© Sai Chan/Shutterstock

Defining Risk Assessment Approaches

CHAPTER
5

A RISK ASSESSMENT IS PERFORMED to identify the most serious risks. Risk management techniques include avoiding, sharing or transferring, mitigating, or accepting risks. The risk assessment allows for the prioritization of the risks. The high-priority risks are managed, and the low-priority risks are accepted. The risk assessment also helps to identify the best methods to control the risks, which helps to ensure that the controls that are purchased provide the best benefits.

There are two primary methods used to create a risk assessment, quantitative and qualitative. The quantitative method can be used with predefined formulas. For example, the annual loss expectancy (ALE) can be calculated by multiplying the annual rate of occurrence (ARO) by the single loss expectancy (SLE), which is expressed as ALE = ARO × SLE. The qualitative method can also be used. In the qualitative method, values or words are assigned to the probability of a risk occurring and the impact of a risk if it occurs. Both methods are important to understand so they can be applied in different scenarios.

..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset
18.188.152.136