Search icon CANCEL
Subscription
0
Cart icon
Your Cart (0 item)
Close icon
You have no products in your basket yet
Save more on your purchases! discount-offer-chevron-icon
Savings automatically calculated. No voucher code required.
Arrow left icon
Explore Products
Best Sellers
New Releases
Books
Videos
Audiobooks
Learning Hub
Free Learning
Arrow right icon
Arrow up icon
GO TO TOP
Enterprise Security: A Data-Centric Approach to Securing the Enterprise

You're reading from   Enterprise Security: A Data-Centric Approach to Securing the Enterprise A guide to applying data-centric security concepts for securing enterprise data to enable an agile enterprise

Arrow left icon
Product type Paperback
Published in Feb 2013
Publisher Packt
ISBN-13 9781849685962
Length 324 pages
Edition 1st Edition
Arrow right icon
Author (1):
Arrow left icon
Aaron Woody Aaron Woody
Author Profile Icon Aaron Woody
Aaron Woody
Arrow right icon
View More author details
Toc

Table of Contents (22) Chapters Close

Enterprise Security: A Data-Centric Approach to Securing the Enterprise
Credits
About the Author
About the Reviewers
www.packtpub.com
Preface
1. Enterprise Security Overview 2. Security Architectures FREE CHAPTER 3. Security As a Process 4. Securing the Network 5. Securing Systems 6. Securing Enterprise Data 7. Wireless Network Security 8. The Human Element of Security 9. Security Monitoring 10. Managing Security Incidents Applying Trust Models to Develop a Security Architectuture Risk Analysis, Policy and Standard, and System Hardening Resources Security Tools List Security Awareness Resources Security Incident Response Resources Index

Risk analysis


In the previous chapter, I introduced risk as a factor of building trust models that ultimately define the security architecture in an enterprise. First, we must understand what risk is, how it is calculated, and then implement a solution to mitigate or reduce the calculated risk. At this point in the process of developing agile security architecture, we have already defined our data. The following sections assume we know what the data is, just not the true impact to the enterprise if a threat is realized.

What is risk analysis?

Simply stated, risk analysis is the process of assessing the components of risk; threats, impact, and probability as it relates to an asset, in our case enterprise data. To ascertain risk, the probability of impact to enterprise data must first be calculated. A simple risk analysis output may be the decision to spend capital to protect an asset based on value of the asset and the scope of impact if the risk is not mitigated. This is the most general form...

lock icon The rest of the chapter is locked
Register for a free Packt account to unlock a world of extra content!
A free Packt account unlocks extra newsletters, articles, discounted offers, and much more. Start advancing your knowledge today.
Unlock this book and the full library FREE for 7 days
Get unlimited access to 7000+ expert-authored eBooks and videos courses covering every tech area you can think of
Renews at $19.99/month. Cancel anytime
Banner background image