首页> 外文期刊>Computing reviews >Information security risk assessment toolkit: practical assessments through data collection and data analysis
【24h】

Information security risk assessment toolkit: practical assessments through data collection and data analysis

机译:信息安全风险评估工具包:通过数据收集和数据分析进行实际评估

获取原文
获取原文并翻译 | 示例
           

摘要

The distinction between information security risk and business risk is blurrier today than in the past: risk management nowadays plays an important role in business decision making, and helps to align information technology (IT) with business strategies. Nevertheless, the term "risk" is often inconsistently associated with technology-centric aspects, and stakeholders fail to recognize the difference between IT operational risks addressed at an IT operational level and business risks related to IT.In this context, the toolkit presented in this book can be seen as a guide to help information security practitioners choose the most appropriate approach. The authors provide a methodology that starts with the most commonly used frameworks and proposes a step-by-step structured risk assessment through data collection and analysis.
机译:如今,信息安全风险与业务风险之间的区别比过去更加模糊:如今,风险管理在业务决策中起着重要作用,并有助于使信息技术(IT)与业务战略保持一致。但是,“风险”一词通常与以技术为中心的方面不一致,并且利益相关者未能认识到在IT运营级别解决的IT运营风险与与IT相关的业务风险之间的区别。在这种情况下,本文介绍的工具包该书可以看作是帮助信息安全从业人员选择最合适方法的指南。作者提供了一种从最常用的框架开始的方法,并通过数据收集和分析提出了逐步的结构化风险评估。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号