Articulating Risk to Senior Management - Enabling Informed Decision-Making
Infosecurity Europe via YouTube
Overview
Syllabus
Introduction
Defining the level of risk
Risk management frameworks
Leveling risk
Defining risk
We are not special
We are on the curve
Risk register
Business acumen
Change business activities
Customer experience team
Amazon
Debate
Metrics
Two ways we view information security
Question for the audience
The challenge
DDoS protection example
Demonstrating tangible risk reduction
Demonstrating longterm value
Are we getting up to the level
Impact and likelihood
Breaking up portfolios
Longterm security improvement program
Know your baseline
Perimeter defense
Operational metrics
How to boil them up
Communication and marketing risk
Getting the right message to the right people
Question the numbers
Taught by
Infosecurity Europe