A valuable view on risks
Years ago COSO published a risk assessment document that had a MARCI chart in it. That chart seems more and more like a good idea these days. Since we are not the best at estimating probability then we should periodically look at our risks from a MARCI chart view. That is, plot your known risks on Impact and Vulnerability. Add Velocity.
The result will show you which large risks could seriously hurt the organization and how fast you think those are moving. Anything that pops up as high impact, high vulnerability, and high velocity needs to be tested and thoroughly analyzed.