Index

Note: Page numbers followed by “f” indicate figures; “t”, tables; “b”, boxes.

A
Accountability, decision-making controls ontology and, 270
Accuracy
estimate, 89
precision versus, 23
Activity-based costing (ABC), 65
Advanced persistent threat (APT), 47, 47t–48t
Alignment
achieving, 305–308
maintaining, 308–312
misalignment with purpose, 234
Analysis process, 91–104
See also Risk analysis
documenting rationale, 100–101
expert estimation, 99–101, 100t
FAIR factors, 98–99
FAIR risk model
applying, 92–93
tools, 91–92
flow, 93, 93f
levels of abstraction, 103–104
deeper, 104
LEF level, 103–104
TEF level, 104
Vuln level, 104
Monte Carlo tool, 101–103, 101t
PERT and, 99–101, 100t
result comparison, 102f
scenario building ...

Get Measuring and Managing Information Risk now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.