Risk Retention
What is Risk Retention?
A deliberate decision to accept the burden of loss from a particular risk, typically when the cost of mitigation exceeds the expected loss.
Frameworks that govern risk retention
What the standards actually require on risk retention
Requirements naming risk retention across this standard, quoted from the control text.
NY DFS 23 NYCRR 5001 control
Limited Exemption for entities with fewer than 20 employees and independent contractors, less than $7.5M gross annual revenue (3-year avg from NY operations), or less than $15M year-end total assets, exempted from specified sections.
§500.19 · Exemptions →Questions people ask about risk retention
What is Risk Retention?
A deliberate decision to accept the burden of loss from a particular risk, typically when the cost of mitigation exceeds the expected loss.
Why is Risk Retention important for compliance?
Risk Retention is a key concept in Risk Management. Understanding risk retention helps organizations meet regulatory requirements, reduce risk, and demonstrate due diligence during audits. Our compliance platform maps 686 frameworks with 311K cross-framework control mappings.
Which compliance frameworks address Risk Retention?
Risk Retention appears in the requirement text of NY DFS 23 NYCRR 500. Across these standards we have identified 1 control that names it directly, each linked to the control text on the compliance platform.
Where can I learn more about Risk Retention?
Explore our compliance framework pages to see how risk retention applies across different standards and regulations. Our implementation guides provide step-by-step guidance, and the compliance platform offers AI-powered analysis of how this concept maps across 686 frameworks.
See how Risk Retention applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.
Written and maintained by Gerard Blokdyk, The Art of Service.