The CIO of your organization has asked you to create a risk management and mitigation plan for security vulnerabilities. Select five vulnerabilities and align associated risks to a risk management framework, such as NIST SP 800-37.
Create a risk matrix in which you:
- Consider the potential vulnerabilities or threats facing the organization.
- Describe the risk each vulnerability or threat would have on the organization in terms of its people, network, data, or reputation.
- Explain the impact of each risk on the organization.
- Provide defined mitigation for each vulnerability, such as an incident response plan, disaster recovery plan, or business continuity plan. Give a defined reason why a vulnerability or threat would not be mitigated, such as the use of a different risk control strategy, if appropriate.
Note* This is not a summary risk matrix, this is the detailed matrix that includes all of the above as columns in a table.
As part of your risk management plan, provide an executive summary of the major issues that are shown in the matrix and the impact they may have on business operations.
5 years ago
30
Answer(0)
other Questions(10)
- I have several Calculus 1 assignments due by tonight. Willing to pay.
- HR Management
- Writer's corner
- Dark chocolate paper
- attention Yhtomit - Find Small Business Finance
- ENG DISCUSSIONS (NEED ASAP)
- for catherine
- Unit 4 Finance
- Discussion - Due tomorrow
- At noon, ship A is 130 km west of ship B. Ship A is sailing east at 30 km/h and ship B is sailing...