From the course: CCSP Cert Prep: 6 Legal, Risk, and Compliance Audio Review

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Risk management

Risk management

From the course: CCSP Cert Prep: 6 Legal, Risk, and Compliance Audio Review

Start my 1-month free trial

Risk management

- In chapter two I explained risk management, the techniques that we can use to address the risks that we discover during risk assessments. Let's review some of the key points from that chapter. We have four basic risk treatment options. Risk avoidance, where we change our business processes to completely avoid a risk. Risk mitigation, where we take actions to reduce the likelihood or impact of a risk. Risk transference, where we shift risk from our own organization to a third party, such as an insurance company. And risk acceptance, where we decide to continue doing business in the same way, despite the risk. We also discussed different types of security controls used by modern organizations. Preventive controls, such as firewalls and fences, are designed to stop a security issue from happening in the first place. Detective controls, such as intrusion detection systems and burglar alarms, are designed to detect security…

Contents