There are several different ways of categorized risks.
From my point of view, is fundamental to define a RBS (Risk Breakdown Structure), that is a hierarchically organised representation of the possible project risks. In our approach, the first level is the split between External and Internal risks. After this main classification, you should so further in detail.
Looking in particular at Internal Risks, you should define the sub-category, that could be for example HR, technical risks, technology, security and safety
The RBS applied should be aligned to the company organizational process assets, and could be tailored to a specific project. Saving Changes...