Performing Effective Information Security Risk Management as per ISO/iec 27005:2011 ISRM Standard Course Outline: Understanding of key risk management terminologies. What is countermeasure or control and its role in defending against the threat? What is CIA Triad from controls perspective? Different categories of controls (preventive, detective, deterrence etc.) Broader categories of controls (Administrative, Physical and Technical) Defense in depth concept Key information security risk management processes, including context establishment, risk assessment, risk treatment and monitoring/review. What is asset and how its value is determined? Different approaches of Risk Analysis – Qualitative vs. Quantitative Different types of risk responses Determining the…
Read More