1. Explain the differences in threat, vulnerability, and exploit assessments for information systems and define at least...
Question:
1. Explain the differences in threat, vulnerability, and exploit assessments for information systems and define at least two tools or methods to perform each type.
2. Describe at least two tools or methods used to implement both physical and logical security controls (four in total), then identify the type of security personnel that would be used to implement each and discuss their roles and responsibilities.
3. Describe three considerations when translating a risk assessment into a risk mitigation plan, and discuss the differences between a risk mitigation plan and a contingency plan.
4. Explain the two primary goals to achieve when implementing a risk mitigation plan and discuss at least methods of mitigation for common information system risks.
Investment Analysis and Portfolio Management
ISBN: 978-0538482387
10th Edition
Authors: Frank K. Reilly, Keith C. Brown