The Goal of Risk Management

From Cramsession
Jump to navigationJump to search
✍️ Verified Author: MflavellClick to view professional profile & credentials

Cybersecurity > Assessing Risk > The Goal of Risk Management


You cannot remove risk:

  • Risk cannot be completely eliminated.
  • Providing additional layers of security (layers of cheese) reduces the likelihood of an attack.


Additional layers however create additional problems:

  • More room for configuration errors (most outages result from human error)
  • More expertise and expense to manage the system
  • More latency or outages.