An Introduction ToInformation, Network and Internet Security
The generic ISO risk process Risk analysis Risk Evaluation Risk Treatment Monitoring and review of the risk management process Risk reporting and communication Risk policy, roles and responsibilities Quantitative risk assessment Problems with the quantitative approach Qualitative Risk Assessment Comparing the Two Approaches