From the course: CompTIA Security+ (SY0-601) Cert Prep: 10 Governance, Risk, and Compliance

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Risk management frameworks

Risk management frameworks

From the course: CompTIA Security+ (SY0-601) Cert Prep: 10 Governance, Risk, and Compliance

Start my 1-month free trial

Risk management frameworks

- [Instructor] Risk management is a complex topic and fortunately organizations don't need to design their own risk management processes from the ground up. Risk management frameworks provide proven, time-tested techniques for performing enterprise risk management. One of the most widely used risk management frameworks was developed by the National Institute of Standards and Technology, a US federal government agency. The NIST process is mandatory for many government computer systems, but private organizations have also widely adopted this approach because they find it helpful. The framework is found in NIST Special Publication 800-37. This document runs over 60 pages and includes great detail on the framework. That's good reading for anyone involved in risk management. The publication is available for free on NIST's website. For our purposes, an overview of the six steps in the process will be more than enough to…

Contents