Paco Adventure Blog
A Blogging Adventure
Complete a risk assessment
August 30th, 2010 by admin
In order to properly define IT security, you must complete a risk assessment to determine if there are possible areas of exposure, among other things. Your company should have either an internal or external team to perform a risk assessment. This team will examine the security policy, asset management, human resources security, communications and operations management, access control, etc. and make recommendations for where procedures may be lacking. During this process, the team will also identify the assets and estimate value. The threat assessment will directly reflect to strength of the current IT security system that is in place. The vulnerability assessment will include determining the likelihood that your company’s vulnerability will be exploited.