Risk Management is Everywhere
Risk assessment and risk management is the common factor linking every federal information security standard, including GLBA, HIPAA, FERPA, and FISMA.
Risk Management is Forever
Risk is always present (pervasive) and always changing (continuous), and your risk management program be continuous and pervasive to keep pace.
- Continuous means that risk management is part of everyday business operations
- Pervasive means every job level and function in the organization is aware of risk and applies risk management principles.
In today's technology enviornment, an annual or biannual risk assessment is not sufficient to meet this requirement.
The Elements of Critical Infrastructure Protection
RESCOR provides the services and expertise to integrate security, governance, risk management, and compliance (GRC) into a coherent enterprise architecture for critical infrastructure industries.