Security Risk Assessments are done in order to help organizations safeguard their critical assets by establishing the correct control measures and recovery mechanisms in case all protective measures fail. A common mistake is to associate risks with generic computer threats that you may read about or heard about. Risks are dependent on events, specific...
Read more »
Tags: control, risk, risk assessment, risks, safeguard, security assessment, security risk, stakeholder
Posted in Security Governance | No Comments »
A lot of talk has been done about cloud computing and the most cited topics remain security and compliancy in the cloud, and rightly so! However, having experienced a bit of hands-on with Public cloud environments I would like to put security aside for a moment and deal with an equally important risk that...
Read more »
Tags: cloud, cloud security, compliancy, Iaas, public cloud, risks, service disruption, VM
Posted in Cloud Computing | No Comments »
Every organization, risk auditor or analyst, security pro or individual may come up with a different definition of IT risks. While all definitions would most probably fit in the IT risks universe, it is very important that there is a common understanding and terminology within an organization. In fact, we find structures or better...
Read more »
Tags: frameworks, infrastructure, IT risks, risks, security, vulnerabilities
Posted in Audit, Security Governance | No Comments »