Skip to product information
1 of 1
Regular price £32.39 GBP
Regular price £39.99 GBP Sale price £32.39 GBP
Sale Sold out
Free UK Shipping

Freshly Printed - allow 10 days lead

Measuring and Managing Information Risk
A FAIR Approach

A comprehensive resource that provides a much-needed, flexible methodology for measuring and managing information risk.

Jack Freund (Author), Jack Jones (Author)

9780124202313, Elsevier Science

Paperback, published 26 August 2014

408 pages, 15 illustrations
23.4 x 19 x 2.6 cm, 0.84 kg

"...informative and insightful—and surprisingly engaging. Using examples, anecdotes, and metaphors, the writers keep this educational work from becoming difficult... Professionals new to thorough information risk analysis or using more simplified approaches will find this book extremely useful." --Security Management

Using the factor analysis of information risk (FAIR) methodology developed over ten years and adopted by corporations worldwide, Measuring and Managing Information Risk provides a proven and credible framework for understanding, measuring, and analyzing information risk of any size or complexity. Intended for organizations that need to either build a risk management program from the ground up or strengthen an existing one, this book provides a unique and fresh perspective on how to do a basic quantitative risk analysis. Covering such key areas as risk theory, risk calculation, scenario modeling, and communicating risk within the organization, Measuring and Managing Information Risk helps managers make better business decisions by understanding their organizational risk.

Chapter 1: Introduction

Chapter 2: Basic Risk Concepts

Chapter 3: The FAIR Risk Ontology

Chapter 4: FAIR Terminology

Chapter 5: Measurement

Chapter 6: Analysis Process

Chapter 7: Interpreting Results

Chapter 8: Risk Analysis Examples

Chapter 9: Thinking about Risk Scenarios Using FAIR

Chapter 10: Common Mistakes

Chapter 11: Controls

Chapter 12: Risk Management

Chapter 13: Information Security Metrics

Chapter 14: Implementing Risk Management

Subject Areas: Computer security [UR]

View full details