- Identify the Risk: Determine your assets and identify threats that are likely to attack those assets.
- Assess the Risks: Determine the asset value. Produce a risk matrix to determine which risk is greater given the company’s environment.
- Develop Risk Management Plan: Set-up policies, procedures, and backup recovery plans.
- Implement Risk Management Actions: Put your policies and procedures in writing, do training and awareness with other employees.
- Re-evaluate the Risks: Every 6-months review your risks and policies and make sure they are still relevant. Determine what risk is most likely to still be compromised.
Computer security news tips and general computer advise. If you have a computer related question please post a comment or e-mail me and I will try to answer you the best that I can.
Thursday, April 8, 2010
Risk Analysis Life Cycle
Subscribe to:
Posts (Atom)