From the course: IT and Cybersecurity Risk Management Essential Training
Unlock the full course today
Join today to access over 24,000 courses taught by industry experts.
The role of organizational culture
From the course: IT and Cybersecurity Risk Management Essential Training
The role of organizational culture
- [Instructor] In the last lesson I talked about considering the organization where you work prior to selecting a risk assessment technique. I said that formal, quantitative measurements may work best at an engineering or data intensive company, while informal qualitative measurements may work best at a company where quick, intuition based decision-making is highly valued by executive management. Not only do you need to check your risk assessment methods for fit with your organization, you also need to know how big decisions get made, because that's the process you'll use to get your IT risk decisions made. Now, once you figure out the default process, you may need to ask if you can modify it a bit. This is because operationally, most organizations are not used to making explicit IT risk decisions, even though they may make other risk decisions more carefully. So you need to find out about escalations and signing…
Contents
-
-
-
-
(Locked)
IT risk management in small companies4m 18s
-
(Locked)
IT risk management in medium companies6m 23s
-
IT risk management in large companies6m 19s
-
(Locked)
Quantitative vs. qualitative risk assessments3m 33s
-
(Locked)
The role of organizational culture2m 37s
-
(Locked)
The minimum viable approach3m 33s
-
(Locked)
-
-
-