January 2020
Intermediate to advanced
268 pages
9h 22m
English
Information assurance is almost entirely about the management of risk. The concepts of confidentiality, integrity and availability covered in Chapter 1 are merely areas of risk that must be addressed in an information system’s environment. This chapter of the book will examine the component parts of risk – threats, vulnerabilities and impact, and combining threats with the likelihood or probability that the threat will be carried out, the resulting risk. It introduces the basic terminology of risk and discusses the potential threats to, and vulnerabilities of, information systems and the processes for understanding and managing risk relating to information systems.
Read now
Unlock full access