Agent Skillscbrock84/headcount › dependency-and-risk-management

dependency-and-risk-management

GitHub

管理交付风险与跨团队依赖,构建可执行的风险登记册。明确依赖承诺、评估风险影响、制定缓解措施并适时升级,确保风险可控且责任到人。

plugins/pmo/skills/dependency-and-risk-management/SKILL.md cbrock84/headcount

Trigger Scenarios

识别和管理跨团队依赖关系 创建或维护项目风险登记册 评估交付风险 likelihood 和 impact 决定风险缓解或接受策略 准备需要决策支持的升级事项

Install

npx skills add cbrock84/headcount --skill dependency-and-risk-management -g -y
More Options

Non-standard path

npx skills add https://github.com/cbrock84/headcount/tree/main/plugins/pmo/skills/dependency-and-risk-management -g -y

Use without installing

npx skills use cbrock84/headcount@dependency-and-risk-management

指定 Agent (Claude Code)

npx skills add cbrock84/headcount --skill dependency-and-risk-management -a claude-code -g -y

安装 repo 全部 skill

npx skills add cbrock84/headcount --all -g -y

预览 repo 内 skill

npx skills add cbrock84/headcount --list

SKILL.md

Frontmatter
{
    "name": "dependency-and-risk-management",
    "description": "Manages delivery risk and cross-team dependencies — identifying, sizing, mitigating and escalating what could stop the work. Use this to build a risk register that gets used, manage dependencies between teams, decide what to escalate and when, or work out why the same risks keep materializing unmanaged."
}

Dependency and risk management

This is delivery risk: what could prevent this work from landing. Enterprise risk — the framework, appetite and register at company level — is legal-risk:enterprise-risk, and the two should not be merged.

Dependencies are commitments or they are wishes

A dependency in your plan that the owning team has not agreed to, with a date they have committed to, is a wish. Most plans contain several.

For each: what exactly is needed, from whom by name, by when, and what happens if it is late. Then confirm it with the owning team in a way they would recognize as a commitment — an item on their plan, not a mention in a meeting.

Track dependencies both ways. Teams reliably track what they are owed and forget what they owe, which is why everyone believes they are being let down.

The dangerous ones are transitive: your dependency has a dependency you cannot see. Trace at least one hop further than feels necessary, particularly where a shared specialist or a single team appears repeatedly.

A risk register people actually use

Most registers are written once for a gate and never opened. What makes one useful:

  • Specific. "Integration delay" is a topic. "Vendor's API v2 is not released until March; our migration starts in February" is a risk you can act on.
  • Sized on both axes — likelihood and impact — because the response differs entirely between a likely nuisance and an unlikely catastrophe.
  • Owned by someone who can act, not by the project manager who can only report.
  • Carrying a decision date — the point past which mitigation is no longer possible. This is the field most often omitted and the one that makes the register operational rather than decorative.

Review by exception: what changed, what is approaching its decision date. Reading the whole register aloud is how registers stop being read.

Mitigate, or accept explicitly

Four responses: avoid by changing the plan, reduce likelihood or impact, transfer to someone better placed to carry it, or accept. Acceptance is legitimate and must be explicit, with a named accepter — an unacknowledged acceptance is just an unmanaged risk.

Distinguish mitigation from contingency. Mitigation lowers the chance; contingency is what you do when it happens anyway. Serious risks need both, and contingency needs to be prepared before it is required.

Escalate early and specifically

An escalation naming the decision needed, the options, and the date by which it is needed gets resolved. A general expression of concern gets acknowledged and nothing happens.

Escalate when the decision exceeds your authority or the decision date is approaching — not when the risk has already materialized, at which point it is a status report.

Never

  • Carry a dependency the owning team has not committed to.
  • Log a risk without an owner who can act on it.
  • Accept a risk without naming who accepted it.
  • Escalate a concern without naming the decision required.

Version History

  • d58a7ee Current 2026-09-02 21:09

Same Skill Collection

plugins/corporate-strategy/skills/chief-strategy-officer/SKILL.md
plugins/corporate-strategy/skills/market-entry/SKILL.md
plugins/corporate-strategy/skills/mergers-and-acquisitions/SKILL.md
plugins/corporate-strategy/skills/portfolio-strategy/SKILL.md
plugins/corporate-strategy/skills/scenario-planning/SKILL.md
plugins/corporate-strategy/skills/strategic-alliances/SKILL.md
plugins/customer-experience/skills/chief-customer-officer/SKILL.md
plugins/customer-experience/skills/customer-onboarding-and-implementation/SKILL.md
plugins/customer-experience/skills/customer-success-management/SKILL.md
plugins/customer-experience/skills/escalation-management/SKILL.md
plugins/customer-experience/skills/self-service-and-knowledge/SKILL.md
plugins/customer-experience/skills/support-operations/SKILL.md
plugins/customer-experience/skills/voice-of-customer/SKILL.md
plugins/data-analytics/skills/ai-ml-governance/SKILL.md
plugins/data-analytics/skills/business-intelligence/SKILL.md
plugins/data-analytics/skills/chief-data-officer/SKILL.md
plugins/data-analytics/skills/data-engineering/SKILL.md
plugins/data-analytics/skills/data-governance/SKILL.md
plugins/data-analytics/skills/data-modeling/SKILL.md
plugins/demand-generation/skills/ai-search-optimization/SKILL.md
plugins/demand-generation/skills/app-store-optimization/SKILL.md
plugins/demand-generation/skills/experimentation/SKILL.md
plugins/demand-generation/skills/landing-page-cro-expert/SKILL.md
plugins/demand-generation/skills/lead-capture/SKILL.md
plugins/demand-generation/skills/lifecycle-messaging/SKILL.md
plugins/demand-generation/skills/listing-distribution/SKILL.md
plugins/demand-generation/skills/marketing-analytics/SKILL.md
plugins/demand-generation/skills/paid-advertising/SKILL.md
plugins/demand-generation/skills/programmatic-seo/SKILL.md
plugins/demand-generation/skills/seo-strategy/SKILL.md
plugins/executive/skills/ai-research-analyst/SKILL.md
plugins/executive/skills/business-growth-consultant/SKILL.md
plugins/executive/skills/chief-executive/SKILL.md
plugins/executive/skills/fundraising-and-investor-relations/SKILL.md
plugins/executive/skills/saas-idea-validator/SKILL.md
plugins/finance/skills/budgeting-and-forecasting/SKILL.md
plugins/finance/skills/capital-allocation/SKILL.md
plugins/finance/skills/capital-structure-and-covenants/SKILL.md
plugins/finance/skills/cost-accounting/SKILL.md
plugins/finance/skills/financial-modeling/SKILL.md
plugins/finance/skills/financial-reporting-and-close/SKILL.md
plugins/finance/skills/financial-statement-analysis/SKILL.md
plugins/finance/skills/internal-controls-and-audit/SKILL.md
plugins/finance/skills/revenue-recognition/SKILL.md
plugins/finance/skills/tax/SKILL.md
plugins/finance/skills/treasury-and-liquidity/SKILL.md
plugins/finance/skills/unit-economics/SKILL.md
plugins/it-operations/skills/backup-and-recovery/SKILL.md
plugins/it-operations/skills/chief-information-officer/SKILL.md
plugins/it-operations/skills/cloud-administration/SKILL.md

Metadata

Files
0
Version
9cbf340
Hash
a89cccac
Indexed
2026-09-02 21:09

ホーム - Wiki
Copyright © 2011-2026 iteam. Current version is 2.155.2. UTC+08:00, 2026-09-10 01:34
浙ICP备14020137号-1 $お客様$