User Tools

Site Tools


products:ict:security:cissp:security_governance_and_risk_management_principles

1.2. Security Governance and Risk Management Principles:

  1. Governance frameworks such as COBIT (Control Objectives for Information and Related Technologies) and ITIL (Information Technology Infrastructure Library).
  2. Risk management fundamentals:
    1. Risk assessment methodologies (e.g., quantitative vs. qualitative risk analysis).
    2. Risk mitigation strategies (e.g., risk acceptance, risk avoidance, risk transference, risk mitigation).
    3. Risk management lifecycle.
  3. Roles and responsibilities of stakeholders in information security governance.
  4. Security policies, standards, guidelines, and procedures.
  5. Compliance frameworks and standards (e.g., ISO 27001, NIST Cybersecurity Framework, GDPR).
products/ict/security/cissp/security_governance_and_risk_management_principles.txt · Last modified: 2024/04/20 13:40 by wikiadmin