In this section, you will prepare a risk mitigation plan using SimpleRisk. Before using SimpleRisk, you will create a paper-based plan. You will need to create three security controls in your risk mitigation plan: one control that reduces the asset value, one that reduces the vulnerability severity, and one that reduces the threat impact. Your security controls should also include examples of both strategic and tactical controls. You can refer to the following table for a clearer picture of the requirements. Security Control Reduces Level (strategic/tactical
In this section, you will prepare a risk mitigation plan using SimpleRisk. Before using SimpleRisk, you
will create a paper-based plan.
You will need to create three security controls in your risk mitigation plan: one control that reduces the
asset value, one that reduces the vulnerability severity, and one that reduces the threat impact. Your
security controls should also include examples of both strategic and tactical controls. You can refer to
the following table for a clearer picture of the requirements.
Security Control |
Reduces |
Level (strategic/tactical) |
|
Asset value
|
|
|
Vulnerability severity
|
|
|
Threat Impact |
|
Define three security controls designed to mitigate the risk associated with a recent leak of sensitive
information that was stored in cleartext files.
Once you have identified your security controls, use SimpleRisk to create a Risk Mitigation plan. You
do not need to perform a management review in this section.
Trending now
This is a popular solution!
Step by step
Solved in 2 steps