Security Risks: Performing Security Risk Assessments


Overview/Description
Prerequisites
Expected Duration
Lesson Objectives
Course Number
Expertise Level



Overview/Description
The categorization of security risks is essential for effectively assessing and managing risk. In this course, you'll explore the assessment, classification, and prioritization of security risks. You'll begin by outlining the concept of risk assessment and the advantages of different risk assessment techniques. You'll also investigate the features of security assessment methods, such as vulnerability assessment and penetration testing, and discover how to assess security vulnerability. Moving on, you'll recognize the significance of risk categorization and how to update a risk register in Microsoft Excel using a four-quadrant risk classification matrix. Finally, you'll identify the purpose and process of risk prioritization, and the role of a probability-impact matrix in determining risk levels. You'll then investigate how to use the matrix to prioritize risks on a security risk register.

Prerequisites
none

Expected Duration (hours)
1.6

Lesson Objectives

Security Risks: Performing Security Risk Assessments

  • discover the key concepts covered in this course
  • define the concept, advantages, and activities of risk assessment
  • list different types of risk assessment
  • describe the characteristics of qualitative risk assessment along with its advantages and disadvantages
  • describe the characteristics of quantitative risk assessment along with its advantages and disadvantages
  • identify vulnerability assessment and penetration testing as security assessment methods
  • demonstrate security vulnerability assessment
  • outline risk categorization using the four-quadrant risk classification
  • illustrate how to update a risk register in Microsoft Excel
  • recognize the importance of prioritizing risks
  • outline the role of probability-impact matrix in prioritizing risks
  • demonstrate how to prioritize risks in a security risk register using a probability-impact matrix
  • summarize the key concepts covered in this course
  • Course Number:
    it_smepsrdj_03_enus

    Expertise Level
    Beginner