Abstract
Risk treatment involves deciding on strategies and controls to deal with cyber-risks, and starts with identification of treatments for selected risks. After identifying treatments we assess their effect and consider whether the residual risk is acceptable. If it is, the documentation is finalized and the process terminates, otherwise we need to go back and do another iteration of the treatment identification. This chapter concludes the running example by demonstrating the risk treatment step based on the risk evaluation results from Chap. 9.
Access provided by Autonomous University of Puebla. Download to read the full chapter text
Chapter PDF
Keywords
These keywords were added by machine and not by the authors. This process is experimental and the keywords may be updated as the learning algorithm improves.
Author information
Authors and Affiliations
Corresponding author
Rights and permissions
Copyright information
© 2015 The Author(s)
About this chapter
Cite this chapter
Refsdal, A., Solhaug, B., Stølen, K. (2015). Risk Treatment. In: Cyber-Risk Management. SpringerBriefs in Computer Science. Springer, Cham. https://doi.org/10.1007/978-3-319-23570-7_10
Download citation
DOI: https://doi.org/10.1007/978-3-319-23570-7_10
Published:
Publisher Name: Springer, Cham
Print ISBN: 978-3-319-23569-1
Online ISBN: 978-3-319-23570-7
eBook Packages: Computer ScienceComputer Science (R0)