In modern conditions, the problem of the survival of companies, and the preservation and provision of their further development has become particularly relevant. The crisis has engulfed not only individual enterprises but entire industries. The most affected, in particular, is the engineering industry. The main purpose of the study is the formation of a risk management system at an engineering enterprise in terms of ensuring its security. To do this, we applied the IDEF0 modelling methodology with its main elements. The dynamism of the economic environment and the complexity of the links between its elements necessitate the adoption of informed management decisions in the face of risk and uncertainty of future results. Risk management is becoming an obligatory activity for engineering enterprises, implementation of projects, and operations. Based on the results of the study, a basic IDEF0 model of the risk management system at an engineering enterprise in terms of ensuring its security was formed. The study has limitations and, first of all, they relate to the specifics of the activity of engineering enterprises, other areas of activity are not taken into account. Further research requires expanding the model and taking into account not only risks but also threats and direct dangers.