Difference between revisions of "Risk Evaluation"
Jump to navigation
Jump to search
m |
|||
Line 1: | Line 1: | ||
− | |||
{| style="margin-left: 0px; text-align: left; font-style: none; width:100%; font-weight: none; background: #F0F0F0; border:1px" | {| style="margin-left: 0px; text-align: left; font-style: none; width:100%; font-weight: none; background: #F0F0F0; border:1px" | ||
|- | |- | ||
| '''1.''' Risk Evaluation is the [[Process|process]] used to compare the estimated [[Risk|risk]] against the given [[Risk|risk]] criteria so as to determine the significance of the [[Risk|risk]]. | | '''1.''' Risk Evaluation is the [[Process|process]] used to compare the estimated [[Risk|risk]] against the given [[Risk|risk]] criteria so as to determine the significance of the [[Risk|risk]]. | ||
+ | {{Template:BL-BCM-5Banner}} | ||
'''''Note''''': Risk evaluation may be used to assist in the decision to [[Risk_Treatment|risk treatment]]. | '''''Note''''': Risk evaluation may be used to assist in the decision to [[Risk_Treatment|risk treatment]]. | ||
− | + | '''Related Terms''': [[Risk_Appetite|Risk Appetite]], [[Risk_Likelihood|Risk Likelihood]], [[Risk_Impact|Risk Impact]], [[Risk_Rating|Risk Rating]], [[Risk_Assessment|Risk Assessment]], [[Risk_Level|Risk Level]], [[Period_of_Disruption|Period of Disruption]] | |
− | |||
− | Related Terms: [[Risk_Appetite|Risk Appetite]], [[Risk_Likelihood|Risk Likelihood]], [[Risk_Impact|Risk Impact]], [[Risk_Rating|Risk Rating]], [[Risk_Assessment|Risk Assessment]], [[Risk_Level|Risk Level]], [[Period_of_Disruption|Period of Disruption]] | ||
− | + | {{Template:BCM Course}}{{BcmBoK 2 CL 2B}}<br/> <br/> {{BcmBoK 2 CL 2C}}<br/> <br/> {{BcmBoK 2 CL 2D}} | |
− | + | [[File:ISO31000 Risk Management Process.png|thumb|right|300px|Risk Evaluation as part of the ISO31000 Risk Management Framework]] | |
| | ||
| | ||
− | + | {{Template:BLCoursesBanner}} | |
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
{{Bcm Institute Source}} | {{Bcm Institute Source}} | ||
Line 28: | Line 20: | ||
'''2.''' Process of comparing the results of risk analysis (2.21) with risk criteria (2.22) to determine whether the risk (2.1) and/or its magnitude is acceptable or tolerable | '''2.''' Process of comparing the results of risk analysis (2.21) with risk criteria (2.22) to determine whether the risk (2.1) and/or its magnitude is acceptable or tolerable | ||
− | + | {{Template:BookPSRAR}} | |
'''''Notes (1)''''' : Risk evaluation assists in the decision about risk treatment (2.25). | '''''Notes (1)''''' : Risk evaluation assists in the decision about risk treatment (2.25). | ||
Latest revision as of 06:29, 30 October 2020
1. Risk Evaluation is the process used to compare the estimated risk against the given risk criteria so as to determine the significance of the risk.
Note: Risk evaluation may be used to assist in the decision to risk treatment. Related Terms: Risk Appetite, Risk Likelihood, Risk Impact, Risk Rating, Risk Assessment, Risk Level, Period of Disruption
|
2. Process of comparing the results of risk analysis (2.21) with risk criteria (2.22) to determine whether the risk (2.1) and/or its magnitude is acceptable or tolerable
Notes (1) : Risk evaluation assists in the decision about risk treatment (2.25).
[ISO Guide 73:2009, definition 3.7.1]
(Source: ISO 31000:2009 – Risk Management — Principles and Guidelines) - clause 2.24
3. The process of determining the significance of risk.
(Source: ENISA - the European Network and Information Security Agency. BCM & Resilience Glossary) |