The key concepts of risk management can help software managers assess problem situations and formulate proactive solutions. Software risk management is quickly becoming a mature discipline. To achieve the promise of fully effective software risk management, the software industry must address several continuing challenges: to achieve commitment of all key stakeholders to a risk management approach; to establish an evolving knowledge base of risk management experience and expertise, organized for easy and collaborative use by all stakeholders; to define and propagate mature guidelines on when and how to avoid, transfer, or accept and manage risk; and to develop metrics and tools for reasoning about risk management's return on investment issues.