CHAPTER 10Risk Assessment and Risk Mitigation

EXAM OBJECTIVES IN THIS CHAPTER

Conduct Risk Assessments and Implement Risk Mitigation

Use Monitoring Tools on Systems and Networks

INTRODUCTION

Risk assessment and risk mitigation involve a wide variety of activity. Risk assessment falls into two primary categories: qualitative and quantitative. Qualitative risk assessments are more general in nature where the assessment team conducts interviews and discussions with stakeholders regarding their opinion of where system risks lie in a network and the impact of those risks to the business as a whole. Quantitative risk assessments are more tangible in that they involve conducting vulnerability assessments as well as analysis of the results gathered to ...

Get CompTIA Security+ Certification Study Guide, 3rd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.