Information Risk Management A Practitioner’s Guide

“Information Risk Management: A Practitioner’s Guide” by David Sutton, published by BCS Learning & Development Limited in 2014, offers a comprehensive approach to implementing an information risk management process. This 242-page guide is presented in English and aims to logically navigate the steps necessary for identifying, assessing, and managing information risks within organizations. The author provides clear explanations supported by generic examples, including various threats, vulnerabilities, and risk control measures.
Readers will find practical insights into presenting risks and developing business cases, along with discussions on relevant topics such as the CESG scheme and UK Government security classifications. The book also covers typical threats and vulnerabilities, risk controls, methodologies, and tools, while referencing appropriate standards like ISO27001 and ISO27005. This edition serves as a valuable resource for those involved in decision-making and problem-solving within the realms of information management and security.
Official synopsis Publisher
This book provides a practical guide to implementing an information risk management process. The author takes you logically through the steps required to identify, assess and manage information risks within an organisation. Each step is explained clearly, supported by several generic examples, such as examples of threats and vulnerabilities, as well as the types of controls to treat risk. Ways of presenting the risks, as well as supporting business cases, are also discussed. Other topics include: coverage of the CESG scheme, HMG security-related documents, such as the security policy framework and UK Government security classification scheme, typical threats and hazards, typical vulnerabilities, risk controls, methodologies and tools, and templates. There are references throughout to any appropriate standards, such as ISO27001 and ISO27005. —
Author
Publisher
Topics
FAQ
What is “Information Risk Management A Practitioner’s Guide” about?
Who is the author of “Information Risk Management A Practitioner’s Guide”?
When was “Information Risk Management A Practitioner’s Guide” published?
What is the ISBN for “Information Risk Management A Practitioner’s Guide”?
What are the book details (language, pages, edition)?
