Risk Management

Mechanisms exist to identify and document risks, both internal and external.


Login

Risk Management

Level N/A

Mechanisms exist to develop and keep current a catalog of applicable risks associated with the organization's business operations and technologies in use.


Login

Risk Management

Level N/A

Mechanisms exist to conduct recurring assessments of risk that includes the likelihood and magnitude of harm, from unauthorized access, use, disclosure, disruption, modification or destruction of the organization's systems and data.


Login

Risk Management

Level N/A

Mechanisms exist to maintain a risk register that facilitates monitoring and reporting of risks.


Login

Risk Management

Level N/A

Mechanisms exist to identify and assign a risk ranking to newly discovered security vulnerabilities that is based on industry-recognized practices.


Login

Risk Management

Mechanisms exist to remediate risks to an acceptable level.


Login

Risk Management

Level N/A

Mechanisms exist to respond to findings from cybersecurity & data privacy assessments, incidents and audits to ensure proper remediation has been performed.


Login

Risk Management

Mechanisms exist to identify and implement compensating countermeasures to reduce risk and exposure to threats.


Login

Risk Management

Mechanisms exist to routinely update risk assessments and react accordingly upon identifying new security vulnerabilities, including using outside sources for security vulnerability information.


Login

Risk Management

Mechanisms exist to conduct a Business Impact Analysis (BIA) to identify and assess cybersecurity and data protection risks.


Login