IT Governance, Risk, and Compliance

Mar 25 2011   3:32PM GMT

Managing the Dynamic Uncertainties of IT – Part V

Robert Davis Robert Davis Profile: Robert Davis

The IT program’s ambit generally dictates the risk assessment approach. Regarding techniques, the IT program’s ambit determines ‘what’ will be assessed, ‘how’ it will be assessed and assessment limits. Reflective of the IT planning premise, evaluating cost versus data collection level will aid in defining the risk assessment team’s effort. Simultaneously, documenting overall and detail control perimeters assists in assessing risk analysis process decisions and data. From this point, detail IT control perimeters can be delineated by functional areas, IT environments, and/or physical locations. In addition, based on the IT risk assessment ambit, risk assessment tools and techniques can be selected to ensure data collection standardization.

View Part I of the Managing the Dynamic Uncertainties of IT series here

 Comment on this Post

There was an error processing your information. Please try again later.
Thanks. We'll let you know when a new response is added.
Send me notifications when other members comment.

Forgot Password

No problem! Submit your e-mail address below. We'll send you an e-mail containing your password.

Your password has been sent to:

Share this item with your network: