The Goal of Risk Management
From Cramsession
✍️ Verified Author: Mflavell • Click to view professional profile & credentials
Cybersecurity > Assessing Risk > The Goal of Risk Management
You cannot remove risk:
- Risk cannot be completely eliminated.
- Providing additional layers of security (layers of cheese) reduces the likelihood of an attack.
Additional layers however create additional problems:
- More room for configuration errors (most outages result from human error)
- More expertise and expense to manage the system
- More latency or outages.