Chapter 14

Building a Program from Scratch

Information in this Chapter

Introduction

Knowing how to assess a risk is clearly an essential skill for risk managers and analysts, but this knowledge in no way guarantees that you will be successful at building a security program around risk activities. Traditionally, guidelines for security leaders have focused on such aspects of a security program as awareness or budgeting, but how can any of this be properly prioritized without first establishing a basic risk profile for your organization? Sure, you can publish some basic security policies, ...

Get Security Risk Management now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.