RISK IT Framework and Practitioner Guide

简介:  http://www.isaca.org/riskit The Risk IT Framework fills the gap between generic risk managem...

 http://www.isaca.org/riskit

 

The Risk IT Framework fills the gap between generic risk management frameworks and detailed (primarily security-related) IT risk management frameworks. It provides an end-to-end, comprehensive view of all risks related to the use of IT and a similarly thorough treatment of risk management, from the tone and culture at the top, to operational issues. In summary, the framework will enable enterprises to understand and manage all significant IT risk types, building upon the existing risk related components within the current ISACA frameworks, i.e., COBIT and Val IT.


 

The Risk IT Brochure & Framework are available free for everybody to download. The Risk IT Practitioner Guide with the toolkit can be freely downloaded by ISACA members. All these publications may be purchased in book format.

The Risk IT Brochure ■ What is Risk IT? ■ What does Risk IT do? ■ What are the benefits of using Risk IT?

The Risk IT Framework
- Principles
- Process Details
- Management Guidelines
- Maturity Models

The Risk IT Practitioner Guide
- Risk Universe, Appetite and Tolerance
- Risk Awareness, Communication and Reporting
- Expressing and Describing Risk, Risk Scenarios
- Risk Responses and Prioritisation
- Using COBIT® and Val ITTM

The Risk IT Practitioner Guide Toolkit
- High-level IT Risk Assessment Form
- Risk Communication Flows
- Template Risk Register Entry
- Generic IT Risk Scenarios
- Generic IT Risk Scenarios Mapped to COBIT and Val IT Processes
- Generic IT Risk Scenarios and Environmental Risk Factors
- COBIT Controls and Val IT Key Management Practices to Mitigate IT Risk

目录
相关文章
|
安全
Information Systems Security Assessment – Open information security framework
The Information Systems Security Assessment Framework (ISSAF) seeks to integrate the following m...
927 0
|
XML 数据格式
Some more technical details about SAP note
I use this note 2184333 which I am responsible for as an example:
121 0
Some more technical details about SAP note
|
网络协议
The Evolution of Blockchain Development
Blockchain is a distributed peer-to-peer network without any central control points. It uses distributed unified operation to achieve a set of tamper-
3095 0
|
安全
The Cloud Security Ecosystem: Technical, Legal, Business and Management Issues
http://www.amazon.com/Cloud-Security-Ecosystem-Technical-Management-ebook/dp/B00ZC90H02/ref=mt_kindle?_encoding=UTF8&me= http://www.
781 0