A CISO’s Guide to Effective Risk Assessments
Cyber Risk Collaborative - A CRA Resource
0:00 / 0:00
A CISO’s Guide to Effective Risk Assessments
1 149 просмотров · 3 года назад
Cyber Risk Collaborative - A CRA Resource
587 подписчиков
1 149 просмотров · 3 года назад
This briefing is based on the findings of a cross-sector task force of CISOs and staff who shared their challenges and best practices for developing and conducting risk assessments to meet compliance requirements and to promote a “risk culture” throughout their organizations. Topics discussed will include: (1) guidance for maturing your risk management program from “good” to “better” to “best”; (2) criteria for choosing and using a risk assessment methodology; (3) the components of an industry-accepted risk assessment methodology; (4) the makeup of a risk register (5) developing management-approved risk acceptance criteria; and (6) tips for improving risk mitigation.
Supporting tools that will be shown during the briefing include: (1) a Risk Management Maturity Self-Assessment; (2) an ISO 27001:2022 ISMS Risk Assessment/Risk Treatment Standard; and (3) an Information Security Management System (ISMS) Risk Assessment Workbook.
Please join members of the Task Force as they share visuals and key insights to help you improve the effectiveness of your Risk Assessments.
Speakers:
Lou Klubenspies, CISO, PerkinElmer
Rich Nagle, CISO, Ohio State University
Richard Rushing, CISO, Motorola Mobility
Michelle Amanti, DuPage County