Risk Identification

Understand, explain, and participate in risk identification.

The idea behind security, any kind of security, is protecting something of value from loss, regardless of how that loss might occur. Previous chapters discussed the mechanics of such protection or the how-to aspect of protecting resources and assets. This chapter focuses on security management, and this section specifically focuses on the process of identifying the following:

  • Assets

  • Threats

  • Vulnerabilities

  • Risk

Asset Identification

One of the first steps in the entire security process and a task specifically before the security management team is the identification of assets.

The question that must be answered is, “What do we need to protect?” By focusing on this, you ...

Get Security+ Training Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.