You are on page 1of 1

Evaluating amount of

Risk: possibility that potential damage


incident or attack will Risk assessment
cause damage to involves:
Likelihood of attack
computer/network/
(motivation, ease of
system
mounting attack)

Process of discovering
Comprehensively for all
and assessing the risks
information assets of
to an organisation's
the enterprise
operations
Risk Management
Risks and Within IT security, risk Specifically for IT
Also determining how Countermeasures analysis is applied infrastructure
those risks can be
controlled or mitigated

During development of
new products or
It identifies the risks,
systems
determines how and
when those risks might It is the systematic
arise and estimates the study of uncertainties
The identification and
impact (financial or and risks
assessment of levels of
otherwise) of adverse
risk in the organisation
outcomes Risk analysis
Risk analysis (pt 2)
A major component of
After the threats are
risk management
evaluated for severity
and liklihood, the
information is used in a
risk analysis

You might also like