Managing cybersecurity risks
Risk management is a very interesting topic, and there are hundreds of books and certifications about this topic. However, instead of giving you a lot of overwhelming information, I will try to summarize all the available knowledge regarding risk management, tropicalize it to the cybersecurity environment, and present you with just the right information you need in order to manage your risks like a pro!
To make this simple, let's define a risk as an event that will have an impact on your systems or infrastructure if a given condition is met. Those events are normally triggered by a threat (or a threat agent) that leverages a given vulnerability.
Now, the process of identifying and analyzing the impact and the probability of that event happening is called risk management.
All systems and infrastructures have a plurality of associated risks, so it is crucial that you identify and mitigate them as early as possible.
There are many methodologies...