2021•Journal of actual problems of jurisprudenceOpen access

The factor of the risk and risk management In information security

AYTAKIN NAZIM IBRAHIMOVA

Open full text 3 citations

Abstract

Risk is the consequence of events and dangers. To rephrase it, an event that will cause damage and deprivation and this happening can be described via the term of information. The word risk means foreseeable dangers or being under the threat of possible damage. It defines the occurrence of an event that could lead to damage or loss. This term is used for events that are synonymous with danger and are expected to occur, but it is not clear whether they will occur or not. Thus, risk management means managing this uncertain environment. Risk Information Security Management system requires a risk-based approach. Information security policy emerges and is formed based on the results of risk analysis. Therefore, risk management is essential. As well as the systematic use of information contributes to identifying sources and forecasting risks. Information systems analyze the value of assets, threats and shortcomings in risk analysis. Here, the risks are assessed depending on the severity of the potential impact on the confidentiality, integrity and reliability of information systems. Everything that has value for an organization is called information availability. The standards define the availability of information as information that is valuable to the organization and should always be protected. Keywords: risk management, risk processing, risk assessment, risk monitoring, risk reassessment, risk review, Information security risk

Open-access reader

About this research paper

What this paper is about

Risk is the consequence of events and dangers. To rephrase it, an event that will cause damage and deprivation and this happening can be described via the term of information. The word risk means foreseeable dangers or being under the threat of possible damage. It defines the occurrence of an event that could lead to damage or loss. This term is used for events that are synonymous with danger and are expected to occur, but it is not clear whether they will occur or not. Thus, risk management means managing this uncertain environment. Risk Information Security Management system requires a risk-based approach. Information security policy emerges and is formed based on the results of risk analysis. Therefore, risk management is essential. As well as the systematic use of information contributes to identifying sources and forecasting risks. Information systems analyze the value of assets, threats and shortcomings in risk analysis. Here, the risks are assessed depending on the severity of the potential impact on the confidentiality, integrity and reliability of information systems. Everything that has value for an organization is called information availability. The standards define the availability of information as information that is valuable to the organization and should always be protected. Keywords: risk management, risk processing, risk assessment, risk monitoring, risk reassessment, risk review, Information security risk

Why it matters

OpenAlex reports 3 citations for this work. Citation counts describe recorded attention and do not establish research quality.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

Risk is the consequence of events and dangers. To rephrase it, an event that will cause damage and deprivation and this happening can be described via the term of information. The word risk means foreseeable dangers or being under the threat of possible damage. It defines the occurrence of an event that could lead to damage or loss. This term is used for events that are synonymous with danger and are expected to occur, but it is not clear whether they will occur or not. Thus, risk management means managing this uncertain environment. Risk Information Security Management system requires a risk-based approach. Information security policy emerges and is formed based on the results of risk analysis. Therefore, risk management is essential. As well as the systematic use of information contributes to identifying sources and forecasting risks. Information systems analyze the value of assets, threats and shortcomings in risk analysis. Here, the risks are assessed depending on the severity of the potential impact on the confidentiality, integrity and reliability of information systems. Everything that has value for an organization is called information availability. The standards define the availability of information as information that is valuable to the organization and should always be protected. Keywords: risk management, risk processing, risk assessment, risk monitoring, risk reassessment, risk review, Information security risk

Key concepts: Factor analysis of information risk, Risk analysis (engineering), IT risk management, Risk management, Information security management, Risk management information systems, IT risk, Risk assessment

Related papers

Back to paper searchBrowse research topicsOriginal source
The factor of the risk and risk management In information security — Research Paper | ScholarLens