1-Risk Management Concept Flashcards
What is the purpose of risk management
The purpose of risk management is the identification of credible threats and the means to decide what to do about those threats.
On what factors a risk management program depends on
Support from executive management, and an organization’s culture with respect to security awareness and accountability.
On what should the security solutions portfolio based on ?
The security solutions portfolio should be based on supporting the business objectives and have defined success criteria, business requirements, and technical requirements prior to the purchase of specific technologies.
Factors that influence what risk management framework should be adopted
Internal and External factors
What is needed to be known before applying a risk management framework in an organization
The organization’s mission, objectives, strategies, cultures, practices, structure, financial conditions, risk appetite, and level of executive management support.
What is next after a framework has been selected
The security manager can then start to develop a sound risk management strategy.