ISO 31000: A standard that provides guidelines for risk management. It outlines a clear and comprehensive process for identifying, assessing, and managing risks, which can apply to a wide variety of activities and sectors, including those related to data and information handling. By following this standard, organizations can manage risks more effectively, which can include risks to data security, integrity, and availability.
Categories: CC D1: Security Principles | CCSP D6: Legal - Risk and Compliance | CISM D1: Information Security governance | CISSP D1: Security and Risk Management | Security+ D5: Security Program Management and Oversight | SSCP D3: Risk Identification Monitoring and Analysis
Related Articles: