizational Performance | |
| Supplier Risk Assessments by Assessment Coordinator | Total number of Supplier Risk Assessments grouped by Assessment Coordinator and categorized by Status (Draft, To Do, In Progress). |
| Supplier Risk Assessments by Risk Rating | Total number of Supplier Risk Assessments categorized by Risk Rating (Critical, High, Medium, Low) and Status (Draft, To Do, In Progress). |
- Select the Main Menu icon.
- Select .
- Select a [POET Network] from the drop-down in the header.
- Select a Partner or location from the drop-down in the header.
- Select .
- Select from the left menu.
- Select .
-
In the Filters panel fill one or more of the following fields:
- – Search by full or partial assessment title.
- – Filter by supplier being assessed.
- – Filter by internal assessment owner.
- – Filter by business function engaging the supplier.
- – Filter by reason for initiating the assessment.
- – Filter by classified supplier risk level.
- – Filter by workflow state.
- – Filter by assessment priority.
- – Filter by assessment creation date.
- – Filter by most recent update.
-
Select .
Matching supplier risk assessments are displayed.
Tag end


