官术网_书友最值得收藏!

Overview of risk management, business continuity, and security education

Asset protection forms the baseline for security. Unintended disclosure, unauthorized modification, or destruction of an asset can affect security.

Observe the following illustration:

Fig 1

  • Risk is to assets from threat sources.
  • The asset requires protection from attacks.
  • Protection is based on the value of the assets. The value can be based on monetary value, anticipated loss due to customer dissatisfaction, damage to corporate image, or all of the above.
  • Risk management is to identify, assess, control, and mitigate risks.
  • Risk management consists of monitoring, reviewing, communicating, and improving mechanisms.
  • Risks that compromise the availability of assets and resources are treated through Business Continuity Plans (BCP).
  • Security education is an integral part of risk management.

These concepts are covered in detail in the rest of this chapter.

主站蜘蛛池模板: 桂平市| 马公市| 德惠市| 彭泽县| 汝城县| 无棣县| 普兰店市| 汝南县| 阿尔山市| 西青区| 六盘水市| 安龙县| 濮阳县| 明光市| 亚东县| 苗栗县| 开原市| 拜城县| 莱州市| 富宁县| 武川县| 周口市| 府谷县| 铜陵市| 个旧市| 环江| 宁陵县| 务川| 镶黄旗| 大方县| 鄄城县| 株洲市| 平顶山市| 明光市| 杭州市| 柘荣县| 分宜县| 新昌县| 涿州市| 广灵县| 石楼县|