wisemonkeys logo
FeedNotificationProfileManage Forms
FeedNotificationSearchSign in
wisemonkeys logo

Blogs

IT RISK

profile
Anjali Tiwari
Aug 30, 2022
0 Likes
0 Discussions
182 Reads

Your IT systems and the information that you hold on them face a wide range of risks. If your business relies on technology for key operations and activities, you need to be aware of the range and nature of those threats.

Types of risks in IT systems

Threats to your IT systems can be external, internal, deliberate and unintentional. Most IT risks affect one or more of the following:

business or project goals

service continuity

bottom-line results

business reputation

security

infrastructure

 

Looking at the nature of risks, it is possible to differentiate between:

Physical threats - resulting from physical access or damage to IT resources such as the servers. These could include theft, damage from fire or flood, or unauthorised access to confidential data by an employee or outsider.

Electronic threats - aiming to compromise your business information - eg a hacker could get access to your website, your IT system could become infected by a computer virus, or you could fall victim to a fraudulent email or website. These are often of a criminal nature.

Technical failures - such as software bugs, a computer crash or the complete failure of a computer component. A technical failure can be catastrophic if, for example, you cannot retrieve data on a failed hard drive and no backup copy is available.

Infrastructure failures - such as the loss of your internet connection can interrupt your business - eg you could miss an important purchase order.

Human error - is a major threat - eg someone might accidentally delete important data, or fail to follow security procedures properly.

Measuring IT risk (or cyber risk) can occur at many levels. At a business level, the risks are managed categorically. Front line IT departments and NOC's tend to measure more discrete, individual risks. Managing the nexus between them is a key role for modern CISO's.

When measuring risk of any kind, selecting the correct equation for a given threat, asset, and available data is an important step. Doing so is subject unto itself, but there are common components of risk equations that are helpful to understand.

 

There are four fundamental forces involved in risk management, which also apply to cybersecurity. They are assets, impact, threats, and likelihood. You have internal knowledge of and a fair amount of control over assets, which are tangible and intangible things that have value. You also have some control over impact, which refers to loss of, or damage to, an asset. However, threats that represent adversaries and their methods of attack are external to your control. Likelihood is the wild card in the bunch. Likelihoods determine if and when a threat will materialize, succeed, and do damage. While never fully under your control, likelihoods can be shaped and influenced to manage the risk.


Comments ()


Sign in

Read Next

Can ChatGPT Answer All My Questions About Life?

Blog banner

An Overivew Of Cache Memory

Blog banner

INTRODUCTION TO C#

Blog banner

Social Media.

Blog banner

Network Forensics Tools and Techniques

Blog banner

The Rise of Polo Tourism in the USA: How Travellers Are Blending Luxury Stays with Elite Sports

Blog banner

Multicore CPUs

Blog banner

DATA WRANGLING

Blog banner

FASHION

Blog banner

“CONSISTENCY” in Social Media Marketing

Blog banner

Health and fitness

Blog banner

Digital Balance: Keeping Children Mindful in the Screen Age

Blog banner

Sweet and Sour Mango Pickle (Gol Keri)

Blog banner

Platonic Solids

Blog banner

POSITIVE ATTITUDE IN LIFE

Blog banner

MQTT (MQ Telemetry Transport) in Data Science

Blog banner

5 ways to save money on catering services in Mumbai

Blog banner

The Benefits of Practical Life Activities in Preschool

Blog banner

Why am I never satisfied with my Life?

Blog banner

Virtual machine.

Blog banner

I/O Buffering

Blog banner

Human Error: The weakest link in Cybersecurity

Blog banner

Jira service Management

Blog banner

OS PROCESS DESCRIPTION AND CONTROL-SARVAGYA JALAN

Blog banner

Malware Defense

Blog banner

The Evolution of the Microprocessor ~ Aditya Pai

Blog banner

From Websites To Super Apps For Digital User Experience

Blog banner

Technical Challenges and Directions for Digital Forensics

Blog banner

CONCURRENCY

Blog banner

Life

Blog banner

Natural Language Processing(NLP)

Blog banner

Spyware

Blog banner

Concurrency:Deadlock and Starvation

Blog banner

Understanding Mobile Device Forensics

Blog banner

Dekkers Algorithm

Blog banner

Deadlock

Blog banner

Why Progressive Web Apps (PWAs) Are Replacing Traditional Websites

Blog banner

New Ransomware Encrypts Your Android And Then Changes PIN Lock

Blog banner

Virtual memory

Blog banner

LINUX

Blog banner

Corporate Discipline.

Blog banner

OLA

Blog banner