Operationalizing IT risk management

被引:19
作者
Coles, RS
Moulton, R
机构
关键词
D O I
10.1016/S0167-4048(03)00606-0
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
global organisations conducted during 2002, it was found that all conducted some form of risk assessment to assist in the management Of security risks. However, when we analysed the risks that they addressed, three of the four organisations had major gaps in their risk assessment coverage that could result in significant risks being missed. We wondered: why did the gaps exist; are there inhibitors to effective risk assessment; are there blind spots; are approaches to risk assessment deficient in some way; how could we make the process of risk assessment more robust but easier to do? This paper seeks to address some of these questions.
引用
收藏
页码:487 / 493
页数:7
相关论文
empty
未找到相关数据