Chapter 5: Procedural Aspects of Information Risk Management
In this chapter, we will discuss the procedural aspects of information risk management and understand the risk management tools and techniques and other important concepts from the perspective of the CISM exam.
The following topics will be covered in this chapter:
- Change management
- Patch management
- Security baseline control
- Risk monitoring and communication
- Security awareness training and education
- Documentation
Let's look at each one of the preceding topics in detail.