Book description
Increasingly, organisations rely on information for their day-to-day operations, and the loss or unavailability of information can mean the difference between success and ruin. Information risk management (IRM) is about identifying, assessing and prioritising risks to keep information secure and available. This accessible book is a practical guide to understanding the principles of IRM and developing a strategic approach to an IRM programme. It also includes a chapter on applying IRM in the public sector. It is the only textbook for the BCS Practitioner Certificate in Information Risk Management.
Table of contents
- FRONT COVER
- BCS, THE CHARTERED INSTITUTE FOR IT
- TITLE PAGE
- COPYRIGHT PAGE
- DEDICATION
- CONTENTS
- LIST OF FIGURES AND TABLES
- AUTHOR
- ACKNOWLEDGEMENTS
- ABBREVIATIONS
- DEFINITIONS, STANDARDS AND GLOSSARY OF TERMS
- PREFACE
- 1. THE NEED FOR INFORMATION RISK MANAGEMENT
- 2. REVIEW OF INFORMATION SECURITY FUNDAMENTALS
- 3. THE INFORMATION RISK MANAGEMENT PROGRAMME
- 4. RISK IDENTIFICATION
- 5. THREAT and VULNERABILITY ASSESSMENT
- 6. RISK ANALYSIS AND RISK EVALUATION
- 7. RISK TREATMENT
- 8. RISK REPORTING AND PRESENTATION
- 9. COMMUNICATION, CONSULTATION, MONITORING and REVIEW
- 10. THE CESG IA CERTIFICATION SCHEME
- 11. HMG SECURITY-RELATED DOCUMENTS
- APPENDIX A TAXONOMIES AND DESCRIPTIONS
- APPENDIX B TYPICAL THREATS AND HAZARDS
- APPENDIX C TYPICAL VULNERABILITIES
- APPENDIX D INFORMATION RISK CONTROLS
- APPENDIX E METHODOLOGIES, GUIDELINES AND TOOLS
- APPENDIX F TEMPLATES
- APPENDIX G HMG CYBER SECURITY GUIDELINES
- APPENDIX H REFERENCES AND FURTHER READING
- INDEX
- BACK COVER
Product information
- Title: Information Risk Management: A practitioner’s guide
- Author(s):
- Release date: November 2014
- Publisher(s): BCS Learning & Development Limited
- ISBN: 9781780172651
You might also like
book
Information Risk Management, 2nd Edition
Information risk management (IRM) is about identifying, assessing, prioritising and treating risks to keep information secure …
book
Managing Risk in Information Systems, 2nd Edition
PART OF THE JONES & BARTLETT LEARNING INFORMATION SYSTEMS SECURITY & ASSURANCE SERIES Revised and updated …
book
Enterprise Risk Management, 2nd Edition
Unlock the incredible potential of enterprise risk management There has been much evolution in terms of …
book
Managing Risk in Information Systems, 3rd Edition
Revised and updated with the latest data in the field, the Second Edition of Managing Risk …