Information Security Risk Analysis
Thomas R. Peltier(Author)
Auerbach Publications (Publisher)
Published on 23. January 2001
Other
Undefined
296 pages
978-0-203-99750-5 (ISBN)
Unfortunately, price unknown
The article will not be published
Description
Risk is a cost of doing business. The question is, "What are the risks, and what are their costs?" Knowing the vulnerabilities and threats that face your organization's information and systems is the first essential step in risk management.
Information Security Risk Analysis shows you how to use cost-effective risk analysis techniques to identify and quantify the threats--both accidental and purposeful--that your organization faces. The book steps you through the qualitative risk analysis process using techniques such as PARA (Practical Application of Risk Analysis) and FRAP (Facilitated Risk Analysis Process) to:
- Evaluate tangible and intangible risks
- Use the qualitative risk analysis process
- Identify elements that make up a strong Business Impact Analysis
- Conduct risk analysis with confidence
Management looks to you, its information security professional, to provide a process that allows for the systematic review of risk, threats, hazards, and concerns, and to provide cost-effective measures to lower risk to an acceptable level. You can find books that cover risk analysis for financial, environmental, and even software projects, but you will find none that apply risk analysis to information technology and business continuity planning or deal with issues of loss of systems configuration, passwords, information loss, system integrity, CPU cycles, bandwidth, and more. Information Security Risk Analysis shows you how to determine cost effective solutions for your organization's information technology.
Information Security Risk Analysis shows you how to use cost-effective risk analysis techniques to identify and quantify the threats--both accidental and purposeful--that your organization faces. The book steps you through the qualitative risk analysis process using techniques such as PARA (Practical Application of Risk Analysis) and FRAP (Facilitated Risk Analysis Process) to:
- Evaluate tangible and intangible risks
- Use the qualitative risk analysis process
- Identify elements that make up a strong Business Impact Analysis
- Conduct risk analysis with confidence
Management looks to you, its information security professional, to provide a process that allows for the systematic review of risk, threats, hazards, and concerns, and to provide cost-effective measures to lower risk to an acceptable level. You can find books that cover risk analysis for financial, environmental, and even software projects, but you will find none that apply risk analysis to information technology and business continuity planning or deal with issues of loss of systems configuration, passwords, information loss, system integrity, CPU cycles, bandwidth, and more. Information Security Risk Analysis shows you how to determine cost effective solutions for your organization's information technology.
More details
Language
English
Publishing group
Taylor & Francis
Target group
Professional and scholarly
Information security professionals, project manager, auditors, facilities managers
Illustrations
50
50 s/w Abbildungen
20 b/w images and 109 tables
Dimensions
Height: 254 mm
Width: 178 mm
ISBN-13
978-0-203-99750-5 (9780203997505)
Schweitzer Classification
Other editions
Additional editions
Thomas R. Peltier
Information Security Risk Analysis
Book
01/2001
1st Edition
CRC Press
€56.94
Article exhausted; check for reprint
Content
Effective Risk Analysis
Qualitative Risk Analysis
Value Analysis
Other Qualitative Methods
Facilitated Risk Analysis Process (FRAP)
Other Uses of Qualitative Risk Analysis
Case Study
Appendix A: Questionnaire
Appendix B: Facilitated Risk Analysis Process Forms
Appendix C: Business Impact Analysis Forms
Appendix D: Sample of Report
Appendix E: Threat Definitions
Appendix F: Other Risk Analysis Opinions
Index
Qualitative Risk Analysis
Value Analysis
Other Qualitative Methods
Facilitated Risk Analysis Process (FRAP)
Other Uses of Qualitative Risk Analysis
Case Study
Appendix A: Questionnaire
Appendix B: Facilitated Risk Analysis Process Forms
Appendix C: Business Impact Analysis Forms
Appendix D: Sample of Report
Appendix E: Threat Definitions
Appendix F: Other Risk Analysis Opinions
Index