Information Security Risk Analysis
Thomas R. Peltier(Author)
CRC Press
1st Edition
Published on 23. January 2001
Book
Hardback
296 pages
978-0-8493-0880-2 (ISBN)
Article exhausted; check for reprint
Description
Risk is a cost of doing business. The question is, "What are the risks, and what are their costs?" Knowing the vulnerabilities and threats that face your organization's information and systems is the first essential step in risk management.
Information Security Risk Analysis shows you how to use cost-effective risk analysis techniques to identify and quantify the threats--both accidental and purposeful--that your organization faces. The book steps you through the qualitative risk analysis process using techniques such as PARA (Practical Application of Risk Analysis) and FRAP (Facilitated Risk Analysis Process) to:
Evaluate tangible and intangible risks
Use the qualitative risk analysis process
Identify elements that make up a strong Business Impact Analysis
Conduct risk analysis with confidence
Management looks to you, its information security professional, to provide a process that allows for the systematic review of risk, threats, hazards, and concerns, and to provide cost-effective measures to lower risk to an acceptable level. You can find books that cover risk analysis for financial, environmental, and even software projects, but you will find none that apply risk analysis to information technology and business continuity planning or deal with issues of loss of systems configuration, passwords, information loss, system integrity, CPU cycles, bandwidth, and more. Information Security Risk Analysis shows you how to determine cost effective solutions for your organization's information technology.
Information Security Risk Analysis shows you how to use cost-effective risk analysis techniques to identify and quantify the threats--both accidental and purposeful--that your organization faces. The book steps you through the qualitative risk analysis process using techniques such as PARA (Practical Application of Risk Analysis) and FRAP (Facilitated Risk Analysis Process) to:
Evaluate tangible and intangible risks
Use the qualitative risk analysis process
Identify elements that make up a strong Business Impact Analysis
Conduct risk analysis with confidence
Management looks to you, its information security professional, to provide a process that allows for the systematic review of risk, threats, hazards, and concerns, and to provide cost-effective measures to lower risk to an acceptable level. You can find books that cover risk analysis for financial, environmental, and even software projects, but you will find none that apply risk analysis to information technology and business continuity planning or deal with issues of loss of systems configuration, passwords, information loss, system integrity, CPU cycles, bandwidth, and more. Information Security Risk Analysis shows you how to determine cost effective solutions for your organization's information technology.
More details
Language
English
Place of publication
Bosa Roca
United States
Publishing group
Taylor & Francis Inc
Target group
College/higher education
Professional and scholarly
Information security professionals, project manager, auditors, facilities managers
Illustrations
50 s/w Abbildungen
50 Illustrations, black and white
Dimensions
Height: 254 mm
Width: 178 mm
Weight
721 gr
ISBN-13
978-0-8493-0880-2 (9780849308802)
Copyright in bibliographic data is held by Nielsen Book Services Limited or its licensors: all rights reserved.
Schweitzer Classification
Other editions
New editions

Thomas R. Peltier
Information Security Risk Analysis, Second Edition
Book
04/2005
2nd Edition
Auerbach
€75.51
Article exhausted; check for reprint
Additional editions
Thomas R. Peltier
Information Security Risk Analysis
Other
01/2001
Auerbach Publications
Unfortunately, price unknown
The article will not be published
Person
Content
Effective Risk Analysis
Qualitative Risk Analysis
Value Analysis
Other Qualitative Methods
Facilitated Risk Analysis Process (FRAP)
Other Uses of Qualitative Risk Analysis
Case Study
Appendix A: Questionnaire
Appendix B: Facilitated Risk Analysis Process Forms
Appendix C: Business Impact Analysis Forms
Appendix D: Sample of Report
Appendix E: Threat Definitions
Appendix F: Other Risk Analysis Opinions
Index
Qualitative Risk Analysis
Value Analysis
Other Qualitative Methods
Facilitated Risk Analysis Process (FRAP)
Other Uses of Qualitative Risk Analysis
Case Study
Appendix A: Questionnaire
Appendix B: Facilitated Risk Analysis Process Forms
Appendix C: Business Impact Analysis Forms
Appendix D: Sample of Report
Appendix E: Threat Definitions
Appendix F: Other Risk Analysis Opinions
Index