From the course: CompTIA Security+ (SY0-601) Cert Prep: 10 Governance, Risk, and Compliance

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Risk visibility and reporting

Risk visibility and reporting

From the course: CompTIA Security+ (SY0-601) Cert Prep: 10 Governance, Risk, and Compliance

Start my 1-month free trial

Risk visibility and reporting

- [Instructor] Cybersecurity teams have a wide variety of risk identification, assessment and management tools at their disposal. You've already learned about many of them in this course. Risk visibility and reporting techniques ensure that the results of these risk management processes are clearly documented and tracked over time. The core tool that most organizations use for maintaining ongoing visibility into risks is a risk register. The risk register is a centralized document that tracks information about the nature and status of each risk facing the organization. Risk registers may be used on an organization wide basis or they may be used to track the risks associated with a single project or subject domain. In some cases, risk registers may be referred to as risk logs. Risk registers vary from organization to organization, but they typically contain the following types of information. A description of each risk,…

Contents