Resources
Location:

Risk Management Framework

Title:Risk Management Framework (ID: CSD4380)
Author(s):EDUCAUSE/Internet2 Computer and Network Security Task Force Risk Assessment Working Group
Topics:Cybersecurity, Data Security, Network Vulnerability Assessment, Privacy Risk Assessment, Risk Management, Security Management, Security Planning, Security Risk Assessment and Analysis
Origin:Higher Education Information Security Council (formerly the Security Task Force) (2006)
Type:Tools
Abstract:

In recent years, higher education institutions have recognized the importance of developing and implementing strategies to manage information risk. Proper information risk management now translates into confidentiality, integrity, and availability. A risk management program establishes procedures that will allow organizations to identify, plan and implement mitigation strategies and enable them to effectively address the increasing number of vulnerabilities that may present in their information assets. Failure to manage information risk can lead to undesirable consequences, including financial losses, reputation damage and loss of confidence. An organization that does not integrate information risk assessment and mitigation into its management processes could find it increasingly difficult to achieve its mission and strategic objectives. To assist organizations in implementing a systematic process to identify, prioritize and address areas of information risk, EDUCAUSE has developed a scalable Risk Management Framework. We hope organizations will find this resource valuable in addressing their information security needs.

View this resource:

 
© Copyright 1999-2009 EDUCAUSE