IT Risk Management

From SecurityRatty FAQ

Jump to: navigation, search

Could you recommend me IT Risk Management Guides?

Contents

[edit] Best External Links

[edit] Frameworks

Oct 25, 2007 SP 800-39 DRAFT Managing Risk from Information Systems: An Organizational Perspective

This publication provides guidelines for managing risk to organizational operations, organizational assets, individuals, other organizations, and the Nation resulting from the operation and use of information systems.

Image:rm_sp80039_cicle.png

SP-800-39-ipd.pdf

February 2008 Tom Olzak A Practical Approach to Managing Information System Risk PDF

[edit] Guides

Old, but not bad:

Jul 2002 SP 800-30 Risk Management Guide for Information Technology Systems link sp800-30.pdf

[edit] Threat List Samples

March 2006 Tom Olzak A Practical Approach to Threat Modeling PDF

Personal tools