FURTHER READING AND RESOURCES

Chapter 1

See ISO standards on risk management (www.iso.org/iso/home/standards/iso31000.htm)

COSO Understanding and communicating risk appetite (www.coso.org/documents/ERM-Understanding%20%20Communicating%20Risk%20Appetite-WEB_FINAL_r9.pdf)

Chapter 2

See the COSO website (www.coso.org/-erm.htm)

Chapter 3

See www.iia.org.uk/about-us/what-is-internal-audit/

Chapter 5

Both ISACA and IIA provide books and other resources on cyber security: What the Board of Directors Needs to Ask

Chapter 6

Summary of world data protection legislation – see http://dlapiperdataprotection.com/#handbook/world-map-section

UK Cyber essentials summary – www.gov.uk/government/publications/cyber-essentials-scheme-overview

Chapter 7

See also APM ...

Get Fundamentals of Information Risk Management Auditing: An introduction for managers and auditors now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.