官术网_书友最值得收藏!

Overview of risk management, business continuity, and security education

Asset protection forms the baseline for security. Unintended disclosure, unauthorized modification, or destruction of an asset can affect security.

Observe the following illustration:

Fig 1

  • Risk is to assets from threat sources.
  • The asset requires protection from attacks.
  • Protection is based on the value of the assets. The value can be based on monetary value, anticipated loss due to customer dissatisfaction, damage to corporate image, or all of the above.
  • Risk management is to identify, assess, control, and mitigate risks.
  • Risk management consists of monitoring, reviewing, communicating, and improving mechanisms.
  • Risks that compromise the availability of assets and resources are treated through Business Continuity Plans (BCP).
  • Security education is an integral part of risk management.

These concepts are covered in detail in the rest of this chapter.

主站蜘蛛池模板: 巢湖市| 阿城市| 铜陵市| 德兴市| 淳化县| 于都县| 秦皇岛市| 平果县| 华安县| 许昌市| 南部县| 定边县| 临猗县| 卢龙县| 镇坪县| 都江堰市| 安丘市| 东辽县| 寻甸| 岑溪市| 新田县| 清水县| 当涂县| 英吉沙县| 龙岩市| 当雄县| 井冈山市| 巫溪县| 静安区| 五河县| 邵阳县| 达日县| 浑源县| 江口县| 淮阳县| 桦南县| 仁化县| 彭山县| 西乌珠穆沁旗| 长垣县| 临江市|