From the course: ISC2 Systems Security Certified Practitioner (SSCP) (2024) Cert Prep

Unlock this course with a free trial

Join today to access over 24,900 courses taught by industry experts.

Risk assessment

Risk assessment

- [Instructor] Risks abound in the world of cyber security. From hackers and malware to lost devices and missing security patches, there's a lot on the plate of cybersecurity professionals. Now, of course, addressing each one of these risks takes both time and money. Therefore, cybersecurity professionals need to prioritize these risks in order to spend these precious resources where they will have the greatest security effect. That's where risk assessment comes into play. Risk assessment is the process of identifying and triaging the risks facing an organization based upon the likelihood of their occurrence and their expected impact on the organization. First, we need a common language. In everyday life, people often use the terms threat, risk, and vulnerability interchangeably, but these are actually three very different concepts. A threat is some external force that jeopardizes the security of your information and systems.…

Contents