The Three Lines Check
How orchestrated are your three lines?
The Three Lines Check is ten questions for risk, audit and security leaders. Answer separately, compare your views and see where to start.
Risk · Audit · Security Alignment
About three minutes. No sign-up to start.
How it works
Answer separately
Ten questions across data, reliance, controls, assurance, and evidence and AI.
Compare your views
Share your link with a colleague. The gaps between your answers are the findings.
Start with one workflow
Your report names one place to begin, and you add the next without rebuilding anything.
Ready when you are
Answer for your organisation as it is today, not as it is planned.
Frequently Asked
Questions
What is the Three Lines Check?
A ten-question assessment of how well risk, internal audit and security work together, across data, independence and reliance, controls, assurance, and evidence and AI.
Who should take it?
Chief Risk Officers, Chief Audit Executives and CISOs. It is most useful when two of them answer separately and compare the results.
How long does it take?
About three minutes. You see your profile straight away; the full report and comparison link are sent to your work email.
Does comparing views compromise audit independence?
No. Each person answers separately and forms their own view. The comparison shows where perspectives differ, which is where the useful conversation starts.