CHAPTER 17

Risk Management

In this chapter, you will

  • Discover the purpose of risk management and an approach to manage risk effectively
  • Learn the differences between qualitative and quantitative risk assessment
  • See, by example, how both approaches are necessary to manage risk effectively
  • Review important definitions and tools

Risk management can best be described as a decision-making process. In the simplest terms, when you manage risk, you determine what could happen to your business, you assess the impact if it were to happen, and you decide what you could do to control that impact as much as you or your management deems necessary. You then decide to act or not to act, and, finally, you evaluate the results of your decision. The process ...

Get CompTIA Security+ All-in-One Exam Guide (Exam SY0-301), 3rd Edition, 3rd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.