<!-- RTOSafe Help — rendered version: https://rtosafe.com.au/help/validation-strategy-risk-levels -->

# Set Risk Levels for Units

***

RTOSafe uses risk levels to determine how often each unit should be validated — higher risk units are validated more frequently.

Risk levels aren't static. As your delivery context changes, your risk assessments should too. RTOSafe records all risk level changes, giving you an audit trail of your evolving risk management approach.

When you set risk levels on units, this also informs the validation strategy for parent scope items (qualifications, skill sets, and accredited courses) that contain those units.

***

## Setting a Risk Level

From [**Scope**](https://app.rtosafe.com.au/Scope), open any unit and click **Set Risk Level**, or click the risk level badge on units already assessed.

In the drawer that opens:

**1. Select risk indicators**

RTOSafe provides a checklist of common risk indicators to choose from. Select any that apply to this unit. You can also add your own indicators in the rationale field if the checklist doesn't cover your specific concerns.

**2. Provide your rationale**

Explain why you've chosen this risk level. Be specific — document the factors you considered, such as:

* Recent changes to the training package
* Student feedback or complaints
* Industry changes affecting the unit
* Assessment tool age or quality concerns
* Trainer experience with this unit
* Delivery volume or student outcomes data

<div class="help-hint bg-green-50 border-green-300 text-green-800">
<svg class="w-5 h-5 shrink-0" fill="currentColor" viewBox="0 0 20 20"><path fill-rule="evenodd" d="M10 18a8 8 0 100-16 8 8 0 000 16zm3.707-9.293a1 1 0 00-1.414-1.414L9 10.586 7.707 9.293a1 1 0 00-1.414 1.414l2 2a1 1 0 001.414 0l4-4z" clip-rule="evenodd"></path></svg>
<div class="help-hint-content">

For Medium and High risk units, provide detailed justification. Auditors will look for evidence that your risk assessment is based on actual risk factors, not arbitrary decisions.

</div>
</div>

**3. Choose a risk level**

| Level      | What it means                                                                                                                     |
| ---------- | --------------------------------------------------------------------------------------------------------------------------------- |
| **High**   | Validated more frequently. Use for units with significant concerns, recent changes, high delivery volume, or known quality issues |
| **Medium** | Validated at standard intervals. Use for units with some identified concerns or moderate risk factors                             |
| **Low**    | Validated less frequently. Use for stable, well-established units with no identified concerns                                     |

<div class="help-hint bg-blue-50 border-blue-300 text-blue-800">
<svg class="w-5 h-5 shrink-0" fill="currentColor" viewBox="0 0 20 20"><path fill-rule="evenodd" d="M18 10a8 8 0 11-16 0 8 8 0 0116 0zm-7-4a1 1 0 11-2 0 1 1 0 012 0zM9 9a1 1 0 000 2v3a1 1 0 001 1h1a1 1 0 100-2v-3a1 1 0 00-1-1H9z" clip-rule="evenodd"></path></svg>
<div class="help-hint-content">

You can adjust how often each risk level triggers validation in [**Validation Settings**](https://app.rtosafe.com.au/Settings/ValidationSettings). This lets you match your validation frequency to your organisation's capacity and risk appetite.

</div>
</div>

***

## Updating Risk Levels Over Time

Risk levels should change as circumstances change. Review and update them when:

* Training package components are updated
* You receive student or industry feedback
* Assessment outcomes show unexpected patterns
* Trainers or delivery methods change
* Previous validations identify issues

All changes are recorded automatically — you'll have a complete history of your risk assessments for each unit.

***

## What Happens Next

* RTOSafe uses risk levels to generate your ongoing validation schedule
* Higher risk units appear more frequently in your validation cycle
* Units without a risk level will still appear in the validation program when you book them manually, but the system won't track them for ongoing validation — it won't flag when they're next due