官术网_书友最值得收藏!

Overview of risk management, business continuity, and security education

Asset protection forms the baseline for security. Unintended disclosure, unauthorized modification, or destruction of an asset can affect security.

Observe the following illustration:

Fig 1

  • Risk is to assets from threat sources.
  • The asset requires protection from attacks.
  • Protection is based on the value of the assets. The value can be based on monetary value, anticipated loss due to customer dissatisfaction, damage to corporate image, or all of the above.
  • Risk management is to identify, assess, control, and mitigate risks.
  • Risk management consists of monitoring, reviewing, communicating, and improving mechanisms.
  • Risks that compromise the availability of assets and resources are treated through Business Continuity Plans (BCP).
  • Security education is an integral part of risk management.

These concepts are covered in detail in the rest of this chapter.

主站蜘蛛池模板: 彭泽县| 崇仁县| 玉溪市| 孝昌县| 酒泉市| 三门峡市| 台江县| 漾濞| 大田县| 巨鹿县| 平原县| 赞皇县| 德兴市| 宣威市| 扶绥县| 增城市| 福鼎市| 东至县| 桑植县| 锡林郭勒盟| 濉溪县| 将乐县| 武功县| 常宁市| 岑溪市| 缙云县| 栾城县| 金阳县| 台中市| 林芝县| 马山县| 贵德县| 红原县| 邵武市| 沙雅县| 丹东市| 丰都县| 会宁县| 环江| 城固县| 赤峰市|