RUEN
Home/Materials/Critical process register
Risk assessment and BIA

Critical business process register: how to build it

Before protecting the business, you need to know what is critical in it. The critical process register is a simple table where all continuity begins. It can be built in one day.

Updated: June 28, 2026 · Author: Evgeny Telenkov · ≈ 5 min read

What it is and why

A critical process register is a list of the company's processes with an assessment of their importance. It is the input for the business impact analysis (BIA) and the continuity plan (BCP): you cannot protect everything equally, so first determine what the business cannot run without.

Criticality criteria

  • How quickly a stoppage of the process hits revenue and customers.
  • Whether there are fines and obligations on failure.
  • How long the process can be down without irreversible damage.
  • Whether there is a workaround (manual) way to run it.

A simple template

ProcessWhat stops itImpact in 1 dayCriticality
Order intakeCRM/ERP failureLost sales, customer churnHigh
Shipping/logisticsLoss of route dataMissed deliveries, finesHigh
Accounting/paymentsAccounting system unavailableDelayed settlementsMedium

Take 10–15 processes, rate each against the criteria and mark the 3–5 most critical. Start your protection with those.

FAQ

How many processes should the register include?

Usually 10–15 key processes are enough. From these, 3–5 critical ones — that the business cannot run a day without — are selected and protection is focused on them.

How is the register different from a BIA?

The register is a list of processes and their criticality. The BIA goes further: it estimates downtime cost and sets target recovery times (RTO/RPO).

Check your recovery numbers

The assessment shows where business deadlines diverge from what technology can deliver. Those numbers are then produced either by your specialist or by us.

Evgeny Telenkov
Evgeny Telenkov
Director, business continuity practice · PhD in Economics · Academic Director & Chief Examiner
Risk Manager of the Year in Russia 2020 (RusRisk). Built business continuity from scratch at Nornickel, more than 20 plans; led risk functions at Beeline, Rosneft and EY. Chief risk officer of a 20 billion dollar petrochemical megaproject. Deputy chair of Rosstandart technical committee 010 "Risk management", co-author of six national standards. Author of the ERGP and SAFE programmes.