- CISSP in 21 Days(Second Edition)
- M. L. Srinivasan
- 137字
- 2021-07-14 11:04:27
Overview of risk management, business continuity, and security education
Asset protection forms the baseline for security. Unintended disclosure, unauthorized modification, or destruction of an asset can affect security.
Observe the following illustration:

Fig 1
- Risk is to assets from threat sources.
- The asset requires protection from attacks.
- Protection is based on the value of the assets. The value can be based on monetary value, anticipated loss due to customer dissatisfaction, damage to corporate image, or all of the above.
- Risk management is to identify, assess, control, and mitigate risks.
- Risk management consists of monitoring, reviewing, communicating, and improving mechanisms.
- Risks that compromise the availability of assets and resources are treated through Business Continuity Plans (BCP).
- Security education is an integral part of risk management.
These concepts are covered in detail in the rest of this chapter.
推薦閱讀
- Vue.js 3.0源碼解析(微課視頻版)
- Python貝葉斯分析(第2版)
- MongoDB,Express,Angular,and Node.js Fundamentals
- 響應式Web設計:HTML5和CSS3實戰(第2版)
- 零基礎學Scratch 3.0編程
- Web程序設計:ASP.NET(第2版)
- Python+Office:輕松實現Python辦公自動化
- XML程序設計(第二版)
- Node.js 6.x Blueprints
- ArcPy and ArcGIS(Second Edition)
- 現代C++語言核心特性解析
- Visual FoxPro程序設計習題及實驗指導
- 青少年Python趣味編程
- Java程序設計(項目教學版)
- OpenStack Sahara Essentials