0%

Information risk management (IRM) is about identifying, assessing, prioritising and treating risks to keep information secure and available. This book provides practical guidance to the principles and development of a strategic approach to an IRM programme. The only textbook for the BCS Practitioner Certificate in Information Risk Management.

Table of Contents

  1. Front Cover
  2. Half-Title Page
  3. BCS, The Chartered Institute for It
  4. Title Page
  5. Copyright Page
  6. Dedication
  7. Contents
  8. List of figures and tables
  9. Author
  10. Other works by the author
  11. Acknowledgements
  12. Abbreviations
  13. Preface
  14. 1. The Need for Information Risk Management
  15. 2. Review of Information Security Fundamentals
  16. 3. The Information Risk Management Programme
  17. 4. Risk Identification
  18. 5. Threat and Vulnerability Assessment
  19. 6. Risk Analysis and Risk Evaluation
  20. 7. Risk Treatment
  21. 8. Risk Reporting and Presentation
  22. 9. Communication, Consultation, Monitoring and Review
  23. 10. The NCSC Certified Professional Scheme
  24. 11. HMG Security-Related Documents
  25. Appendix A – Taxonomies and Descriptions
  26. Appendix B – Typical Threats and Hazards
  27. Appendix C – Typical Vulnerabilities
  28. Appendix D – Information Risk Controls
  29. Appendix E – Methodologies, Guidelines and Tools
  30. Appendix F – Templates
  31. Appendix G – Hmg Cybersecurity Guidelines
  32. Appendix H – References and Further Reading
  33. Appendix I – Definitions, standards and glossary of terms
  34. Index
  35. Back Cover
18.224.73.125