From the course: ISACA Certified Information System Manager (CISM) Cert Prep
Unlock this course with a free trial
Join today to access over 25,500 courses taught by industry experts.
Risk action plan
From the course: ISACA Certified Information System Manager (CISM) Cert Prep
Risk action plan
- [Instructor] Now in this next section, we know that our goal is going to be to mitigate risk to reduce risk to the degree that's acceptable. But we have to have a plan, right? And that's exactly what the risk action plan is going to give us. So we in our roles as risk practitioners, you're going to be somebody that is going to inform, that's going to assess, that's going to make recommendations. But remember the decision making is the responsibility of the risk owner. And in the business world the risk owner usually are going to be the individual lines of business. Is going to be the individual lines of business. So the various department heads, those are the folks that own the asset, they own the data, therefore they're the ones that own the risk. Now again, that's just general. It's not written in stone. But that's generally how that's going to be. So our job is going to be to provide consultation, to make recommendations. Keep that in mind. On the test, I would expect to see…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
Risk definitions21m 39s
-
(Locked)
Bias5m 31s
-
(Locked)
Developing a risk management program6m 3s
-
(Locked)
NIST 800-397m 12s
-
(Locked)
NIST 800-306m 12s
-
(Locked)
Risk management lifecycle2m 4s
-
(Locked)
Risk assessment and analysis10m 50s
-
(Locked)
NIST SP 800-37 Rev. 1 and SDLC8m 5s
-
(Locked)
Risk response6m 10s
-
(Locked)
Risk action plan7m 5s
-
Risk acceptance9m 12s
-
(Locked)
Risk mitigation4m 29s
-
(Locked)
Risk avoidance, sharing, and transfer9m 37s
-
(Locked)
Risk scenarios7m 39s
-
(Locked)
Risk register6m 15s
-
(Locked)
Cost-benefit analysis and ROI12m 15s
-
(Locked)
Risk monitoring and communications16m 7s
-
(Locked)
Risk governance and management4m 48s
-
(Locked)
Risk review5m 36s
-
-
-
-