Information Security Risk Management Concepts

5 minutes 5 Questions

Information security risk management is the core of an ISMS under ISO/IEC 27001. It is the process that keeps controls justified, proportionate and aligned with business objectives. Following ISO 31000 and ISO/IEC 27005, risk is the effect of uncertainty on objectives. It is usually expressed as a …

Test mode:
More Information Security Risk Management Concepts questions
26 questions (total)