Chapter 3Risk Identification, Monitoring, and Analysis (Domain 3)

THIS CHAPTER COVERS THE FOLLOWING SSCP EXAM OBJECTIVES:

  • images 3.1 Understand the risk management process
    • Risk visibility and reporting (e.g., risk register, sharing threat intelligence, Common Vulnerability Scoring System (CVSS))
    • Risk management concepts (e.g., impact assessments, threat modeling, Business Impact Analysis (BIA))
    • Risk management frameworks (e.g., ISO, NIST)
    • Risk treatment (e.g., accept, transfer, mitigate, avoid, recast)
  • images 3.2 Perform security assessment activities ...

Get (ISC)2 SSCP Systems Security Certified Practitioner Official Practice Tests now with O’Reilly online learning.

O’Reilly members experience live online training, plus books, videos, and digital content from 200+ publishers.