Risk Management


Risk management is a process for identifying, assessing, and mitigating vulnerabilities and threats (risks) to the essential functions that a business must perform to serve its customers.

Risk Management Process

  1. Identify assets
  2. Identify threats
  3. Assess vulnerabilities
  4. Assess risks
  5. Mitigate risks
  6. Evaluate effectiveness

Risk Assessment

Elements of Risk Management in Policies and Procedures

  • Risk identification
  • Risk assessment
  • Risk mitigation
  • Risk evaluation