Information Systems Under Attack: Managing Enterprise Risk

Added by the EDUCAUSE Librarian
Title:Information Systems Under Attack: Managing Enterprise Risk (ID: CYB07007)
Author(s):Ronald Ross (National Institute of Standards and Technology)
Topics:Cybersecurity, Cybersecurity Policy, Risk Management, Security Risk Assessment and Analysis
Origin:Presented at Cybersecurity Summit (02/22/2007)
Type:Presentations/Speeches
Abstract:Today's enterprise information systems are increasingly coming under attack by sophisticated adversaries around the world including nation-states, terrorist organizations, criminals, hackers, and untrusted insiders. The NIST Risk Management Framework and supporting security standards and guidance provide tools to develop, implement, and maintain an enterprise-wide information security program capable of protecting critical organizational missions and business cases.
View this resource: