Skip to main content

Provider Directory Service — Risk Register

Status: populated Owner: TBD Last updated: 2026-04-17

IDRiskLikelihoodImpactOwnerMitigationResidual
R1Expired credential allowed to keep ordering privilegesLowCriticalCredentialingNightly scanner + privilege cascade + auditVery low
R2Duplicate practitioner from race on identifier insertMediumMediumPD leadDB unique constraint; idempotency keyLow
R3Search drifts out of sync with Postgres (OpenSearch lag)MediumMediumPlatformEvent-driven incremental index + weekly full rebuildLow
R4Cross-script (ps ↔ en) search misses candidateHighLowPD leadICU transliteration analyser; multi-field queryMedium
R5Credential PII leak via FHIR Practitioner searchLowHighSecurityMinimum-necessary projection; credential numbers excludedLow
R6Endpoint healthcheck causes partner rate-limitLowLowPlatformProbe every 5 min; back-off on 429Low
R7Terminology service change breaks specialty validationMediumMediumInteropVersion-pin specialties; soft-fail + re-validateLow
R8National registry bridge introduces PII residency issueMediumHighComplianceDeployment-scoped; data in-region onlyMedium
R9Merge duplicates misapplies survivorship on credentialsLowHighPD leadDeterministic survivorship rules; audit; manual approvalLow
R10FHIR projection lag causes partner integration failuresMediumMediumInteropSLO; DLQ replay; health-based pauseLow
R11Privilege cascade on revoke causes clinical workflow disruptionMediumHighClinical opsGradual migration; communication template; undo windowMedium
R12OpenSearch cluster failure → search slowLowMediumSREDB fallback; alarmLow

Review

Weekly during M0–M1; monthly steady-state.