Selecting Security Safeguards After a Customer PII Breach Safeguards and Controls as Landoll (2016) points out are selected based on how effective they are in addressing the indicated security risk or as the author points out controls and safeguards are put in place to reduce the security risk. There are many …
Read MoreQuantitative vs Qualitative Risk Analysis: Metrics and OCTAVE Quantitative Risk Analysis Quantitative risk analysis, as described by Kim & Solomon (2014), attempts to describe risk in financial terms and put a dollar value on all the elements of risk. The quantitative risk is numerically based data and has a financial …
Read MoreSecurity Risk Assessment: Essential Reference Sources
Jun 17, 2026 / · 5 min read · security risk assessment risk analysis fair methodology information security risk management information assurance ·Security Risk Assessment: Essential Reference Sources Measuring and Managing Information Risk: A FAIR Approach This book assists the reader in understanding how to put to use the Factor Analysis of Information Risk (FAIR) methodology. The book consists of topics on measuring and managing information risk and provides …
Read MoreSecurity Risk Assessment: Planning and Key Metrics
Jun 6, 2026 / · 4 min read · security risk assessment security metrics risk analysis information assurance project planning information security ·Security Risk Assessment: Planning and Key Metrics The security assessment considerations as described by Landoll (2016), at a high level, includes six phases. The phases are the project definition, the project preparation, gathering the data, analyzing the risk, mitigation of risks and the recommendations or …
Read MoreRisk Analysis: The Core of Security Risk Assessment
May 25, 2026 / · 11 min read · risk analysis risk assessment information assurance information security critical thinking ·Risk Analysis: The Core of Security Risk Assessment While performing information security management many things need to be in place before information security management can start as Raggad (2010) points out. The organization has to be in agreement with an accepted business mission, strategic plan and a standardized …
Read More