- CISSP in 21 Days(Second Edition)
- M. L. Srinivasan
- 137字
- 2021-07-14 11:04:27
Overview of risk management, business continuity, and security education
Asset protection forms the baseline for security. Unintended disclosure, unauthorized modification, or destruction of an asset can affect security.
Observe the following illustration:

Fig 1
- Risk is to assets from threat sources.
- The asset requires protection from attacks.
- Protection is based on the value of the assets. The value can be based on monetary value, anticipated loss due to customer dissatisfaction, damage to corporate image, or all of the above.
- Risk management is to identify, assess, control, and mitigate risks.
- Risk management consists of monitoring, reviewing, communicating, and improving mechanisms.
- Risks that compromise the availability of assets and resources are treated through Business Continuity Plans (BCP).
- Security education is an integral part of risk management.
These concepts are covered in detail in the rest of this chapter.
推薦閱讀
- TypeScript Blueprints
- 垃圾回收的算法與實(shí)現(xiàn)
- Python從菜鳥到高手(第2版)
- Python自然語言處理(微課版)
- Node.js全程實(shí)例
- Node.js:來一打 C++ 擴(kuò)展
- Developing SSRS Reports for Dynamics AX
- HTML+CSS+JavaScript編程入門指南(全2冊)
- Beginning C++ Game Programming
- Xcode 6 Essentials
- JQuery風(fēng)暴:完美用戶體驗(yàn)
- MySQL 8從零開始學(xué)(視頻教學(xué)版)
- 程序員的成長課
- Raspberry Pi Blueprints
- Learning D3.js 5 Mapping(Second Edition)