Risk Assessment for Asset Owners: A Pocket Guide

Front Cover
IT Governance Ltd, 2007 - Business & Economics - 46 pages
This book is aapocket guide to the ISO27001 risk assessment, and designed to assist asset owners and others who are working within an ISO27001/ISO17799 framework to deliver a qualitative risk assessment. It conforms with the guidance provided in BS7799-3:2006 and NIST SP 800-30."
 

Selected pages

Contents

INTRODUCTION
8
INFORMATION SECURITYRISK MANAGEMENT
10
DEFINITIONS
12
ASSET OWNERS
14
OVERVIEW OF THE RISKASSESSMENT PROCESS
16
ASSET IDENTIFICATION
21
THREATS ANDVULNERABILITIES
25
ASSET VALUATION
29
RISK LEVEL
34
RISK TREATMENT ANDCONTROL SELECTION
36
STATEMENT OFAPPLICABILITY AND RISK TREATMENTPLAN
41
REVIEWING THE RISKASSESSMENT
45

Other editions - View all

Common terms and phrases