Security and Risk Management
This chapter is about security and risk management. We will be discussing the importance of risk management and why you need it. Security and risk management is the process of balancing cyber risks, the controls to thwart attacks, and a budget. Business is about making money, and security and risk management is the process of choosing the controls that work for your company’s budget. Your company can’t be 100% secure, nor can there be 0% risk. Security is a balance of what is most important, what can wait, and what risks are acceptable to your business.
In this chapter, we’re going to cover the following main topics:
- What is risk management?
- Identifying risks
- Monitoring your controls
- Key performance indicators (KPIs)