You are on page 1of 1

Information Security Risk Assessment Worksheet

<Short Name> ISO 27001:2013


See Guidance on “Performing an Information Security Risk Assessment” from the ISACA Journal
Maintained by: Last Amended:

Risk Nature of Risk Impact Likelihood Control Risk Legal Risk Priority Notes Ref of Action Who is Status
Ref. -ability Index (RI) Requirement acceptable Ranking Risk Due Date responsible
or (based on Treatment
requires RI, If legal Action
treatment? requirement Plan
I L C = always H)
(1 – 5) (1 – 5) (1 – 5) IxLxC Y/N A/T H/M/L

Rev 0.0 Page 1 of 1

You might also like